{"generated_at":"2026-08-17T10:36:11+00:00","item":{"added_at":"2026-01-15T12:32:44.348000+00:00","analysis_method":"capability_triage","category":"Desktop Extension","description":"The AWS API MCP Server lets AI assistants manage AWS resources using AWS CLI commands. It acts as a secure bridge, enabling creation, updates, and management...","did":"ant-dir-gh-awslabs-aws-api-mcp-server","homepage_url":"https://awslabs.github.io/mcp/servers/aws-api-mcp-server/","icon":"https://claude.ai/api/dxt/extensions/ant.dir.gh.awslabs.aws-api-mcp-server/versions/1.3.3/icon.png","id":"ant.dir.gh.awslabs.aws-api-mcp-server","installs":32075,"last_scanned":"","license":"Apache-2.0","long_description":"The AWS API MCP Server lets AI assistants manage AWS resources using AWS CLI commands. It acts as a secure bridge, enabling creation, updates, and management across all AWS services.","name":"AWS API MCP Server","plutonium_url":"https://plutonium.pluto.security/detail.html?planet=claudesec&did=ant-dir-gh-awslabs-aws-api-mcp-server&utm_source=plutonium_analysis_skill&utm_medium=claude_skill&utm_campaign=connector_risk_assessment","publisher":"Amazon Web Services","publisher_url":"https://awslabs.github.io/mcp/","repository_url":"https://github.com/awslabs/mcp.git","risk":"medium","risk_severity":"medium","security_risks":[{"description":"This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.","evidence":"Connector has 2 tools; permissions on claude.ai/directory: \"unknown\". Data flows out of the connected service into the model.","remediation":{"block_tool_categories":[],"steps":["Connect using an account that only has access to the information you actually want Claude to read - not your main admin login.","When you grant access, pick the smallest set of folders, mailboxes, or channels possible.","Check the connector's activity log every so often to make sure nothing unexpected is being read."]},"risk_type":"reads_private_data","severity":"medium","title":"Reads your private information"}],"signature_status":"unsigned","source_code_reviewed":true,"tags":["reads_private_data"],"tools":[{"description":"","name":"suggest_aws_commands","risk":{"category":"code_execution","level":"high","recommendation":"Block in production. If needed, scope tightly to a sandboxed account and disallow shell/SQL passthrough.","why":"Runs arbitrary code, queries, or shell commands. Effectively grants the model the same privileges as the configured account on the target system."}},{"description":"","name":"call_aws","risk":{"category":"code_execution","level":"high","recommendation":"Block in production. If needed, scope tightly to a sandboxed account and disallow shell/SQL passthrough.","why":"Runs arbitrary code, queries, or shell commands. Effectively grants the model the same privileges as the configured account on the target system."}}],"tools_count":2,"type":"desktop_extension","url":"","uuid":"814f0114-de56-5c66-b9ea-785ca4ea74b8","version":"1.3.3"},"query_key":"amazon web services aws api mcp server","schema_version":1,"status":"match"}
