AWS Domain Takeover — DevOps & Infrastructure agent for Claude Code
Find AWS DNS records and resource references whose target no longer exists in the account, and registered domains without transfer lock.
How to install AWS Domain Takeover
Installs to ~/.claude/agents/mvanhorn-cynative-aws-domain-takeover.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/mvanhorn/cynative/HEAD/agents/aws-domain-takeover.md -o ~/.claude/agents/mvanhorn-cynative-aws-domain-takeover.md Restart Claude Code, or start a new session, for it to be picked up.
What AWS Domain Takeover does
description: Find AWS DNS records and resource references whose target no longer exists in the account, and registered domains without transfer lock.
Research which Route 53 records, CloudFront origins and service-referenced bucket names in this account point at a target that no longer exists, and which registered domains can be transferred out.
Resolve every hosted zone record's target against the account's own resources. For an A record, resolve the address against the allocated Elas
Alternatives in DevOps & Infrastructure
- Secrets Management — Secure secrets management practices for CI/CD pipelines using Vault, AWS Secrets Manager, and other 31.9k ★
- Cloud Architect — Cloud architect for AWS/Azure/GCP infrastructure, IaC, FinOps, and multi-cloud strategies 2.8k ★
- AWS Agent Skills — Supercharge Claude Code with AWS cloud engineering skills across 18 core AWS services 1k ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
AWS Hardcoded Secrets
Find credentials sitting in AWS resource configuration and bound what each one reaches using the account's own
AWS Perimeter Bypass
Find AWS Network Firewall and WAF deployments that pass traffic without inspecting it, and the subnets whose r
API Infrastructure Generator
API & infrastructure patterns generator. Creates ADR (Action-Domain-Responder), API Versioning, Health Check,
Cloud Recon
Cloud misconfiguration scanner. Use for S3 bucket enumeration, Azure blob discovery, GCP storage checks, expos
AWS Log Reader
Use this agent when you need to analyze, summarize, or extract information from AWS logs (CloudWatch, S3 acces
AWS Integration
Configure and manage AWS integration for monitoring, log collection, and resource tracking across AWS accounts
Related Skills
Attack Surface
External attack-surface / recon audit of domains YOU OWN (your sites + subdomains, client sites under contract
Domain MCP
Manage Dynadot domains, DNS, renewals, and transfers from Claude, Cursor, or any MCP client.
Windows DNS Policy Manager
Browser-based GUI for Windows Server DNS — policies, zones, records, DNSSEC, DNS over HTTPS, and blocklists. N