get_unused_permissions
Identify unused IAM permissions to reduce attack surface. Returns permissions grouped by role with reduction percentages based on configurable days of inactivity.
Instructions
Find unused IAM permissions (blast radius reduction opportunities).
Args:
days_threshold: Days of inactivity to consider unused
Returns:
Unused permissions grouped by role with reduction percentages.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| days_threshold | No | ||
| snapshot_id | No |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
No arguments | |||