🔐 IAM (Global)

🛡️ IAM Compliance Findings

8

Total IAM Users

8

Users Without MFA

1

Access Keys >90 Days Old

1

Users with Admin Access

👥 IAM Users
User Name MFA Enabled Access Key ID Key Status Key Created
razed-dev-bo-serviceNoAKIATIIDKZRCSCJHSUOIActive2025-10-02
razed_dev_cms_nginx_s3_gatewayNoAKIATIIDKZRC4WE7QMZRActive2025-10-30
razed_dev_devopsNoAKIATIIDKZRCY5LF6TFVActive2025-11-11
razed_dev_devopsNoAKIATIIDKZRC7IL7UUFDActive2025-12-16
razed_dev_ecs_deployNoAKIATIIDKZRCVX2IHZSZActive2025-10-31
razed_dev_infras_watcherNo---
razed_dev_s3uploadNoAKIATIIDKZRC2YSXFDVLActive2025-10-30
razed_dev_sqsNoAKIATIIDKZRC3MSPI7X7Active2025-10-30
spintech_biNo---
⚠️ Users with AdministratorAccess Policy
User Name
razed_dev_devops

📍 Region: eu-west-2

🌐 VPCs & Subnets
Name VPC ID CIDR Block State Tenancy Tags
aws-controltower-VPC vpc-061928f7a080e0839 172.31.0.0/16 available default aws:cloudformation:logical-id=VPCaws:cloudformation:stack-name=StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733aws:cloudformation:stack-id=arn:aws:cloudformation:eu-west-2:223882169413:stack/StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733/e33e3b10-2abc-11f0-82ba-06e23133231d
Subnets
Name Subnet ID VPC ID CIDR Block AZ Available IPs Public IP on Launch Tags
aws-controltower-PrivateSubnet2A subnet-068e55bbdb0a42637 vpc-061928f7a080e0839 172.31.32.0/20 eu-west-2b 4091 No aws:cloudformation:stack-id=arn:aws:cloudformation:eu-west-2:223882169413:stack/StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733/e33e3b10-2abc-11f0-82ba-06e23133231daws:cloudformation:stack-name=StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733aws:cloudformation:logical-id=PrivateSubnet2ANetwork=Private
aws-controltower-PrivateSubnet1A subnet-09d75c924edbd28f8 vpc-061928f7a080e0839 172.31.64.0/20 eu-west-2a 4091 No aws:cloudformation:stack-id=arn:aws:cloudformation:eu-west-2:223882169413:stack/StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733/e33e3b10-2abc-11f0-82ba-06e23133231daws:cloudformation:stack-name=StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733aws:cloudformation:logical-id=PrivateSubnet1ANetwork=Private
aws-controltower-PrivateSubnet3A subnet-0377be15f315e9d59 vpc-061928f7a080e0839 172.31.80.0/20 eu-west-2c 4091 No aws:cloudformation:logical-id=PrivateSubnet3Aaws:cloudformation:stack-id=arn:aws:cloudformation:eu-west-2:223882169413:stack/StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733/e33e3b10-2abc-11f0-82ba-06e23133231dNetwork=Privateaws:cloudformation:stack-name=StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733
Lambda Functions
Function Name Runtime Memory Timeout VPC Last Modified Tags
aws-controltower-NotificationForwarder python3.13 128 MB 60s No VPC 2025-08-21 aws:cloudformation:logical-id=ForwardSnsNotificationaws:cloudformation:stack-id=arn:aws:cloudformation:eu-west-2:223882169413:stack/StackSet-AWSControlTowerBP-BASELINE-CLOUDWATCH-eac7d9e5-248b-49d6-a50f-36235befcf2d/6919eb90-2abc-11f0-8570-02e973a0ddc3aws:cloudformation:stack-name=StackSet-AWSControlTowerBP-BASELINE-CLOUDWATCH-eac7d9e5-248b-49d6-a50f-36235befcf2d
📋 CloudWatch Log Groups
Total Log Groups: 2
Without Retention Policy: 0
Log Group Name Retention (Days) Stored Size
/aws/lambda/aws-controltower-NotificationForwarder 14 0 B
StackSet-AWSControlTowerBP-VPC-ACCOUNT-FACTORY-V1-9c8b1712-7d3e-4d32-84ae-2f5186a0b733-VPCFlowLogsLogGroup-CjqheZbBIZii 90 0 B
🛡️ Compliance Findings
Network & Security (Section 5.2)

