mvanhorn

AWS Hardcoded Secrets — DevOps & Infrastructure agent for Claude Code

DevOps & Infrastructure community

Find credentials sitting in AWS resource configuration and bound what each one reaches using the account's own APIs.

How to install AWS Hardcoded Secrets

Installs to ~/.claude/agents/mvanhorn-cynative-aws-hardcoded-secrets.md

Terminal
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/mvanhorn/cynative/HEAD/agents/aws-hardcoded-secrets.md -o ~/.claude/agents/mvanhorn-cynative-aws-hardcoded-secrets.md

Restart Claude Code, or start a new session, for it to be picked up.

What AWS Hardcoded Secrets does


description: Find credentials sitting in AWS resource configuration and bound what each one reaches using the account's own APIs.

Research whether any credential is sitting in plaintext in the configuration of this account's resources, and what each one reaches.

Fetch the eleven configuration surfaces that carry free-text values: EC2 instance user data, launch template user data, Lambda function environment variables, ECS task definition environment variables, AWS Batch job definition

Alternatives in DevOps & Infrastructure

  • Secrets Management — Secure secrets management practices for CI/CD pipelines using Vault, AWS Secrets Manager, and other 31.9k ★
  • Deployment Expert — Specializes in Vercel deployment strategies, CI/CD pipelines, preview URLs, production promotions, rollbacks 263 ★
  • Bazel CI Analyzer — Use this agent when:\\n- The user needs to analyze or optimize Bazel configuration in CI/CD pipelines, particu 216 ★

Full documentation available on GitHub

View Source Repository