Ross ROSS = Recommend OSS · open-source software intelligence for agents

awslabs/aws-config-rules

[Node, Python, Java] Repository of sample Custom Rules for AWS Config. observed · 2026-08-28

github.com/awslabs/aws-config-rules · homepage · Python · CC0-1.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

70/100

  • Activity 84
  • Release rhythm 35
  • Longevity 100

Flags: no_releases

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 3859
  • days_rel: n/a
  • days_push: 98
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1735 stars · 878 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A community repository of sample custom AWS Config rules written in Python, Node.js, and Java. These Lambda-based rules evaluate AWS resource configurations for compliance and can be deployed via the RDK tool or manually through AWS Lambda and AWS Config.

Use cases

  • write custom compliance rules for AWS resources
  • audit AWS account configuration for security best practices
  • deploy AWS Config rules as Lambda functions
  • check S3 bucket encryption or public access settings
  • implement compliance-as-code on AWS
  • find sample code for AWS Config rule development

When to choose

  • you need ready-made examples of AWS Config custom rules
  • you want to enforce organizational policies on AWS resource configurations
  • you are building compliance checks with AWS Lambda and AWS Config
  • you need reference implementations in Python, Node.js, or Java for Config rules

When to avoid

  • you need a managed policy/compliance solution without writing code (use AWS Conformance Packs or AWS Security Hub)
  • you are not using AWS
  • you need a production framework for deploying rules at scale (consider aws-config-engine-for-compliance-as-code or RDKLib instead)
  • you want continuous runtime monitoring rather than configuration evaluation

Facets

library · maturity active

security monitoring developer-tools cloud-computing security infrastructure-as-code cloud python jvm serverless aws-config compliance-as-code cloud-security sample-rules aws-lambda governance devops nodejs

10 sources

Member repositories

RepositoryRoleHealth v2
awslabs/aws-config-rulesmain70

For agents

markdown · JSON · MCP: product_card(name="awslabs/aws-config-rules")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem