scan_waf_coverage
Identify AWS WAF coverage gaps across regions and cloud providers. Read-only scanner returns risk scoring without modifying resources.
Instructions
Run WAF Coverage security scanner only. Read-only. Does not modify any AWS resources.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| region | No | AWS region to scan (default: server region) | |
| provider | No | Cloud provider to scan (default: aws). With huaweicloud, `region` is a Huawei Cloud region ID (e.g. cn-north-4); omit it or pass "all" to scan every region project of the account. Huawei Cloud Phase 1 is single-account (org_mode falls back to the current account with a warning). |