Free AWS checkup

Connect read-only. Get a plain-English report in a minute.

Cloud GUI looks across every region of your AWS account and tells you what needs fixing, why it matters, and how to fix it. No jargon, no dashboards to learn, nothing changed.

Read-only role you create and can delete. No access keys. Free for one account.

What it checks

The things that quietly go wrong in AWS.

Retired Lambda runtimes

Functions on a runtime AWS no longer patches, or retires in the next six months, with what to move to.

Failing functions

Anything that errored in the last 24 hours, and which ones fail every call.

Public S3 buckets

Buckets anyone on the internet can read, and ones with Block Public Access off.

Expiring certificates

ACM certificates expired or expiring within 30 days, in every region (us-east-1 is where CloudFront looks).

Paying for nothing

Disks not attached to any server and Elastic IPs not in use, with roughly what they cost a month.

Exposed databases

RDS and Aurora databases reachable from the internet, or running without automatic backups.

Stopped databases

Stopped RDS databases still billing for storage, and the day AWS starts them again.

DynamoDB recovery

Tables without point-in-time recovery, the undo button for a bad deploy.

Each finding is labelled Fix now, Fix soon or Worth a look, names the exact functions, buckets or certificates, and links to where you fix it.

How it works

Three steps, about two minutes.

The checkup runs on the same read-only access as the rest of Cloud GUI: a role in your own account that can read names and settings, never your files, data or secrets. Every permission, listed.

  1. 1

    Sign in with your email

    No password. We send a link and a 6-digit code.

  2. 2

    Connect your AWS account

    Enter the account number and click Create stack in your AWS console. It makes one read-only role; delete the stack and access ends.

  3. 3

    Read your report

    Every region checked at once. Run it again whenever you like; it's free on the free plan.

Questions

Is it really free?

Yes. The checkup is part of Cloud GUI's free plan, which covers one AWS account. Pricing is there if you want more accounts or editing.

Does it cost anything in AWS?

Almost nothing. The checkup makes ordinary read calls, most of which AWS doesn't charge for; the function error counts come from CloudWatch, which charges a fraction of a cent for them.

Can it change anything?

No. The role it uses can only read, and AWS enforces that, not us. Every fix happens in your AWS console, by you, with a link from the report to the right page.

What does it see?

Names and settings: which buckets exist and whether they're public, which runtime a function uses, when a certificate expires. Not what's in your files or databases, not your code, and not your secrets.

See what needs fixing.

Free for one AWS account. Read-only, revocable, and every call shows up in your own CloudTrail.

Get your free checkup