All Projects → glassechidna → Trackiam

glassechidna / Trackiam

A project to collate IAM actions, AWS APIs and managed policies from various public sources.

Programming Languages

go
31211 projects - #10 most used programming language
golang
3204 projects

Projects that are alternatives of or similar to Trackiam

Cloudsplaining
Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.
Stars: ✭ 1,057 (+819.13%)
Mutual labels:  aws, aws-iam, iam
Terraform Aws Iam
Terraform module which creates IAM resources on AWS
Stars: ✭ 314 (+173.04%)
Mutual labels:  aws, aws-iam, iam
Startup Aws Iam Roles
A list of typical positions in a startup and their policies for IAM AWS.
Stars: ✭ 118 (+2.61%)
Mutual labels:  aws, aws-iam, iam
Awesome Aws
A curated list of awesome Amazon Web Services (AWS) libraries, open source repos, guides, blogs, and other resources. Featuring the Fiery Meter of AWSome.
Stars: ✭ 9,895 (+8504.35%)
Mutual labels:  aws, aws-sdk, iam
Airiam
Least privilege AWS IAM Terraformer
Stars: ✭ 304 (+164.35%)
Mutual labels:  aws, aws-iam, iam
Smart Security Camera
A Pi Zero and Motion based webcamera that forwards images to Amazon Web Services for Image Processing
Stars: ✭ 103 (-10.43%)
Mutual labels:  aws, aws-sdk, aws-iam
Kiam
Integrate AWS IAM with Kubernetes
Stars: ✭ 969 (+742.61%)
Mutual labels:  aws-iam, iam
Angular Aws Amplify
Sample implementation for AWS Amplify in Angular project
Stars: ✭ 40 (-65.22%)
Mutual labels:  aws, aws-sdk
Get Aws Profile Bash
Fetch AWS keys and secrets from ~/.aws/credentials using a simple bash script
Stars: ✭ 49 (-57.39%)
Mutual labels:  aws, iam
Aegea
Amazon Web Services Operator Interface
Stars: ✭ 51 (-55.65%)
Mutual labels:  aws, iam
Aws Sdk Go
AWS SDK for the Go programming language.
Stars: ✭ 7,270 (+6221.74%)
Mutual labels:  aws, aws-sdk
Go Sqs Poller
An AWS SQS Poller
Stars: ✭ 50 (-56.52%)
Mutual labels:  aws, aws-sdk
Aws Sdk Java V2
The official AWS SDK for Java - Version 2
Stars: ✭ 1,083 (+841.74%)
Mutual labels:  aws, aws-sdk
Amazon Cognito Identity Js
Amazon Cognito Identity SDK for JavaScript
Stars: ✭ 965 (+739.13%)
Mutual labels:  aws, aws-sdk
Reactive Aws Clients
AWS Client libraries for Scala (Automatic generation from AWS source code)
Stars: ✭ 30 (-73.91%)
Mutual labels:  aws, aws-sdk
Userplex
Propagate users from Mozilla's Person API to third party systems.
Stars: ✭ 41 (-64.35%)
Mutual labels:  aws, iam
Terraform Aws Cross Account Role
A Terraform module to create an IAM Role for Cross Account delegation.
Stars: ✭ 30 (-73.91%)
Mutual labels:  aws, iam
Limes
Limes provides an easy work flow with MFA protected access keys, temporary credentials and access to multiple roles/accounts.
Stars: ✭ 67 (-41.74%)
Mutual labels:  aws, aws-sdk
Module Security Public
The public documentation for the gruntwork-io/module-security repo, which contains packages for setting up best practices for managing secrets, credentials, and servers
Stars: ✭ 67 (-41.74%)
Mutual labels:  aws, iam
Awsconsolerecorder
Records actions made in the AWS Management Console and outputs the equivalent CLI/SDK commands and CloudFormation/Terraform templates.
Stars: ✭ 1,152 (+901.74%)
Mutual labels:  aws, aws-sdk

AWS IAM Tracker

This project collects IAM actions, AWS APIs and managed policies from various public sources.

You can explore the data collected using the static site.

Collected data is published to the policies and services folders in this repo.

Thank you to alanakirby/aktion for originally having this idea and being gracious about me shamelessly ripping it off.

