cloudsplaining
« Back to VersTracker
Description:
AWS IAM Security Assessment tool
Type: Formula  |  Latest Version: 0.8.2@1  |  Tracked Since: Dec 17, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: aws iam security audit policy
Install: brew install cloudsplaining
About:
Cloudsplaining is a Python-based security tool that scans AWS IAM policies for privilege escalation risks and other security vulnerabilities. It identifies dangerous permissions and misconfigurations that could lead to unauthorized access or data breaches. The tool generates detailed HTML reports, making it ideal for security audits and continuous compliance checks.
Key Features:
  • Scans AWS IAM policies for privilege escalation vulnerabilities
  • Generates detailed, interactive HTML reports
  • Detects dangerous permissions and wildcard usage
  • Supports both single account and organization-wide assessments
Use Cases:
  • Conducting security audits of existing AWS IAM configurations
  • Integrating into CI/CD pipelines for IAM policy validation
  • Identifying overprivileged roles and users before an incident
Alternatives:
  • Prowler – Prowler is a broader AWS security auditing tool, while Cloudsplaining focuses specifically on IAM policy analysis.
  • Parliament – Parliament is another IAM policy linter; Cloudsplaining is often noted for its user-friendly, comprehensive HTML reports.
License: BSD-3-Clause
Dependencies: certifi, libyaml, python@3.14
Bottles available for: arm64_tahoe, arm64_sequoia, arm64_sonoma, sonoma, arm64_linux, x86_64_linux
Version History
Detected Version Rev Change Commit
Oct 10, 2025 10:57pm 0 VERSION_BUMP 108213e6
Jan 2, 2025 6:55am 1 VERSION_BUMP 7dca55ae
Oct 12, 2024 8:09pm 0 VERSION_BUMP d2f025c8
Oct 12, 2024 3:06pm 0 VERSION_BUMP 1ae82ecf
Sep 16, 2024 12:55am 0 VERSION_BUMP a5b3eff8