AWS security scanner with attack chain detection, IAM privilege escalation, and fixes
Find AWS attack paths, IAM escalation routes, and the fixes that matter most. Open-source CLI scanner that helps you decide what to fix first - not just what's wrong. Find attack chains and IAM escalation paths - Simulate fixes before you apply them - Fix root causes, not individual findings Drop a cloud-audit blast-radius JSON into the live visualizer at…
Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Forge read 0 source files from the published package tarball and matched no MCP tool registrations. Extraction is pattern-based over shipped source: a server that builds its tool list at runtime, or that ships only bundled or minified code, registers nothing this can see. Treat it as “not detected”, not as “exposes none”.
Find AWS attack paths, IAM escalation routes, and the fixes that matter most. Open-source CLI scanner that helps you decide what to fix first - not just what's wrong. Find attack chains and IAM escalation paths - Simulate fixes before you apply them - Fix root causes, not individual findings Drop a cloud-audit blast-radius JSON into the live visualizer at blast-audit.haitmg.pl - or click the screenshot to explore the Snowflake 2024 breach interactively. Uses your default…
Forge's dependency resolver reads npm metadata only, so this PyPI package has no resolved tree. That is a gap in coverage, not a clean bill of health.