{"repo":"kosty-cloud/kosty","free":true,"listed":false,"github":"https://github.com/kosty-cloud/kosty","clone":"git clone https://github.com/kosty-cloud/kosty.git","description":"Scan 30+ AWS services. Find cost waste. Detect security gaps. Map your attack surface. One command.","language":"Python","stars":271,"topics":["aws","cloud","finops","api-gateway","attack-surface","aws-audit","bedrock","cloud-security","cost-optimization","devops"],"license":"MIT","category":"deployment-docker-iac","readme_excerpt":"💰 Kosty - AWS Cost Optimization & Security Audit CLI Tool 🤖 New in v2.0.0 — kosty ai now audits Bedrock and SageMaker workloads: guardrails, shadow AI detection, idle GPU endpoints, prompt caching, and more. See what's new → Scan 30+ AWS services. Find cost waste. Detect security gaps. Audit GenAI workloads. One command. Quick Start • Key Features • Service Coverage • Documentation --- ⚡ Why Kosty 🌐 External Attack Surface Mapping — scan 15 resource types, classify exposure as unprotected / partially protected / protected 🔐 IAM Privilege Escalation Detection — 21 known escalation patterns with optional --deep confirmation via SimulatePrincipalPolicy 🤖 GenAI Security & Cost Audit — Bedrock guardrails, shadow AI detection, SageMaker idle GPU endpoints, prompt caching 🏢 Organization-Wide Scanning — parallel audit across hundreds of AWS accounts with cross-account role assumption 🛡️ 200+ Security Checks — WAF hardening, API Gateway auth/throttling/TLS, CloudTrail, GuardDuty, VPC Flow Logs, KMS rotation 💰 Real Dollar Savings — not just recommendations, actual monthly amounts for 11 services ($280/mo per stopped m5.2xlarge, $700/mo per oversized db.r5.4xlarge) --- 🎯 Quick Start 💡 Need expert help? Professional consulting available → --- 📊 Visual Dashboard Full Audit Dashboard AI/ML Audit Dashboard Upload your JSON report to the built-in dashboard for interactive charts, filtering, and cost breakdowns. --- 🚀 Key Features 🌐 Attack Surface Mapping Map everything publicly ","default_branch":null,"files":null,"tree":[],"storefront":"/r/kosty-cloud","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/kosty-cloud/kosty/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}