PlugMyPlugin
← Browse

access-review

matthews-wong ★ 2

This plugin reviews IAM/RBAC/permission changes in code diffs to detect over-broad grants, wildcards, privilege-escalation primitives, and scope widening using a read-only subagent, then reports findings by severity. It covers AWS, GCP, Azure IAM, Kubernetes RBAC, Terraform, and application-level RBAC frameworks.

Security Code Review No API key detected prompt pack

Install

> /plugin marketplace add matthews-wong/claude-code-plugins/tree/HEAD/plugins/access-review
> /plugin install access-review

Source: https://github.com/matthews-wong/claude-code-plugins/tree/HEAD/plugins/access-review

What it's made of

1 command · 1 agent · 1 skill

Commands
1
Agents
1
Skills
1
MCP servers
0
Hooks
0

What it needs & plugs into

API keys
none
Paid services
none detected
External tools
none
Talks to
nothing external detected

Analyzed . Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.

Is this your plugin?

Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (matthews-wong).