0

Open Security Groups (0.0.0.0/0)

0

EC2 Without IMDSv2

Yes

CloudTrail Enabled

Data Protection (Section 5.4)

0

Unencrypted EBS Volumes

0

Unencrypted RDS

0

SQS Without Encryption

Logging & Monitoring (Section 5.3)

0

Log Groups (No Retention)

RDS Standards (Section 7)

0

Public RDS Instances

0

RDS Without Multi-AZ

0

RDS Without Backups

Lambda Standards (Section 7)

0

Lambda Default Timeout (3s)

1

Lambda Without DLQ

SQS Standards (Section 7)

0

SQS Without DLQ

ECS Standards (Section 7)

0

Plaintext Env Vars

0

Privileged Containers

📍 Region: eu-central-2

🌐 VPCs & Subnets
Name VPC ID CIDR Block State Tenancy Tags
razed-dev-vpc vpc-00279654aabe28a96 172.20.0.0/16 available default Customer=razedmap-migrated=migS0EK6JMBZCEnvironment=dev
cloudnomads-cdk-builder vpc-01e0e1fbc243eaa38 100.64.0.0/28 available default aws:cloudformation:stack-name=cloudnomads-cdk-builderaws:cloudformation:stack-id=arn:aws:cloudformation:eu-central-2:223882169413:stack/cloudnomads-cdk-builder/3d99d620-7d90-11f0-a28e-0eb1d98d6cddaws:cloudformation:logical-id=CdkBuilderVpc
Subnets
Name Subnet ID VPC ID CIDR Block AZ Available IPs Public IP on Launch Tags
razed-dev-private-subnet-1 subnet-04a2ce66390b37086 vpc-00279654aabe28a96 172.20.1.0/24 eu-central-2a 223 No map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
PubSub subnet-05da4549ea348d659 vpc-01e0e1fbc243eaa38 100.64.0.0/28 eu-central-2c 10 Yes aws:cloudformation:logical-id=PublicSubnetaws:cloudformation:stack-id=arn:aws:cloudformation:eu-central-2:223882169413:stack/cloudnomads-cdk-builder/3d99d620-7d90-11f0-a28e-0eb1d98d6cddaws:cloudformation:stack-name=cloudnomads-cdk-builder
razed-dev-public-subnet-1 subnet-0c727be7738556b4e vpc-00279654aabe28a96 172.20.2.0/24 eu-central-2a 237 No Environment=devmap-migrated=migS0EK6JMBZCCustomer=razed
razed-dev-public-subnet-2 subnet-0a6c5fd7435db36d7 vpc-00279654aabe28a96 172.20.4.0/24 eu-central-2b 245 No Customer=razedmap-migrated=migS0EK6JMBZCEnvironment=dev
razed-dev-private-subnet-2 subnet-02f4b63b676022144 vpc-00279654aabe28a96 172.20.3.0/24 eu-central-2b 245 No map-migrated=migS0EK6JMBZCEnvironment=devCustomer=razed
🖥️ EC2 Instances
Name Instance ID Type State Public IP Private IP VPC Security Groups AMI Key Pair IAM Profile EBS Volumes IMDSv2 Tags
cloudnomads-cdk-builder i-05ad6de2946ebcbf5 t3.medium stopped - 100.64.0.13 vpc-01e0e1fbc243eaa38 sg-0b4cb58ab738e9f0f ami-084e41b9e35a4ecfd - cloudnomads-cdk-builder-CdkBuilderInstanceProfile-7RqeaGL3iGmy 1 required aws:cloudformation:stack-id=arn:aws:cloudformation:eu-central-2:223882169413:stack/cloudnomads-cdk-builder/3d99d620-7d90-11f0-a28e-0eb1d98d6cddmap-migrated =migS0EK6JMBZCaws:cloudformation:logical-id=CdkBuilderEc2Instanceaws:cloudformation:stack-name=cloudnomads-cdk-builder
razed_dev_bastion_host i-0ce0460625d6d978b t3.medium running 51.34.3.48 172.20.2.96 vpc-00279654aabe28a96 sg-0e985c1978aba1d8f ami-08b0336c66e876ba6 razed_dev_Nov2023 SSMInstanceProfile 1 required Environment=devmap-migrated=migS0EK6JMBZCCustomer=razed
Temporary_for_migrations i-0827ba6365d92a717 c5.2xlarge stopped - 172.20.2.58 vpc-00279654aabe28a96 sg-0e985c1978aba1d8f ami-0a5237fe4793e04b1 razed_dev_Nov2023 SSMInstanceProfile 1 required -
temporary_runner_bitbucket i-088d80d5a210c5c23 t3.large running - 172.20.1.37 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-0a5237fe4793e04b1 razed_dev_Nov2023 SSMInstanceProfile 1 required -
razed_dev_sharky i-0b6c7f1ea87846585 t3.medium running - 172.20.1.81 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-08b0336c66e876ba6 razed_dev_Nov2023 SSMInstanceProfile 1 required map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
