scan_config_rules_findings
Scan AWS Config Rules security findings in a region without modifying resources. Identify compliance violations and risk scores to assess security posture.
Instructions
Run Config Rules Findings security scanner only. Read-only. Does not modify any AWS resources.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| region | No | AWS region to scan (default: server region) | |
| provider | No | Cloud provider to scan (default: aws). With huaweicloud, `region` is a Huawei Cloud region ID (e.g. cn-north-4); omit it or pass "all" to scan every region project of the account. Huawei Cloud Phase 1 is single-account (org_mode falls back to the current account with a warning). |