AWS New Checks

Ensure that the user pool has a temporary password expiration period of 7 days or less
Profile Applicability: Level 1 Description: Amazon Cognito provides authentication services, and one of the security measures is the management of temp...
Fri, 28 Mar, 2025 at 1:17 AM
Ensure that the password policy for your user pools require a minimum length of 14 or greater
Profile Applicability: Level 1 Description: Amazon Cognito is a service that provides authentication and user management for web and mobile application...
Fri, 28 Mar, 2025 at 1:22 AM
Elastic Beanstalk environment should stream logs to CloudWatch
Profile Applicability: Level 1 Description: Elastic Beanstalk is a managed service that simplifies application deployment on AWS. It provides built-i...
Fri, 28 Mar, 2025 at 1:25 AM
Ensure that the password policy for your user pool requires a number
Profile Applicability: Level 1 Description: Amazon Cognito is a fully managed service for authentication, authorization, and user management. It provid...
Fri, 28 Mar, 2025 at 1:28 AM
Ensure Cognito Identity Pool has guest access disabled
Profile Applicability: Level 1 Description: Amazon Cognito Identity Pools provide temporary AWS credentials to users so they can access AWS resources. ...
Fri, 28 Mar, 2025 at 1:33 AM
Ensure self registration is disabled for Amazon Cognito User Pools
Profile Applicability: Level 1 Description: Amazon Cognito is a service that provides authentication and user management for applications. Self-registr...
Fri, 28 Mar, 2025 at 1:38 AM
Ensure that your Amazon Cognito user pool blocks potential malicious sign-in attempts
Profile Applicability: Level 1 Description: Amazon Cognito provides user authentication and management services, and securing sign-ins is crucial for p...
Fri, 28 Mar, 2025 at 1:44 AM
Ensure cognito user pools deletion protection enabled to prevent accidental deletion
Profile Applicability: Level 1 Description: Amazon Cognito is a fully managed service that provides authentication, authorization, and user management ...
Fri, 28 Mar, 2025 at 1:49 AM
AWS AppSync should have field-level logging enabled
Profile Applicability: Level 1 Description: AWS AppSync is a fully managed service that simplifies developing GraphQL APIs by handling complex tasks ...
Fri, 28 Mar, 2025 at 1:54 AM
Ensure that Amazon Cognito User Pool is associated with a WAF Web ACL
Profile Applicability: Level 1 Description: Amazon Cognito is a managed service that provides user authentication, authorization, and user management f...
Fri, 28 Mar, 2025 at 2:35 AM