mvanhorn

AWS Data Encryption — DevOps & Infrastructure agent for Claude Code

DevOps & Infrastructure community

Determine which unencrypted AWS data can leave the service boundary, and where a KMS key policy is no narrower than the service permission behind it.

How to install AWS Data Encryption

Installs to ~/.claude/agents/mvanhorn-cynative-aws-data-encryption.md

Terminal
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/mvanhorn/cynative/HEAD/agents/aws-data-encryption.md -o ~/.claude/agents/mvanhorn-cynative-aws-data-encryption.md

Restart Claude Code, or start a new session, for it to be picked up.

What AWS Data Encryption does


description: Determine which unencrypted AWS data can leave the service boundary, and where a KMS key policy is no narrower than the service permission behind it.

Research which EBS volumes and snapshots, RDS instances and clusters and snapshots, Redshift clusters, OpenSearch domains, Neptune clusters, Kinesis streams, SNS topics, SageMaker volumes and outputs, WorkSpaces volumes and Glue Data Catalog settings in this account store data unencrypted, and whether the keys behind the encry

Alternatives in DevOps & Infrastructure

  • Secrets Management — Secure secrets management practices for CI/CD pipelines using Vault, AWS Secrets Manager, and other 31.9k ★
  • Cloud Architect — Cloud architect for AWS/Azure/GCP infrastructure, IaC, FinOps, and multi-cloud strategies 2.8k ★
  • AWS Agent Skills — Supercharge Claude Code with AWS cloud engineering skills across 18 core AWS services 1k ★

Full documentation available on GitHub

View Source Repository