@shieldly/mcp (io.github.shieldly-io/mcp)
This MCP server provides tools for AI-assisted AWS security analysis by scanning IAM policies and CloudFormation templates for security risks, including privilege escalation paths and other over-permissive access. It is an official MCP server powered by Shieldly for any MCP-compatible AI assistant.
๐ ๏ธ Key Features
- Analyzes AWS IAM policies for security risks
- Analyzes AWS CloudFormation templates for security risks
- Detects privilege escalation paths
- Flags wildcards and other over-permissive access
๐ Use Cases
- Review IAM policy documents for risky permissions
- Assess CloudFormation templates for insecure resource configurations
- Identify escalation opportunities in infrastructure-as-code
โก Developer Benefits
- Exposes analysis via two MCP tools for MCP-compatible assistants
- Supports use in tools used with MCP clients (e.g., Claude Code, Claude Desktop, Cursor)
โ ๏ธ Limitations
- Focused on AWS IAM policies and CloudFormation templates only
- No additional tool types or capabilities are described in the provided source data