Free Tool to Analyze Content Security Policies
Free CSP analyzer when Google's CSP Evaluator already does this.
Cloud IAM security guard — scan AWS IAM policies for risks in seconds
Auto-fixes dangerous IAM policies with least-privilege replacements in seconds.
DevOps engineers and cloud security teams
Prowler · ScoutSuite · PMapper
- 30+ detection rules (privilege escalation, public S3, dangerous actions) - Plain English explanations for non-technical people - No API key needed for local analysis - JSON/SARIF output for CI/CD - pip install pasu
GitHub: https://github.com/nkimcyber/pasu-IAM-Analyzer
Would love feedback from anyone managing AWS IAM policies.
Free CSP analyzer when Google's CSP Evaluator already does this.
YAML-to-code compiler for CDN security, but CloudFront+CF already have native policy tools.
Auto-generates AWS diagrams from read-only IAM scans with versioned change history.
First security scanner for MCP configs as the protocol gains adoption.
It scans AWS for idle EC2/EBS/S3 artifacts and compares your month-to-date spend to the same window last month so you can spot anomalies fast. Rich terminal tables + structured JSON output and MFA-role support make it easy to drop into CI/CD or FinOps workflows, but the feature set overlaps heavily with existing tools like Cloud Custodian and Trusted Advisor.
Polished UI but Snyk and Semgrep already dominate this space.