razed_dev_elk i-0222510e74e7983c8 t3.medium running 16.63.161.241 172.20.2.168 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-09d20090925c81355 razed_dev_Nov2023 SSMInstanceProfile 1 optional Customer=razedEnvironment=devmap-migrated=migS0EK6JMBZC
razed_dev_graylog i-0ad214e0bc199ca6a t3.large running 16.62.79.121 172.20.2.230 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-0ca7decf62bbeac0d razed_dev_Nov2023 SSMInstanceProfile 1 optional Customer=razedmap-migrated=migS0EK6JMBZCEnvironment=dev
razed_dev_integration_graylog i-0de3bc634807bab1b t3.medium running 16.62.169.150 172.20.2.56 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-0e1398c9a650ef830 razed_dev_Nov2023 SSMInstanceProfile 1 optional Environment=devCustomer=razedmap-migrated=migS0EK6JMBZC
dev-zurich-house-games i-01fab54aea2a26cec t4g.medium running 16.63.160.51 172.20.2.78 vpc-00279654aabe28a96 sg-0f4433903a93dd00a ami-01aa8dae9bd63f284 razed-dev-kp - 1 required location=eu-central-2map-migrated=migS0EK6JMBZCbrand=razedenvironment=devterraform=trueapp=house-games
razed-dev-migration-bastion i-053b61e0d5241607d t3.medium running 51.96.16.163 172.20.2.194 vpc-00279654aabe28a96 sg-06ea9f5bf834c4d97 ami-075d25849cf1d8171 - razed-dev-bastion-profile 1 optional map-migrated=migS0EK6JMBZCapp=razed-house-gamesenvironment=devbrand=razedlocation=eu-central-2
razed_dev_github i-07f3399d01e6d1e31 t3.medium stopped - 172.20.1.8 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-075ba1075ae54f0b1 razed_dev_Nov2023 SSMInstanceProfile 1 required -
razed_dev_github_runner_1_spotinstance i-06abdd13a24e60848 t3.large running - 172.20.3.39 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-09966ccf38afe499c razed_dev_Nov2023 SSMInstanceProfile 1 optional map-migrated=migS0EK6JMBZCaws:ec2spot:fleet-request-id=sfr-d14ae18c-a111-46f5-b2b5-8689fb72f55bCustomer=razedEnvironment=dev
ECS Instance - EC2ContainerService-razed-dev-ecs-cluster i-04573af54696724bf c5.2xlarge running - 172.20.3.128 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-02bc0fbabbf6f7602 razed_dev_Nov2023 SSM_EcsInstanceProfile 1 required aws:autoscaling:groupName=razed-dev-Asg-ecs-clusteraws:ec2launchtemplate:id=lt-0849b5b986253b042Customer=razedEnvironment=devmap-migrated=migS0EK6JMBZCAmazonECSManaged=ECS Cluster managed by Amazonaws:ec2launchtemplate:version=2
razed_dev_nats_1 i-0521f23d141bcc8d5 t3.small running - 172.20.1.120 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-02ff3c8d458668474 razed_dev_Nov2023 SSMInstanceProfile 1 required Customer=razedmap-migrated=migS0EK6JMBZCEnvironment=dev
razed_dev_nats_2 i-0d8b43e600838abd7 t3.small running - 172.20.1.141 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-02ff3c8d458668474 razed_dev_Nov2023 SSMInstanceProfile 1 required Customer=razedmap-migrated=migS0EK6JMBZCEnvironment=dev
razed_dev_nats_0 i-0c06d983ff29d2b4f t3.small running - 172.20.1.158 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-02ff3c8d458668474 razed_dev_Nov2023 SSMInstanceProfile 1 required map-migrated=migS0EK6JMBZCEnvironment=devCustomer=razed
dev-zurich-razed-frontend-instance i-05dcde951d0702f83 t4g.small running 51.96.43.208 172.20.2.195 vpc-00279654aabe28a96 sg-0bcef4c622149e027 ami-041eeee841fa64232 - dev-zurich-razed-frontend-profile-20250902015020130600000002 1 required managed-by=terraformmap-migrated=migS0EK6JMBZCenvironment=devaws:ec2spot:fleet-request-id=sfr-efac9730-ef0c-4668-8f39-639bf4f90b06component=frontendlocation=zurichaws:ec2launchtemplate:id=lt-0117a781054a545d6aws:ec2launchtemplate:version=1app=frontendbrand=razed
