logoalt Hacker News

grim_ioyesterday at 5:07 PM1 replyview on HN

Absolute madman :)

Giving an agent access to AWS is effectively giving it your credit card.

At the max, I would give it ssh access to a Hetzner VM with its own user, capable of running rootles podman containers.


Replies

haolezyesterday at 5:12 PM

Not at all. AWS IAM policy is a complex maze, but incredibly powerful. It solves this exact problem very well.

show 1 reply