scan_and_report
Run a full AWS security scan and generate reports in one step, avoiding large data transfers between tools.
Instructions
Run a full security scan AND generate reports in one step. Avoids large data transfer between tools. Reports are saved to ~/.aws-security/reports/
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| region | No | AWS region (default: server region) | |
| org_mode | No | Enable multi-account org scanning | |
| role_name | No | IAM role name for cross-account scanning | |
| account_ids | No | Filter to specific account IDs | |
| reports | No | Report types to generate (default: all) | |
| lang | No | Language: zh or en (default: zh) | |
| ai_summary | No | Optional pre-generated AI executive summary (Markdown/plain text). Rendered in reports + dashboard if present; omit to hide. |