library
turbot/aws_thrifty

Variables

The AWS Thrifty mod has 139 variables:

NameDefaultDescription
approvers
[]
List of notifiers to be used for obtaining action/approval decisions, when empty list will perform the default response associated with the detection.
databasepostgres://steampipe@localhost:9193/steampipeSteampipe database connection string.
dynamodb_tables_with_stale_data_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
dynamodb_tables_with_stale_data_enabled_actions
["skip","delete_table"]
The list of enabled actions to provide to approvers for selection.
dynamodb_tables_with_stale_data_max_days90The maximum number of days DynamoDB table stale data can be retained.
dynamodb_tables_with_stale_data_trigger_enabledIf true, the trigger is enabled.
dynamodb_tables_with_stale_data_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ebs_snapshots_exceeding_max_age_days90The maximum number of days EBS snapshots can be retained.
ebs_snapshots_exceeding_max_age_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ebs_snapshots_exceeding_max_age_enabled_actions
["skip","delete_snapshot"]
The list of enabled actions to provide to approvers for selection.
ebs_snapshots_exceeding_max_age_trigger_enabledIf true, the trigger is enabled.
ebs_snapshots_exceeding_max_age_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ebs_volumes_attached_to_stopped_instances_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ebs_volumes_attached_to_stopped_instances_enabled_actions
["skip","detach_volume","delete_volume","snapshot_and_delete_volume"]
The list of enabled actions to provide to approvers for selection.
ebs_volumes_attached_to_stopped_instances_trigger_enabledIf true, the trigger is enabled.
ebs_volumes_attached_to_stopped_instances_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ebs_volumes_exceeding_max_size100The maximum size (GB) allowed for volumes.
ebs_volumes_exceeding_max_size_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ebs_volumes_exceeding_max_size_enabled_actions
["skip","delete_volume","snapshot_and_delete_volume"]
The list of enabled actions to provide to approvers for selection.
ebs_volumes_exceeding_max_size_trigger_enabledIf true, the trigger is enabled.
ebs_volumes_exceeding_max_size_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ebs_volumes_if_unattached_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ebs_volumes_if_unattached_enabled_actions
["skip","delete_volume","snapshot_and_delete_volume"]
The list of enabled actions to provide to approvers for selection.
ebs_volumes_if_unattached_trigger_enabledIf true, the trigger is enabled.
ebs_volumes_if_unattached_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ebs_volumes_using_gp2_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ebs_volumes_using_gp2_enabled_actions
["skip","update_to_gp3"]
The list of enabled actions to provide to approvers for selection.
ebs_volumes_using_gp2_trigger_enabledIf true, the trigger is enabled.
ebs_volumes_using_gp2_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ebs_volumes_using_io1_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ebs_volumes_using_io1_enabled_actions
["skip","update_to_io2"]
The list of enabled actions to provide to approvers for selection.
ebs_volumes_using_io1_trigger_enabledIf true, the trigger is enabled.
ebs_volumes_using_io1_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ebs_volumes_with_low_iops_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ebs_volumes_with_low_iops_enabled_actions
["skip","delete_volume"]
The list of enabled actions to provide to approvers for selection.
ebs_volumes_with_low_iops_trigger_enabledIf true, the trigger is enabled.
ebs_volumes_with_low_iops_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ebs_volumes_with_low_usage_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ebs_volumes_with_low_usage_enabled_actions
["skip","delete_volume"]
The list of enabled actions to provide to approvers for selection.
ebs_volumes_with_low_usage_min100The number of average read/write ops required for volumes to be considered infrequently used.
ebs_volumes_with_low_usage_trigger_enabledIf true, the trigger is enabled.
ebs_volumes_with_low_usage_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ec2_application_load_balancers_if_unused_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ec2_application_load_balancers_if_unused_enabled_actions
["skip","delete_load_balancer"]
The list of enabled actions to provide to approvers for selection.
ec2_application_load_balancers_if_unused_trigger_enabledIf true, the trigger is enabled.
ec2_application_load_balancers_if_unused_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ec2_classic_load_balancers_if_unused_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ec2_classic_load_balancers_if_unused_enabled_actions
["skip","delete_load_balancer"]
The list of enabled actions to provide to approvers for selection.
ec2_classic_load_balancers_if_unused_trigger_enabledIf true, the trigger is enabled.
ec2_classic_load_balancers_if_unused_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ec2_gateway_load_balancers_if_unused_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ec2_gateway_load_balancers_if_unused_enabled_actions
["skip","delete_load_balancer"]
The list of enabled actions to provide to approvers for selection.
