{"repo":"cloudconformity/auto-remediate","free":true,"listed":false,"github":"https://github.com/cloudconformity/auto-remediate","clone":"git clone https://github.com/cloudconformity/auto-remediate.git","description":"Cloud Conformity Auto Remediate","language":"TypeScript","stars":158,"topics":["auto-remediation","aws","lambda","cloudconformity","serverless","aws-security-automation"],"license":"MIT","category":"deployment-docker-iac","readme_excerpt":"Cloud Conformity Auto Remediation Disclaimer This early \"Auto Remediation\" is subject to change. Cloud Conformity will use commercially reasonable efforts to support the previous version of the project. This project is provided on an ‘AS IS’ and ‘WHEN AVAILABLE’ basis. Cloud Conformity has no liability to user as a result of any changes made to their AWS infrastructure by installing this project. Auto Remediation is an MIT open-source project, actively maintained by Cloud Conformity team. How it works The following image shows how Cloud Conformity Auto Remediation works: Here's an example: 1. A user makes an S3 bucket publicly readable via S3 Access Control Lists (ACLs) 2. Cloud Conformity identifies the risk in real-time 3. Cloud Conformity publishes a message to the specified SNS Topic 3. SNS topic triggers the Orchestrator lambda function which in turns calls S3 bucket auto-remediate function 4. S3 BucketPublicReadAccess Auto Remediate Function (AutoRemediateS3-001) updates the S3 bucket ACL and closes the security gap Prerequisites 1. Install Node.js v24 or later. Installation Note that you need to follow the Deleting a stack on the AWS CloudFormation console to delete the current stack if you plan to update to the latest version. 1. Create a working copy of \"Cloud Conformity Auto Remediation\" repository by running the following command: 2. Change directory to auto-remediation: 3. Update functions/config.json with required configurations. Please note that all the rules in","default_branch":null,"files":null,"tree":[],"storefront":"/r/cloudconformity","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/cloudconformity/auto-remediate/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}