AWS Lambda Security

Security audit for AWS Lambda functions including IAM role least privilege, environment variable encryption (KMS), Function URLs vs API Gateway, VPC config, layer usage, container image scanning, X-Ray and logs PII, cold start state, async invocation handling, and Lambda-specific patterns across Node, Python, Go, Java runtimes. Use this skill whenever the user mentions AWS Lambda, lambda function, IAM role, Function URL, API Gateway + Lambda, Lambda layer, SAM, CDK Lambda, Serverless Framework, or asks "audit my Lambda", "Lambda security review", "Lambda IAM". Trigger when the codebase contains `serverless.yml`, `template.yaml` (SAM), `cdk.json`, or Lambda handler patterns. Use when this capability is needed.

tomevault-io 00beb05 2 files · 9.3 KB Updated

File contents

tomevault-io/skills-registry/tree/main/hlsitechio--claude-skills-security--aws-lambda-security commit 00beb05e9e

Frequently asked questions

npx skillmds@latest add tomevault-io/aws-lambda-security