AWS Inference Exposure — DevOps & Infrastructure agent for Claude Code
Determine who can invoke Bedrock model endpoints in an AWS account, what a hijacked one reaches and whether abuse would appear in the call record.
How to install AWS Inference Exposure
Installs to ~/.claude/agents/mvanhorn-cynative-aws-inference-exposure.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/mvanhorn/cynative/HEAD/agents/aws-inference-exposure.md -o ~/.claude/agents/mvanhorn-cynative-aws-inference-exposure.md Restart Claude Code, or start a new session, for it to be picked up.
What AWS Inference Exposure does
description: Determine who can invoke Bedrock model endpoints in an AWS account, what a hijacked one reaches and whether abuse would appear in the call record.
Research who can invoke the model endpoints in this account, what a hijacked one would reach or spend, and whether abuse would appear in the call record.
Read Bedrock API keys - the service-specific credentials IAM users hold for `bedrock.amazonaws.com`, which `iam:ListServiceSpecificCredentials` returns one user at a time - for
Alternatives in DevOps & Infrastructure
- Screener — Pool screening specialist 722 ★
- Cloud Attacker — Cloud penetration testing specialist for AWS, Azure, and GCP 72 ★
- Browser Operator — Drives a REAL browser to verify deployments + operate the product like a user 22 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
AWS Snapshot Exposure
Determine which AWS snapshots, AMIs and SSM documents are shared outside the account, whether the share is usa
AWS Network Exposure
Determine which AWS network paths from the internet complete end to end, and what the identity attached to eac
Aiml Engineer
AI/ML integration specialist. Designs model pipelines (inference, fine-tuning, LoRA adapters), selects infrast
Inference Architect
You are the system Inference Architect — a senior ML infrastructure engineer specializing in local LLM serving
AWS AI Terraform
Write, extend, and review the Terraform in this repo for AWS AI/ML services on the AI Practitioner (AIF-C01) e
Container Breakout
Delegates to this agent when the user asks about container escape, Docker breakout, Kubernetes pod escape, run
Related Skills
Exposure Audit
Map your own public exposure using only free, accountless checks. Shows where you appear and how to get remove
Signal Gate
You are a signal detector for a memory curation system. Your job is to determine whether a coding session tran
Proxy
route Claude Code requests through multiple upstream providers (OpenCode Go, OpenCode Zen, and AWS Bedrock) wi