ec2_gateway_load_balancers_if_unused_trigger_enabledIf true, the trigger is enabled.
ec2_gateway_load_balancers_if_unused_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ec2_instances_exceeding_max_age_days90The maximum number of days EC2 instances can be retained.
ec2_instances_exceeding_max_age_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ec2_instances_exceeding_max_age_enabled_actions
["skip","stop_instance","terminate_instance"]
The list of enabled actions to provide to approvers for selection.
ec2_instances_exceeding_max_age_trigger_enabledIf true, the trigger is enabled.
ec2_instances_exceeding_max_age_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ec2_instances_large_allowed_types
["%.nano","%.micro","%.small","%.medium","%.large","%.xlarge","%._xlarge"]
A list of allowed instance types. PostgreSQL wildcards are supported.
ec2_instances_large_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ec2_instances_large_enabled_actions
["skip","stop_instance","terminate_instance"]
The list of enabled actions to provide to approvers for selection.
ec2_instances_large_trigger_enabledIf true, the trigger is enabled.
ec2_instances_large_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ec2_instances_of_older_generation_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ec2_instances_of_older_generation_enabled_actions
["skip","stop_instance","terminate_instance"]
The list of enabled actions to provide to approvers for selection.
ec2_instances_of_older_generation_trigger_enabledIf true, the trigger is enabled.
ec2_instances_of_older_generation_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ec2_instances_without_graviton_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ec2_instances_without_graviton_enabled_actions
["skip","stop_instance","terminate_instance"]
The list of enabled actions to provide to approvers for selection.
ec2_instances_without_graviton_trigger_enabledIf true, the trigger is enabled.
ec2_instances_without_graviton_trigger_schedule15mThe schedule on which to run the trigger if enabled.
ec2_network_load_balancers_if_unused_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
ec2_network_load_balancers_if_unused_enabled_actions
["skip","delete_load_balancer"]
The list of enabled actions to provide to approvers for selection.
ec2_network_load_balancers_if_unused_trigger_enabledIf true, the trigger is enabled.
ec2_network_load_balancers_if_unused_trigger_schedule15mThe schedule on which to run the trigger if enabled.
eks_node_groups_without_graviton_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
eks_node_groups_without_graviton_enabled_actions
["skip","delete_node_group"]
The list of enabled actions to provide to approvers for selection.
eks_node_groups_without_graviton_trigger_enabledIf true, the trigger is enabled.
eks_node_groups_without_graviton_trigger_schedule15mThe schedule on which to run the trigger if enabled.
elasticache_clusters_exceeding_max_age_days90The maximum number of days Elasticache clusters can be retained.
elasticache_clusters_exceeding_max_age_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
elasticache_clusters_exceeding_max_age_enabled_actions
["skip","delete_cluster"]
The list of enabled actions to provide to approvers for selection.
elasticache_clusters_exceeding_max_age_trigger_enabledIf true, the trigger is enabled.
elasticache_clusters_exceeding_max_age_trigger_schedule15mThe schedule on which to run the trigger if enabled.
emr_clusters_idle_30_mins_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
emr_clusters_idle_30_mins_enabled_actions
["skip","delete_cluster"]
The response options given to approvers to determine the chosen response.
emr_clusters_idle_30_mins_trigger_enabledIf true, the trigger is enabled.
emr_clusters_idle_30_mins_trigger_schedule15mThe schedule on which to run the trigger if enabled.
lambda_functions_without_graviton_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
lambda_functions_without_graviton_enabled_actions
["skip","delete_function"]
The list of enabled actions to provide to approvers for selection.
lambda_functions_without_graviton_trigger_enabledIf true, the trigger is enabled.
lambda_functions_without_graviton_trigger_schedule15mThe schedule on which to run the trigger if enabled.
max_concurrency1The maximum concurrency to use for responding to detection items.
notification_levelinfoThe verbosity level of notification messages to send. Valid options are 'verbose', 'info', 'error'.
notifierdefaultThe name of the notifier to use for sending notification messages.
rds_db_instances_exceeding_max_age_days90The maximum number of days DB instances are allowed to run.
rds_db_instances_exceeding_max_age_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
rds_db_instances_exceeding_max_age_enabled_actions
["skip","delete_instance"]
The list of enabled actions to provide to approvers for selection.
rds_db_instances_exceeding_max_age_trigger_enabledIf true, the trigger is enabled.
