AWS Well-Architected Audit
$2.99OfficialUse when asked to audit, score, or harden an AWS account, Organization, or workload across the six Well-Architected pillars with evidence-backed findings.
What you get
- โ10-step procedure
- โRunnable Shell / Terraform included
- โ8-point quality checklist
- โ9 pitfalls to avoid
- โInstalls into 6 tools
- Version
- v1 โ
- Last updated
- today
- Length
- 13 min read
- Requires
- Best with a strong model (Claude Opus 5)
Works in: Claude Code, Codex, Cline, opencode, OpenClaw, Hermes ยท Built for large codebases
What you'll need to set up
Some setup ยท 25-45 minProvision a dedicated read-only AWS audit principal (IAM role or IAM Identity Center permission set) carrying the SecurityAudit and ViewOnlyAccess managed policies plus a small supplemental policy for Cost Explorer, Compute Optimizer, Resource Groups Tagging, Service Quotas and Support, activate IAM access to Billing data, opt in to Compute Optimizer, and configure AWS CLI v2 (plus jq) with a named profile for that principal.
AWS_PROFILEAWS_ACCESS_KEY_IDAWS_SECRET_ACCESS_KEYAWS_SESSION_TOKENAWS_REGIONREGIONSPreview
When to use
Invoke when the request is to audit, score, or harden an AWS account, Organization, or workload against the Well-Architected Framework's six pillars (Operational Excellence, Security, Reliability, Performance Efficiency, Cost Optimization, Sustainability). Typical triggers: "review our AWS setup", "are we production-ready", pre-launch readiness gates, post-incident architecture review, due diligence on an inherited account, annual compliance or FinOps review.
Do not invoke for single-service debugging, a one-off IAM policy question, or a pure cost export โ those are narrower tasks. Use this when breadth across pillars and evidence-backed findings are the deliverable.
โฆ
๐ Buy once ($2.99) to unlock the full playbook, download it, and install it in every tool you use.