AWS Non-Human Identity and Workload Identity Surface
Comprehensive catalog of all AWS non-human identity types, their authentication mechanisms, SecurityV0 entity mappings, ownership decay scenarios, and discovery APIs.
Comprehensive catalog of all AWS non-human identity types, their authentication mechanisms, SecurityV0 entity mappings, ownership decay scenarios, and discovery APIs.
Why SecurityV0's current resource identity model cannot support deterministic path-scoped execution evidence attribution, and a proposal to introduce a first-class canonical resource_key on both entities and evidence records.
Honest per-connector accounting of how SecurityV0 derives execution counts, where those numbers match ground truth, and where they don't.
Analysis of when SecurityV0 should use source-system audit/history logs versus internal snapshot diffing, including current platform gap assessment, system capability matrix, and recommended hybrid...