[GH-ISSUE #107] [Improvement] Refactor current logic for normalizing S3 arns to be least privilege #86

Open
opened 2026-03-07 19:41:47 +03:00 by kerem · 0 comments
Owner

Originally created by @weibenz1 on GitHub (Jan 15, 2026).
Original GitHub issue: https://github.com/awslabs/iam-policy-autopilot/issues/107

Reference: https://github.com/awslabs/iam-policy-autopilot/pull/104#discussion_r2692235219

We should not replace the prefix that user had in policies with *, which opens up more access.

Originally created by @weibenz1 on GitHub (Jan 15, 2026). Original GitHub issue: https://github.com/awslabs/iam-policy-autopilot/issues/107 Reference: https://github.com/awslabs/iam-policy-autopilot/pull/104#discussion_r2692235219 We should not replace the prefix that user had in policies with `*`, which opens up more access.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/iam-policy-autopilot#86
No description provided.