Skip to content

Bridgecrew bot fix aws_s3_bucket.financials config#4

Open
bmppa wants to merge 1 commit into
masterfrom
bc-fix-e04c2392-fbb5-4125-92dc-d8432b8e0c71
Open

Bridgecrew bot fix aws_s3_bucket.financials config#4
bmppa wants to merge 1 commit into
masterfrom
bc-fix-e04c2392-fbb5-4125-92dc-d8432b8e0c71

Conversation

@bmppa
Copy link
Copy Markdown
Owner

@bmppa bmppa commented Dec 10, 2025

No description provided.

@infracost
Copy link
Copy Markdown

infracost Bot commented Dec 10, 2025

💰 Infracost report

Monthly estimate generated

Estimate details (includes details of unsupported resources)
Key: * usage cost, ~ changed, + added, - removed

──────────────────────────────────
Key: * usage cost, ~ changed, + added, - removed

*Usage costs can be estimated by updating Infracost Cloud settings, see docs for other options.

98 cloud resources were detected:
∙ 37 were estimated
∙ 60 were free
∙ 1 is not supported yet, see https://infracost.io/requested-resources:
  ∙ 1 x aws_flow_log
This comment will be updated when code changes.

@iacbot
Copy link
Copy Markdown

iacbot Bot commented Dec 10, 2025

🔍 Lacework analyzed your pull request. Here is the summary.

Static Analysis: ⚠️ Found 37 violations in this pull request.
  • Critical : 0
  • High : 19
  • Medium : 14
  • Low : 4
  • Info : 0
Violation Severity File Guidelines
EKS Clusters should encrypt secrets High VIEW
EKS should not allow public access to API endpoint High VIEW
Ensure S3 bucket Object is encrypted by KMS using a customer managed Key (CMK) High s3.tf VIEW
Ensure that S3 bucket has a Public Access block High s3.tf VIEW
Ensure that S3 bucket has a Public Access block High s3.tf VIEW
Ensure that S3 bucket has a Public Access block High s3.tf VIEW
Ensure that S3 bucket has a Public Access block High s3.tf VIEW
Ensure that S3 bucket has a Public Access block High s3.tf VIEW
RDS instance is publicly accessible High VIEW
S3 Access Block should Ignore Public Acl High s3.tf VIEW
S3 Access Block should Ignore Public Acl High s3.tf VIEW
S3 Access Block should Ignore Public Acl High s3.tf VIEW
S3 Access Block should Ignore Public Acl High s3.tf VIEW
S3 Access Block should Ignore Public Acl High s3.tf VIEW
S3 bucket does not block public access High s3.tf VIEW
S3 bucket does not block public access High s3.tf VIEW
S3 bucket does not block public access High s3.tf VIEW
S3 bucket does not block public access High s3.tf VIEW
S3 bucket does not block public access High s3.tf VIEW
EKS Cluster should have control plane logging enabled Medium VIEW
Ensure that S3 bucket has cross-region replication enabled Medium s3.tf VIEW
Ensure that S3 bucket has cross-region replication enabled Medium s3.tf VIEW
Ensure that S3 bucket has cross-region replication enabled Medium s3.tf VIEW
Ensure that S3 bucket has cross-region replication enabled Medium s3.tf VIEW
Ensure that S3 bucket has cross-region replication enabled Medium s3.tf VIEW
RDS DB instance should have storage encrypted Medium VIEW
S3 bucket does not have access logging Medium s3.tf VIEW
S3 bucket does not have access logging Medium s3.tf VIEW
S3 bucket does not have access logging Medium s3.tf VIEW
S3 bucket does not have access logging Medium s3.tf VIEW
S3 Bucket has an ACL defined which allows public READ access Medium s3.tf VIEW
S3 Versioning should be enabled Medium s3.tf VIEW
S3 Versioning should be enabled Medium s3.tf VIEW
Ensure the S3 bucket has access logging enabled Low s3.tf VIEW
Ensure the S3 bucket has access logging enabled Low s3.tf VIEW
Ensure the S3 bucket has access logging enabled Low s3.tf VIEW
Ensure the S3 bucket has access logging enabled Low s3.tf VIEW

💬 Share your feedback with us.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant