Comprehensive AWS security posture assessment using AWS CLI and security best practices
43
18%
Does it follow best practices?
Impact
82%
1.12xAverage score across 3 eval scenarios
Passed
No known issues
Optimize this skill with Tessl
npx tessl skill review --optimize ./skills/antigravity-aws-security-audit/SKILL.mdBash security audit script structure and commands
Report header format
50%
50%
Four-section structure
100%
100%
MFA check via credential report
0%
100%
Root access key check
100%
100%
Open security group query
100%
100%
VPC Flow Logs check
100%
100%
Unencrypted EBS query
100%
100%
RDS encryption check
100%
100%
CloudTrail configuration check
100%
100%
AWS Config recorder check
100%
100%
90-day thresholds
100%
100%
S3 access logging check
100%
100%
KMS key rotation check
100%
100%
Python boto3 security score calculator
Uses boto3 library
100%
100%
Separate IAM client
50%
100%
Separate EC2 client
50%
100%
Score starts at 100
100%
100%
MFA deduction: 10 points
100%
50%
Open SG deduction: 15 points
0%
0%
Unencrypted EBS deduction: 20 points
0%
0%
Credential report for MFA
0%
100%
EC2 describe_security_groups
100%
100%
EC2 describe_volumes
100%
100%
Issues list output
100%
100%
Compliance mapping and remediation prioritization
CIS benchmark referenced
100%
100%
CIS control numbers
100%
100%
PCI-DSS referenced
100%
100%
HIPAA referenced
100%
100%
Critical tier defined
100%
100%
High tier with 7-day timeframe
0%
100%
Medium tier with 30-day timeframe
0%
0%
MFA finding in High tier
100%
100%
Open SGs in Critical tier
100%
100%
VPC Flow Logs in High tier
0%
100%
Three distinct priority tiers
100%
0%
431bfad
Table of Contents
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.