{"repo":"groovyBugify/aws-security-mcp","free":true,"listed":false,"github":"https://github.com/groovyBugify/aws-security-mcp","clone":"git clone https://github.com/groovyBugify/aws-security-mcp.git","description":"A Model Context Protocol server that connects AI assistants like Claude to AWS security services, allowing them to autonomously query, inspect, and analyze AWS infrastructure for security issues and misconfigurations.","language":"Python","stars":84,"topics":["aws","cloud-security","llm","mcp-server"],"license":"Apache-2.0","category":"mcp-servers","readme_excerpt":"AWS Security MCP A Model Context Protocol (MCP) server that enables AI assistants to perform comprehensive AWS security analysis through natural language queries. Overview AWS Security MCP bridges AI assistants like Claude with AWS security services, enabling real-time infrastructure analysis through conversational queries. The system automatically discovers and analyzes resources across multiple AWS accounts, providing security insights without requiring deep AWS CLI knowledge. Key Capabilities - Cross-Account Discovery : Automatic detection and access to AWS Organization accounts - Natural Language Interface : Query AWS resources using plain English - Security Analysis : Integrated findings from GuardDuty, SecurityHub, and Access Analyzer - Infrastructure Mapping : Network topology, threat modelling, security review and blast radius analysis - Log Analytics : Athena-powered analysis of CloudTrail, VPC Flow Logs, and security events Prerequisites - Python : 3.11 or higher - Package Manager : uv - AWS Account : With appropriate IAM permissions - MCP Client : Claude Desktop, Cline, or compatible client AWS Requirements MCP Server's AWS credentials must have the following permissions: Core MCP Permissions Athena Integration Permissions For advanced log analysis capabilities, additional permissions are required: Required AWS Managed Policies SecurityAudit Policy (Required) Attach the AWS managed SecurityAudit policy to your MCP Server's IAM user or IAM role: This policy provides","default_branch":null,"files":null,"tree":[],"storefront":"/r/groovyBugify","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/groovyBugify/aws-security-mcp/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}