dev-zurich-razed-frontend i-0ed6b740d5ebc484e t4g.small running - 172.20.2.199 vpc-00279654aabe28a96 sg-090b1af472fa80ea3 ami-0854889a69c89eb9b - dev-zurich-razed-frontend-20250902115711960200000002 1 required map-migrated=migS0EK6JMBZCaws:ec2:fleet-id=fleet-6e4fbe92-0fa5-4f29-abc6-a18359f22202aws:ec2launchtemplate:version=1app=frontendlocation=zurichenvironment=devcomponent=frontendaws:ec2launchtemplate:id=lt-010d03ff3227d1ddfmanaged-by=terraformbrand=razed
ECS Instance - EC2ContainerService-razed-dev-ecs-cluster i-078129c27130c4696 c5.2xlarge running - 172.20.1.176 vpc-00279654aabe28a96 sg-0626ac5f331b8becc ami-02bc0fbabbf6f7602 razed_dev_Nov2023 SSM_EcsInstanceProfile 1 required aws:ec2launchtemplate:version=2AmazonECSManaged=ECS Cluster managed by AmazonEnvironment=devmap-migrated=migS0EK6JMBZCCustomer=razedaws:autoscaling:groupName=razed-dev-Asg-ecs-clusteraws:ec2launchtemplate:id=lt-0849b5b986253b042
💾 EBS Volumes
Name Volume ID Size (GiB) Type State Encrypted IOPS Attached Instance Device AZ Tags
- vol-02a74960707f9d83d 100 gp3 in-use No 3000 i-078129c27130c4696 /dev/xvda eu-central-2a -
- vol-0e5a5de45527bc7d6 120 gp3 in-use No 3000 i-06abdd13a24e60848 /dev/sda1 eu-central-2b -
- vol-09c4f930acab8fc70 100 gp3 in-use No 3000 i-04573af54696724bf /dev/xvda eu-central-2b -
razed_dev_graylog_volume vol-0e26c8c2d8d5c9470 80 gp3 in-use No 3000 i-0ad214e0bc199ca6a /dev/sda1 eu-central-2a Customer=razedEnvironment=devmap-migrated=migS0EK6JMBZC
dev-zurich-house-games-root vol-0d86b259eb2f13d2c 100 gp3 in-use Yes 3000 i-01fab54aea2a26cec /dev/sda1 eu-central-2a map-migrated=migS0EK6JMBZCbrand=razedlocation=eu-central-2environment=devterraform=trueapp=house-games
razed_dev_integration_graylog_volume vol-08f530ad5400a316c 50 gp3 in-use No 3000 i-0de3bc634807bab1b /dev/sda1 eu-central-2a map-migrated=migS0EK6JMBZCEnvironment=devCustomer=razed
- vol-0dd1a17e9002260fe 50 gp3 in-use No 3000 i-05ad6de2946ebcbf5 /dev/sda1 eu-central-2c -
razed_dev_nats_1_volume vol-09d82d4c44e0051d8 50 gp3 in-use No 3000 i-0521f23d141bcc8d5 /dev/sda1 eu-central-2a Environment=devmap-migrated=migS0EK6JMBZCCustomer=razed
- vol-0844d4f01a742676d 200 gp3 in-use No 3000 i-0827ba6365d92a717 /dev/sda1 eu-central-2a -
razed_dev_sharky_volume vol-0ec767b98534b769b 15 gp3 in-use No 3000 i-0b6c7f1ea87846585 /dev/sda1 eu-central-2a map-migrated=migS0EK6JMBZCEnvironment=devCustomer=razed
razed_dev_nats_0_volume vol-0e47574eaa5ba9d1d 50 gp3 in-use No 3000 i-0c06d983ff29d2b4f /dev/sda1 eu-central-2a Customer=razedmap-migrated=migS0EK6JMBZCEnvironment=dev
razed_dev_elk_volume vol-0b7342a8e67804b63 30 gp3 in-use No 3000 i-0222510e74e7983c8 /dev/sda1 eu-central-2a map-migrated=migS0EK6JMBZCEnvironment=devCustomer=razed
- vol-0099807545fdc5fa3 30 gp3 in-use Yes 3000 i-0ed6b740d5ebc484e /dev/sda1 eu-central-2a -
- vol-02a22062b97f548ab 50 gp3 in-use No 3000 i-088d80d5a210c5c23 /dev/sda1 eu-central-2a -
razed_dev_bastion_host_volume vol-0375f282707bd4c35 50 gp3 in-use No 3000 i-0ce0460625d6d978b /dev/sda1 eu-central-2a Environment=devmap-migrated=migS0EK6JMBZCCustomer=razed
razed_dev_nats_2_volume vol-016afeec85b980200 50 gp3 in-use No 3000 i-0d8b43e600838abd7 /dev/sda1 eu-central-2a Environment=devCustomer=razedmap-migrated=migS0EK6JMBZC
- vol-0c9ab406ba8252542 8 standard in-use No - i-053b61e0d5241607d /dev/xvda eu-central-2a -
dev-zurich-razed-frontend-volume vol-0b8c4cfd3989fe174 30 gp3 in-use Yes 3000 i-05dcde951d0702f83 /dev/sda1 eu-central-2a app=frontendenvironment=devmap-migrated=migS0EK6JMBZClocation=zurichmanaged-by=terraformcomponent=frontendbrand=razed
