
azure-security-auditor
CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

Tooling for assessing an Azure AD tenant state and configuration

Salesforce object access auditor

Salesforce Policy Deviation Checker


OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…

Implementation of the Google Zero-Knowledge library for Identity Protocols.

AWS Least Privilege for Distributed, High-Velocity Deployment

Pull Request-like Review/Approval flow for database queries. For compliant but smooth Engineering access to production.

AWS Identity and Access Management Visualizer and Anomaly Finder

SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS

A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-1…

Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.

Generates least-privilege AWS IAM policies based on resource ARNs and access levels, automating secure policy creation for cloud infrastructure.

An AWS IAM policy statement parser and query tool.

Clean accounts over permissions in GCP infra at scale

Audits Azure AD and Exchange Online configurations for hard-to-find permissions, federation trusts, mail forwarding rules, and delegated access to…

Scans AWS IAM configurations for shadow admins by detecting misconfigured deny policies that fail to restrict user actions on groups, enabling…