rds_db_instances_exceeding_max_age_trigger_schedule15mThe schedule on which to run the trigger if enabled.
rds_db_instances_of_older_generation_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
rds_db_instances_of_older_generation_enabled_actions
["skip","delete_instance"]
The list of enabled actions to provide to approvers for selection.
rds_db_instances_of_older_generation_trigger_enabledIf true, the trigger is enabled.
rds_db_instances_of_older_generation_trigger_schedule15mThe schedule on which to run the trigger if enabled.
rds_db_instances_with_low_connection_count_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
rds_db_instances_with_low_connection_count_enabled_actions
["skip","delete_instance"]
The list of enabled actions to provide to approvers for selection.
rds_db_instances_with_low_connection_count_trigger_enabledIf true, the trigger is enabled.
rds_db_instances_with_low_connection_count_trigger_schedule15mThe schedule on which to run the trigger if enabled.
rds_db_instances_without_graviton_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
rds_db_instances_without_graviton_enabled_actions
["skip","delete_instance"]
The list of enabled actions to provide to approvers for selection.
rds_db_instances_without_graviton_trigger_enabledIf true, the trigger is enabled.
rds_db_instances_without_graviton_trigger_schedule15mThe schedule on which to run the trigger if enabled.
route53_health_checks_if_unused_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
route53_health_checks_if_unused_enabled_actions
["skip","delete_health_check"]
The list of enabled actions to provide to approvers for selection.
route53_health_checks_if_unused_trigger_enabledIf true, the trigger is enabled.
route53_health_checks_if_unused_trigger_schedule15mThe schedule on which to run the trigger if enabled.
route53_records_with_lower_ttl_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
route53_records_with_lower_ttl_enabled_actions
["skip","update_ttl"]
The list of enabled actions to provide to approvers for selection.
route53_records_with_lower_ttl_trigger_enabledIf true, the trigger is enabled.
route53_records_with_lower_ttl_trigger_schedule15mThe schedule on which to run the trigger if enabled.
s3_buckets_without_lifecycle_policy_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
s3_buckets_without_lifecycle_policy_default_policy{ "Rules": [ { "ID": "Transition to STANDARD_IA after 90 days", "Status": "Enabled", "Filter": {}, "Transitions": [ { "Days": 90, "StorageClass": "STANDARD_IA" } ] }, { "ID": "Transition to GLACIER after 180 days", "Status": "Enabled", "Filter": {}, "Transitions": [ { "Days": 180, "StorageClass": "GLACIER" } ] }, { "ID": "Transition to DEEP_ARCHIVE after 365 days", "Status": "Enabled", "Filter": {}, "Transitions": [ { "Days": 365, "StorageClass": "DEEP_ARCHIVE" } ] } ] } The default S3 bucket lifecycle policy to apply
s3_buckets_without_lifecycle_policy_enabled_actions
["skip","apply_policy"]
The list of enabled actions to provide to approvers for selection.
s3_buckets_without_lifecycle_policy_trigger_enabledIf true, the trigger is enabled.
s3_buckets_without_lifecycle_policy_trigger_schedule15mThe schedule on which to run the trigger if enabled.
secretsmanager_secrets_if_unused_days90The default number of days secrets manager secrets to be considered in-use.
secretsmanager_secrets_if_unused_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
secretsmanager_secrets_if_unused_enabled_actions
["skip","delete_secret"]
The list of enabled actions to provide to approvers for selection.
secretsmanager_secrets_if_unused_trigger_enabledIf true, the trigger is enabled.
secretsmanager_secrets_if_unused_trigger_schedule15mThe schedule on which to run the trigger if enabled.
vpc_eips_if_unattached_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
vpc_eips_if_unattached_enabled_actions
["skip","release"]
The list of enabled actions to provide to approvers for selection.
vpc_eips_if_unattached_trigger_enabledIf true, the trigger is enabled.
vpc_eips_if_unattached_trigger_schedule15mThe schedule on which to run the trigger if enabled.
vpc_nat_gateways_if_unused_default_actionnotifyThe default action to use for the detected item, used if no input is provided.
vpc_nat_gateways_if_unused_enabled_actions
["skip","delete"]
The list of enabled actions to provide to approvers for selection.
vpc_nat_gateways_if_unused_trigger_enabledIf true, the trigger is enabled.
vpc_nat_gateways_if_unused_trigger_schedule15mThe schedule on which to run the trigger if enabled.