- vol-08a6ac4f351cc4300 30 gp3 in-use No 3000 i-07f3399d01e6d1e31 /dev/sda1 eu-central-2a -
🐳 ECS Clusters
Cluster Name Status Running Tasks Pending Tasks Active Services Container Instances
razed-hg-dev-cluster ACTIVE 5 0 5 0
razed-dev-ecs-cluster ACTIVE 12 0 12 2
razed-house-games-dev-cluster ACTIVE 9 0 10 0
⚙️ ECS Services
Service Name Status Desired Running Launch Type Task Definition Load Balancers Security Groups
razed-hg-dev-common-service ACTIVE 1 1 FARGATE razed-hg-dev-common:2 1 target groups sg-09611ff36bbc22f4d
razed-hg-dev-blackjack-service ACTIVE 1 1 FARGATE razed-hg-dev-blackjack:2 1 target groups sg-09611ff36bbc22f4d
razed-hg-dev-redis-service ACTIVE 1 1 FARGATE razed-hg-dev-redis:3 0 target groups sg-09611ff36bbc22f4d
razed-hg-dev-plinko-service ACTIVE 1 1 FARGATE razed-hg-dev-plinko:2 1 target groups sg-09611ff36bbc22f4d
razed-hg-dev-service ACTIVE 1 1 FARGATE razed-hg-dev-main:2 1 target groups sg-09611ff36bbc22f4d
razed-house-games-dev-mines-svc ACTIVE 1 1 FARGATE razed-house-games-dev-mines:3 1 target groups sg-0e95725257c561b59
razed-house-games-dev-common-svc ACTIVE 1 1 FARGATE razed-house-games-dev-common:3 1 target groups sg-0e95725257c561b59
razed-house-games-dev-plinko-svc ACTIVE 1 0 FARGATE razed-house-games-dev-plinko:4 1 target groups sg-0e95725257c561b59
razed-house-games-dev-redis-svc ACTIVE 1 1 FARGATE razed-house-games-dev-redis:1 0 target groups sg-0e95725257c561b59
razed-house-games-dev-boxes-svc ACTIVE 1 1 FARGATE razed-house-games-dev-boxes:2 1 target groups sg-0e95725257c561b59
razed-house-games-dev-prod-svc ACTIVE 1 1 FARGATE razed-house-games-dev-prod:2 0 target groups sg-0e95725257c561b59
razed-house-games-dev-dices-svc ACTIVE 1 1 FARGATE razed-house-games-dev-dices:2 1 target groups sg-0e95725257c561b59
razed-house-games-dev-keno-svc ACTIVE 1 1 FARGATE razed-house-games-dev-keno:3 1 target groups sg-0e95725257c561b59
razed-house-games-dev-blackjack-svc ACTIVE 1 1 FARGATE razed-house-games-dev-blackjack:2 1 target groups sg-0e95725257c561b59
razed-house-games-dev-limbo-svc ACTIVE 1 1 FARGATE razed-house-games-dev-limbo:3 1 target groups sg-0e95725257c561b59
📋 ECS Task Definitions (Active)
Family Rev CPU Memory Containers Task Role Privileged Env Vars Secrets Log Config
razed-hg-dev-blackjack 2 2048 4096 3 Yes No 19 17 awslogs:/ecs/razed-hg-dev
razed-hg-dev-common 2 2048 4096 2 Yes No 0 10 awslogs:/ecs/razed-hg-dev
razed-hg-dev-main 2 1024 3072 1 Yes No 0 19 awslogs:/ecs/razed-hg-dev
razed-hg-dev-plinko 2 2048 4096 2 Yes No 4 16 awslogs:/ecs/razed-hg-dev
razed-hg-dev-redis 3 256 512 1 Yes No 0 0 awslogs:/ecs/razed-hg-dev
razed-house-games-dev-blackjack 2 512 1024 2 Yes No 4 10 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-boxes 2 512 1024 2 Yes No 4 10 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-common 3 2048 4096 2 Yes No 2 15 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-dices 2 1024 2048 2 Yes No 4 10 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-keno 3 1024 2048 2 Yes No 4 10 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-limbo 3 1024 2048 2 Yes No 4 10 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-mines 3 1024 2048 2 Yes No 4 10 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-plinko 4 1024 2048 2 Yes No 4 10 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-prod 2 2048 4096 1 Yes No 2 8 awslogs:/ecs/razed-house-games-dev
razed-house-games-dev-redis 1 512 1024 1 Yes No 0 0 awslogs:/ecs/razed-house-games-dev
Container Configuration Detail

