cloud-audit runs on your own machine — the client starts it, so there is no endpoint to ping. 313 installs a week from pypi. Last commit 8 Sep 2026.
AWS security scanner with attack chain detection, IAM privilege escalation, and fixes
Today is the operative word: we check cloud-audit every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add cloud-audit -- uvx cloud-audit
{
"mcpServers": {
"cloud-audit": {
"args": [
"cloud-audit"
],
"command": "uvx"
}
}
}
[mcp_servers.cloud-audit]
command = "uvx"
args = ["cloud-audit"]
{
"mcpServers": {
"cloud-audit": {
"args": [
"cloud-audit"
],
"command": "uvx"
}
}
}
{
"mcpServers": {
"cloud-audit": {
"args": [
"cloud-audit"
],
"command": "uvx"
}
}
}
AI-Powered AWS security analysis: scan IAM policies and CloudFormation for risks and escalation.
AWS cloud security scanners for AI agents — S3, IAM, EC2, EKS, RDS, CloudTrail, CloudWatch Logs
Security audit for docker-compose.yml — 25 checks: secrets, privileges, network, volumes, images.
Scaffold Starter Series projects and check release, deployment, security, and agent instructions.
Git branch for your cloud. Understand AWS risk, prove fixes, and ship safer changes.
Cloud architecture and migration planning with costs, controls, evidence, and deployable IaC.
Execution graph of AWS: verified contracts, least-privilege IAM policies, pre-flight authorization.
Hadolint-grade Dockerfile audit — 19 checks: secrets, privileges, supply chain, hygiene.
Answers built from our own checks of this server.