🛂 IAM Permissions Audit

Documented-policy review for mission-control-api-role. This surface inventories known statements, flags wildcard scope, recommends least-privilege replacements, and gives operators a final review checklist before any deploy or alias move.

Review required
Wildcard scope still present in the documented Lambda role snapshot The highest-risk finding is dynamodb:* against arn:aws:dynamodb:us-east-1:*:table/*. Keep deploy governance tight until the role is split into table-scoped actions.
Open Security Posture →

Audit Summary

Policy Snapshot Inventory

Source: documented operator snapshots only
Statement Action Resource Why it exists Risk Recommendation

Flagged Findings

Least-Privilege Recommendations

Review Before Deploy Checklist

0 / 5 complete

Local operator-only checklist. Completion state is saved in sd_iam_review_checklist for this browser profile.


    

Next Operator Surfaces