Object Storage Security

Secure object storage buckets on S3, Cloudflare R2, GCS, and MinIO against public exposure and credential abuse. Covers public access audit, bucket policy vs ACL vs IAM, presigned URLs with scoped credentials, CORS for direct browser upload, encryption choices, versioning and object lock, and access logging. Invoke when creating a new bucket, auditing inherited buckets for exposure, or wiring an app to storage with presigned uploads.

GoldenWing-360 785f452 15.5 KB Updated

File contents

GoldenWing-360/claude-security-skills/tree/main/object-storage-security commit 785f452cb2

Frequently asked questions

npx skillmds@latest add goldenwing-360/object-storage-security