Stats

  • Unique services: 264
  • Unique actions: 10260
  • Managed policies: 803

Most common managed policy name prefixes:

Policy ARN Count
arn:aws:iam::aws:policy/AWS* 231
arn:aws:iam::aws:policy/Amazon* 213
arn:aws:iam::aws:policy/aws-service-role/* 152
arn:aws:iam::aws:policy/service-role/* 120
arn:aws:iam::aws:policy/job-function/* 7
Other 80

The following table summarises the AWS APIs.

  • The first column is the name of the API as far as IAM policies are concerned.
  • The second column is IAM actions that exactly match the names of invokable APIs exposed by AWS.
  • The third column is invokable APIs that don't have a corresponding IAM action.
  • The fourth column is IAM actions that don't have a corresponding invokable API.
Service Action/API pairs APIs without actions Actions without APIs
ec2 440 0 0
sagemaker 243 1 2
chime 181 0 51
iam 158 0 1
glue 145 12 1
ssm 131 0 7
rds 128 9 1
mobiletargeting 107 5 0
greengrass 105 2 1
servicecatalog 104 3 0
ses 103 35 0
lightsail 101 41 0
cognito-idp 100 0 0
quicksight 99 0 18
connect 93 7 1
gamelift 90 0 0
redshift 88 4 18
storagegateway 84 0 1
config 84 0 0
waf-regional 81 0 0
a4b 77 16 3
codecommit 77 0 11
waf 77 0 0
devicefarm 77 0 0
lex 75 3 5
opsworks 73 1 0
s3 65 56 42
elasticache 65 0 0
clouddirectory 62 4 0
comprehend 61 0 0
cloudfront 59 16 0
route53 57 7 0
ds 57 5 6
robomaker 57 0 2
autoscaling 57 0 0
lambda 56 2 4
directconnect 56 0 0
guardduty 55 3 0
iotsitewise 55 2 0
medialive 55 1 0
cloudformation 54 1 3
elasticloadbalancing 54 0 1
frauddetector 53 0 0
dms 51 3 0
macie2 51 2 0
backup 51 0 2
events 51 0 1
organizations 51 0 0
iotwireless 51 0 0
auditmanager 51 0 0
ecs 49 1 2
workmail 49 0 51
dynamodb 48 6 10
imagebuilder 48 1 0
securityhub 48 0 7
rekognition 48 0 0
personalize 48 0 0
codedeploy 47 0 1
appstream 47 0 1
globalaccelerator 47 0 0
elasticbeanstalk 46 1 3
kms 45 1 2
codebuild 43 1 8
workdocs 41 0 10
wafv2 40 0 2
license-manager 40 0 0
logs 39 3 5
mechanicalturk 39 0 0
databrew 39 0 0
appmesh 38 0 1
codepipeline 37 2 0
appsync 36 5 2
amplify 36 1 0
geo 35 0 3
sms 35 0 2
route53resolver 35 0 0
networkmanager 35 0 0
iotthingsgraph 35 0 0
forecast 35 0 0
swf 34 3 12
codeartifact 34 0 4
ecr 34 0 1
iotanalytics 33 1 0
worklink 33 0 1
sns 33 0 0
glacier 33 0 0
appconfig 33 0 0
workspaces 32 21 0
elasticmapreduce 32 15 8
inspector 32 5 0
eks 32 0 1
datasync 31 4 0
cloudhsm 31 2 0
sso 31 0 52
wellarchitected 31 0 0
schemas 31 0 0
ce 30 0 10
kafka 30 0 0
cloudwatch 30 0 0
athena 29 5 1
transcribe 29 0 2
network-firewall 29 0 0
kendra 29 0 0
es 28 12 9
cloudsearch 28 1 4
profile 28 0 0
machinelearning 28 0 0
kinesis 28 0 0
kinesisvideo 27 0 3
kinesisanalytics 27 0 1
xray 27 0 0
applicationinsights 27 0 0
mediastore 26 0 0
iot1click 26 0 0
fms 26 0 0
elasticfilesystem 25 0 5
mediaconvert 25 0 0
groundstation 25 0 0
discovery 25 0 0
ram 24 0 0
