Reports for Every Cloud

Purpose-built reports that answer the questions cloud and security teams actually ask — across AWS, Azure, and Google Cloud.

58
Curated Reports
1705+
Controls Checked
3
Cloud Providers
5 min
To First Results
ASecureCloud report preview
AWS logo

Unused Resources

22 controls
17 services covered

Identifies idle, empty, and orphaned resources that add cost and attack surface — unattached EBS volumes, long-stopped EC2 instances, unused Elastic IPs and security groups, idle internet gateways and NACLs, empty IAM groups, stale credentials and certificates, unused permission sets, empty WAF web ACLs, and unattached Network Firewall policies.

What we check

IAM Identities3
  • IAM Policies Unused (Unattached) Should Be Removed
  • No IAM Users with Unused Credentials
  • No Expired IAM Server Certificates
EC2 Instances2
  • No EC2 Instances Stopped > 30 days
  • No Unused Elastic IPs
Load Balancers2
  • No Load Balancers with No Listeners
  • No Load Balancers with No Target Groups
Network Firewall Policies2
  • No Empty Network Firewall Policies
  • No Empty Network Firewall Rule Groups
EBS Volumes1
  • No Unattached EBS Volumes
EC2 Network Interfaces1
  • Ensure unused ENIs are removed
EC2 Security Groups1
  • No Unused Security Groups
Internet Gateways1
  • No Unused Internet Gateways
VPCs1
  • VPCs should be in use
Network ACLs1
  • No Unused Network Access Lists (NACL)
IAM Groups1
  • No Empty IAM Groups
Secrets Manager Secrets1
  • No Unused Secrets
IAM Identity Center Permission Sets1
  • No Unused Permission Sets
WAF Web ACLs1
  • No Empty WAF Web ACLs
WAF Resource Associations1
  • WAF Classic Web ACL Associated to a Resource
WAF Rule Groups1
  • No Empty WAF Rule Groups
Network Firewall Rule Groups1
  • No Empty Stateless Network Firewall Rule Groups

Run these reports on your own cloud

Connect an account and get your first set of reports in minutes — free to start, no credit card required.