Documentation
¶
Index ¶
Constants ¶
This section is empty.
Variables ¶
This section is empty.
Functions ¶
This section is empty.
Types ¶
type Driver ¶
Driver wraps the AWS CloudTrail `LookupEvents` action. CloudTrail records management-plane operations across the account; the validation flow uses `dump` to pull the recent slice and cross-reference what a CSPM detector observed. CloudTrail is read-only — `whitelist` returns a clear error.
func (*Driver) DumpEvents ¶
DumpEvents returns recent CloudTrail entries. `args` accepts an optional `<startUnix>:<endUnix>` time window; pass "" to use the CloudTrail default 90-day lookback.
func (*Driver) HandleEvents ¶
HandleEvents is intentionally not supported — CloudTrail is read-only.
Click to show internal directories.
Click to hide internal directories.