amplifybackend 24 0 0
route53domains 23 5 0
states 23 0 0
servicediscovery 23 0 0
managedblockchain 23 0 0
cognito-identity 23 0 0
codeguru-profiler 23 0 0
acm-pca 23 0 0
access-analyzer 23 0 0
dataexchange 22 0 1
mq 22 0 0
ivs 22 0 0
dax 21 0 9
iotevents 20 3 14
ecr-public 20 3 0
comprehendmedical 20 1 0
qldb 20 0 3
transfer 20 0 0
sqs 20 0 0
secretsmanager 19 3 0
mgh 19 1 0
lookoutvision 19 0 3
datapipeline 19 0 2
servicequotas 19 0 0
batch 19 0 0
shield 18 15 0
opsworks-cm 18 1 0
devops-guru 18 1 0
appflow 18 0 5
codestar 18 0 3
cloudtrail 18 0 0
snowball 17 5 0
mediapackage 17 2 0
cognito-sync 17 0 2
signer 17 0 0
fsx 17 0 0
elastictranscoder 17 0 0
timestream 16 1 3
resource-groups 15 1 1
acm 15 0 0
mediaconnect 14 13 0
support 14 0 8
serverlessrepo 14 0 1
translate 14 0 0
cloud9 13 0 2
lakeformation 13 0 1
iotdeviceadvisor 13 0 0
health 13 0 0
codestar-notifications 13 0 0
mediapackage-vod 12 5 0
codestar-connections 12 0 9
honeycode 12 0 5
detective 12 0 5
firehose 12 0 0
emr-containers 11 4 0
synthetics 11 2 0
aws-marketplace 11 0 39
compute-optimizer 11 0 0
airflow 11 0 0
codeguru-reviewer 10 4 3
sdb 10 0 0
outposts 10 0 0
application-autoscaling 10 0 0
iot 9 0 218
app-integrations 9 0 2
savingsplans 9 0 0
redshift-data 9 0 0
polly 9 0 0
braket 9 0 0
budgets 8 14 2
mobilehub 8 1 15
iotfleethub 8 0 5
sts 8 0 2
tag 8 0 0
sms-voice 8 0 0
dlm 8 0 0
mediatailor 7 25 0
macie 7 0 0
textract 6 0 0
rds-data 6 0 0
importexport 6 0 0
ebs 6 0 0
autoscaling-plans 6 0 0
aps 5 0 5
identitystore 4 0 0
cur 4 0 0
s3-outposts 3 0 29
pricing 3 0 0
pi 2 0 0
marketplacecommerceanalytics 2 0 0
workmailmessageflow 1 1 0
mobileanalytics 1 0 2
ec2-instance-connect 1 0 0
execute-api 0 234 3
apigateway 0 152 7
healthlake 0 8 0
IoTSecuredTunneling 0 7 0
elastic-inference 0 6 1
awsssoportal 0 4 0
awsssooidc 0 3 0
sso-directory 0 0 52
proton 0 0 47
panorama 0 0 42
appmesh-preview 0 0 36
deepracer 0 0 26
deeplens 0 0 24
lookoutmetrics 0 0 23
lookoutequipment 0 0 22
trustedadvisor 0 0 21
deepcomposer 0 0 18
monitron 0 0 12
chatbot 0 0 12
freertos 0 0 11
elemental-activations 0 0 10
dbqms 0 0 9
cloudshell 0 0 9
launchwizard 0 0 8
cassandra 0 0 8
activate 0 0 8
grafana 0 0 7
elemental-appliances-software 0 0 7
aws-portal 0 0 7
ec2messages 0 0 6
iot-device-tester 0 0 5
aws-marketplace-management 0 0 5
ssmmessages 0 0 4
groundtruthlabeling 0 0 4
elemental-support-cases 0 0 4
artifact 0 0 4
tiros 0 0 3
resource-explorer 0 0 3
awsconnector 0 0 3
account 0 0 3
sumerian 0 0 2
purchase-orders 0 0 2
wam 0 0 1
rds-db 0 0 1
neptune-db 0 0 1
iq-permission 0 0 1
iq 0 0 1
elemental-support-content 0 0 1
codeguru 0 0 1
backup-storage 0 0 1
arsenal 0 0 1

Most common action prefixes:

Prefix Count
List 1495
Get 1339
Describe 1260
Delete 1210
Create 1114
Update 878
Put 297
Start 187
Tag 157
Untag 156
Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].