What problem does it solve?
This Skill helps you safely review, audit, and reduce access across cloud, Kubernetes, internal systems, CI/CD, databases, and SaaS when permissions have grown messy, ownership is unclear, or you need to answer who can do what.
Core Features & Use Cases
- Access inventory and mapping: Builds an effective-access view across human and machine identities, including roles, trusts, bindings, and inherited permissions.
- Risk identification: Finds stale accounts, shared credentials, wildcard grants, standing admin access, weak break-glass controls, and other privilege-sprawl patterns.
- Safe revocation planning: Evaluates justification, ownership, recent use, dependencies, and restoration steps before changing access.
- Use cases: offboarding a user, recertifying privileged access, reducing an overbroad service account, auditing who can touch production, or deciding whether a role can be tightened safely.
Quick Start
Ask the iam-access-review skill to map current effective access for a target system, identify the highest-risk grants, and recommend one safe right-sizing action or a defensible reason not to revoke yet.