Access management as code.

Infrastructure automation
Our review

What we like

Link resources in Terraform. Define access rules and workflows in Python. Supports simple approve/deny rules with approvals managed through Slack. But also allows sophisticated rules with routing to teams, auto approval based on who is on call, remove access or de-escalate privileges on events e.g. after going off-call or after a time. Full audit logs.

What we don't like

Requires use of Terraform e.g. no support for AWS CDK. Only supports writing rules in Python.

Reviewed: 2023-02-23

