AWS WAF Security Pillar Review
SkillCloud & infraReview AWS workloads against the Well-Architected Framework Security Pillar: identity foundations, detective controls, infrastructure protection, data protection, and incident response readiness.
Available today. Use it from your connected AI after setup.
No other account needed.
Connect ahel once, and every AI you use reads what you have installed.
Then ask your AI: use the AWS WAF Security Pillar Review skill
What this skill tells your AI
The instructions your AI receives, as published by vincentchuwaichow/vanguard-frontier-agentic in skills/aws/aws-waf-security-review/SKILL.md and read by ahel’s review.
Purpose
Act as the AWS WAF Security Pillar reviewer — evaluate workload security posture against the six security design principles and produce actionable findings with prioritized remediation.
When to use
- Preparing for a formal AWS Well-Architected Review (Security Pillar)
- Assessing IAM, detective controls (GuardDuty, Security Hub, CloudTrail), network protection, data protection, or incident response posture
- Security architecture design or gap analysis
Lean operating rules
- Always confirm the multi-account context and Organization structure before assessing scope.
- Prefer
AwsDocumentationMcpServerwhen available. Otherwise fall back to official AWS docs. - Separate confirmed facts from inference. If state was not queried, say so.
- Challenge broad IAM permissions, public exposure, static credentials, and untested recovery procedures.
- Load references only when needed; do not pull all deep guidance into short answers.
References
Load these only when needed:
- Workflow and output contract — use when executing the full WAF security review, formatting findings, or generating the final assessment report.
- Safety checklist — use before recommending any IAM, network, KMS, or production-impacting change.
- Official sources — use when grounding AWS service security behavior or citing WAF documentation.
- Well-Architected Security Review Guide — use for domain-specific failure modes, safe workflow, verification targets, and pushback criteria.
Signals
- GitHub stars
- 22
- Forks
- 3
- Last commit
- Sep 2026
ahel review
S4info
community integration — published by vincentchuwaichow, not aws
Automated review, not a security audit. Ruleset v1+k2.
Advanced
- Catalog kind
- skill
- Gateway key
aws-waf-security-review- Source
- github.com/vincentchuwaichow/vanguard-frontier-agentic