AWS New Checks

Ensure AWS AppSync GraphQL APIs should not be authenticated with API keys
Profile Applicability: Level 1 Description: AWS AppSync is a fully managed service that makes it easy to develop GraphQL APIs by handling the heavy l...
Mon, 15 Sep, 2025 at 3:09 AM
Ensure cognito user pools has advanced security enabled with full-function
Profile Applicability: Level 2 Description: Amazon Cognito User Pools provide a fully managed user directory and authentication for web and mobile apps...
Fri, 19 Sep, 2025 at 5:32 AM
Ensure that the password policy for your user pool requires at least one uppercase letter
Profile Applicability: Level 1 Description: Amazon Cognito provides authentication and user management for applications, and it allows you to define pa...
Fri, 19 Sep, 2025 at 5:21 AM
Ensure Elastic Beanstalk Managed Platform Updates are Enabled
Profile Applicability: Level 1 Description: Elastic Beanstalk is a managed service that automatically handles the deployment, scaling, and monitoring...
Fri, 23 May, 2025 at 7:19 AM
Ensure that the user pool has a temporary password expiration period of 7 days or less
Profile Applicability: Level 1 Description: Amazon Cognito provides authentication services, and one of the security measures is the management of temp...
Fri, 19 Sep, 2025 at 5:17 AM
Ensure that the password policy for your user pools require a minimum length of 14 or greater
Profile Applicability: Level 1 Description: Amazon Cognito is a service that provides authentication and user management for web and mobile application...
Fri, 19 Sep, 2025 at 5:13 AM
Ensure Elastic Beanstalk Environments Stream Logs to CloudWatch
Profile Applicability: Level 1 Description: Elastic Beanstalk is a managed service that simplifies application deployment on AWS. It provides built-i...
Fri, 12 Sep, 2025 at 2:25 AM
Ensure that the password policy for your user pool requires a number
Profile Applicability: Level 1 Description: Amazon Cognito is a fully managed service for authentication, authorization, and user management. It provid...
Fri, 19 Sep, 2025 at 5:21 AM
Ensure Cognito Identity Pool has guest access disabled
Profile Applicability: Level 1 Description: Amazon Cognito Identity Pools provide temporary AWS credentials to users so they can access AWS resources. ...
Thu, 18 Sep, 2025 at 7:09 AM
Ensure self registration is disabled for Amazon Cognito User Pools
Profile Applicability: Level 1 Description: Amazon Cognito is a service that provides authentication and user management for applications. Self-registr...
Thu, 18 Sep, 2025 at 7:04 AM