audit_rds_posture
Audits RDS instances for public accessibility, unencrypted storage, and disabled deletion protection, returning severity-ranked findings and the number of instances scanned.
Instructions
Audit RDS instance posture: public accessibility, storage encryption, and deletion protection.
Scans every RDS DB instance in the region. A publicly accessible instance is a HIGH finding, unencrypted storage is MEDIUM, and disabled deletion protection is LOW. Returns the {check, ok, findings[], scanned} envelope where scanned is the number of DB instances examined; each finding carries the engine, the endpoint address when public, and the raw posture flags.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| region | No |