Security group review
Open ports, overly permissive ingress rules, resources exposed to 0.0.0.0/0.
Encryption status
S3 buckets, EBS volumes, and RDS instances without encryption at rest.
IAM best practices
Overly broad IAM policies, unused access keys, missing MFA.
CIS benchmark alignment
Check against CIS AWS Foundations Benchmark for common compliance gaps.
How to use it
Common Scenarios
Pre-audit compliance check
Pre-audit compliance check
Security group drift
Security group drift
Encryption coverage
Encryption coverage
Available in
- Slack:
@NOFire AIin any channel - Chat dashboard: my.nofire.ai
- IDE (MCP): quick compliance checks while coding
Getting Started
1
Connect AWS
Requires read-only IAM access. Connect AWS →
2
Ask your first question
Start broad:
@NOFire AI run a compliance review — what gaps would an auditor find?
