Skip to content
OpenCatalogcurated by FLOSSK
Security & Privacy

Cloudsplaining

Analyzes AWS IAM policies for dangerous privileges, resource exposure, and data-exfiltration patterns—outputs Markdown/HTML reports.

Why it is included

Widely cited open IAM report generator complementing Prowler/Steampipe for identity-centric reviews.

Best for

IAM reviews before production rollout or during incident hardening on AWS.

Strengths

  • Policy parsing depth
  • Human-readable reports
  • Integrates with policy files

Limitations

  • AWS IAM focus only; not a full CSPM

Good alternatives

Prowler IAM checks · IAM Access Analyzer · manual review

Related tools