general MCP Server
Open-source FinOps CLI for AWS. Scans your account, finds cost and security waste, and auto-generates the Terraform fixes. Rule-based core, optional AI assist for complex patches.
Discovered via github-topic:mcp and last synced 3mo ago.
1. Install the package
npx korinfra
2. Add to claude_desktop_config.json
{
"mcpServers": {
"korinfra": {
"command": "npx",
"args": [
"korinfra"
]
}
}
}Config file location: ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) / %APPDATA%\Claude\claude_desktop_config.json (Windows)
What it does
Export to JSON, CSV, or HTML with inline SVG charts
Browse and filter all scanned resources
Audit recent AWS API activity (CloudTrail)
Setup wizard — AWS profile, AI provider, API key
Multi-AZ on dev/staging — disable and halve the cost
What is stripped
Review saved recommendations. `--refresh` re-runs analysis
Verify credentials, config, storage, and AI provider
Unattached volumes still billing
Cost Explorer breakdown — `--days N`, `--group-by service\
46 Terraform security rules — `--dir <path>`
Finding
Publicly accessible RDS instance
AI reads Terraform, generates patch, opens GitHub PR *(AI required)*
View or edit config values at runtime
No
Audit required tags — `suggest` uses AI
Instance with <5% CPU for 7+ days
AWS Trusted Advisor
Full cost + security scan
Browse past scans, diff between them
Start MCP server — `stdio` (default) or `--http --port N`
Bucket without server-side encryption (SSE-S3 is free)
Inspect or refresh the local AWS pricing cache
m4/c4/r4 family — faster current-gen is cheaper
✓
Install MCP server into Claude Code or Cursor
Lambda with zero invocations
gp2 → gp3 migration — 20% cheaper, same performance
+ private IPs, external domain names
AWS access keys, API keys, GitHub tokens, JWTs, PEM keys
AWS Trusted Advisor
List built-in cost optimization rules — `list --json`, `list --filter <category>`
Action
Pricing only
Detecting exposed AWS credentials in source code repositories, CI/CD pipelines, and configuration files using TruffleHog, git-secrets, and AWS-native detection mechanisms to prevent credential theft and unauthorized account access.
Detecting data exfiltration attempts from AWS S3 buckets by analyzing CloudTrail S3 data events, VPC Flow Logs, GuardDuty findings, Amazon Macie alerts, and S3 access patterns to identify unauthorized bulk downloads and cross-account data transfers.
Implement Amazon Macie to automatically discover, classify, and protect sensitive data in S3 buckets using machine learning and pattern matching for PII, financial data, and credentials detection.
Implementing AWS Security Hub to aggregate security findings across AWS accounts, enable compliance standards like CIS AWS Foundations and PCI DSS, configure automated remediation with EventBridge and Lambda, and create custom security insights for organizational risk management.
Flexible and powerful framework for managing multiple AI agents and handling complex conversations
为独立开发者准备的精选技术栈和工具仓库来了!这里有你最需要的工具,帮你提升开发效率、节约成本,最重要的是——这些工具都是市场上热门的,经过验证的。🚀A curated collection of tech stacks and tools tailored for independent developers is here! these are proven, popular tools widely used in the industry. 🚀
Learn Cloud Applied Generative AI Engineering (GenEng) using OpenAI, Gemini, Streamlit, Containers, Serverless, Postgres, LangChain, Pinecone, and Next.js
The secure gateway connecting AI agents to enterprise systems.
Learn how to use the cloud-aws Claude skill. Complete guide with installation instructions and examples.
Learn how to use the detecting-aws-iam-privilege-escalation Claude skill. Complete guide with installation instructions and examples.
Learn how to use the detecting-aws-guardduty-findings-automation Claude skill. Complete guide with installation instructions and examples.