cloud-security-scanner
Cloud security scanning tools for AI agents. 7 purpose-built AWS scanners that check for misconfigurations across S3, IAM, EC2, EKS, RDS, CloudTrail, and CloudWatch Logs. Each scanner is a static ~2MB binary that outputs JSONL. Checks include public access, missing encryption, stale credentials, weak password policies, disabled logging, and more. ## Tools - **search** — Find scanners by capability (e.g. "encryption", "public access", "iam") - **get** — Get download URL, SHA256 hash, and a ready-to-run shell command for any scanner ## Scanners | Scanner | Service | Checks | |---|---|---| | k5e-aws-s3 | S3 | encryption, public access, versioning, logging, lifecycle | | k5e-aws-iam | IAM | root MFA, stale access keys, password policy | | k5e-aws-ec2 | EC2 | public SSH, security groups, EBS encryption, IMDSv2 | | k5e-aws-eks | EKS | public endpoint, logging, secrets encryption | | k5e-aws-rds | RDS | public access, encryption, backups | | k5e-aws-cloudtrail | CloudTrail | multi-region, log validation, KMS encryption | | k5e-aws-cloudwatch-logs | CloudWatch Logs | retention, encryption, metric filters | Built by [Kloudle](https://kloudle.com).
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately. Last scanned 2026-08-30.
Scan details: Circle-IR · 2026-08-30 · Appeal
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- cloud-infra
- Source
- Smithery
- Author type
- human
- Last scanned
- 2026-08-30
- Updated
- 2026-08-30
Use via MCP
Resolve cloud-security-scanner from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.