AWS SAM Template Security Considerations
SAM templates look simple and that is exactly the problem. The defaults are generous, the transforms are opaque, and the resulting stacks are often more privileged than anyone intended.
Deep dives, practical guides, and incident analyses from engineers who build Safeguard. No fluff, no vendor FUD — just what you need to ship secure software.
SAM templates look simple and that is exactly the problem. The defaults are generous, the transforms are opaque, and the resulting stacks are often more privileged than anyone intended.
A deep dive into ECR scanning options, from basic Clair scanning to enhanced Inspector integration, and what most teams get wrong.
A deep look at Amazon Inspector v2 for container scanning, its improvements over v1, and how to get the most out of it.
A practical guide to securing your software supply chain on AWS, from ECR image provenance to CodePipeline hardening.
Weekly insights on software supply chain security, delivered to your inbox.