Terraform module to provision Service Control Policies (SCP) for AWS Organizations, Organizational Units, and AWS accounts
-
Updated
Dec 11, 2025 - HCL
Terraform module to provision Service Control Policies (SCP) for AWS Organizations, Organizational Units, and AWS accounts
Detect phantom IAM users, decode leaked AWS Bedrock API keys, and prevent LLMjacking. CLI + SCPs + SIEM detection rules.
Awesome AWS service control policies (SCPs), Resource Control Policies (RCPs), and other organizational policies
Enforce encryption by tagging S3 buckets with KMS key ARNs
Enforce Intelligent Tiering by tagging S3 buckets (closest thing to changing S3's default storage class!)
Service Control Policies we use in the AWS Organizations configuration for the Hacker Sandbox
Enforce S3 Intelligent Tiering storage class on object creation to reduce costs and remove the need for lifecycle transition policies.
Add a description, image, and links to the service-control-policy topic page so that developers can more easily learn about it.
To associate your repository with the service-control-policy topic, visit your repo's landing page and select "manage topics."