AWS Lambda Security

Security audit for AWS Lambda functions including IAM role least privilege, environment variable encryption (KMS), Function URLs vs API Gateway, VPC config, layer usage, container image scanning, X-Ray and logs PII, cold start state, async invocation handling, and Lambda-specific patterns across Node, Python, Go, Java runtimes. Use this skill whenever the user mentions AWS Lambda, lambda function, IAM role, Function URL, API Gateway + Lambda, Lambda layer, SAM, CDK Lambda, Serverless Framework, or asks "audit my Lambda", "Lambda security review", "Lambda IAM". Trigger when the codebase contains `serverless.yml`, `template.yaml` (SAM), `cdk.json`, or Lambda handler patterns.

hlsitechio 2116d34 8.4 KB Updated

File contents

hlsitechio/claude-skills-security/tree/main/appsec-stack-pack/aws-lambda-security commit 2116d3428c

Frequently asked questions

npx skillmds@latest add hlsitechio/aws-lambda-security