⚠️ Plaintext environment variables should be avoided for sensitive data. Use Secrets Manager or SSM Parameter Store. log_router containers are excluded.

Task Definition Container Image Log Config Plaintext Env Vars Secrets (SSM/SM)
razed-hg-dev-blackjack:2 datadog-agent public.ecr.aws/datadog/agent:latest awslogs:/ecs/razed-hg-dev DD_APM_NON_LOCAL_TRAFFICDD_SITEECS_FARGATEDD_APM_ENABLEDDD_LOGS_ENABLEDDD_LOGS_CONFIG_CONTAINER_COLLECT_ALLDD_DOGSTATSD_NON_LOCAL_TRAFFIC DD_API_KEY
razed-hg-dev-blackjack:2 razed-hg-dev-blackjack 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-blackjack:staging awslogs:/ecs/razed-hg-dev REDIS_HOSTDD_TRACE_SAMPLE_RATEREDIS_PORTDD_AGENT_HOSTDD_VERSIONDD_RUNTIME_METRICS_ENABLEDCOMMON_MS_HOSTDD_TRACE_ENABLEDDD_SERVICEDD_LOGS_INJECTIONDD_ENVCOMMON_MS_PORT POSTGRES_USERPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_DBPOSTGRES_HOSTTERRAGON_URLTERRAGON_API_KEYPRIVATE_JWT_SECRETKENO_GAME_IDMINES_GAME_IDDICES_GAME_IDPLINKO_GAME_IDWHEEL_GAME_IDLIMBO_GAME_IDBLACKJACK_GAME_IDNODE_EXTRA_CA_CERTS
razed-hg-dev-blackjack:2 razed-hg-dev-blackjack-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-blackjack-nginx:staging awslogs:/ecs/razed-hg-dev None -
razed-hg-dev-common:2 razed-hg-dev-common 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-common:staging awslogs:/ecs/razed-hg-dev None POSTGRES_USERPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_DBPOSTGRES_PORTREDIS_HOSTREDIS_PORTTERRAGON_API_KEYTERRAGON_URLPRIVATE_JWT_SECRET
razed-hg-dev-common:2 razed-hg-dev-common-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-common-nginx:staging awslogs:/ecs/razed-hg-dev None -
razed-hg-dev-main:2 razed-hg-dev-main 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-main:staging awslogs:/ecs/razed-hg-dev None POSTGRES_USERPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_DBPOSTGRES_PORTREDIS_HOSTREDIS_PORTKENO_GAME_IDBLACKJACK_GAME_IDBOXES_GAME_IDMINES_GAME_IDDICES_GAME_IDPLINKO_GAME_IDWHEEL_GAME_IDLIMBO_GAME_IDNODE_EXTRA_CA_CERTSTERRAGON_API_KEYTERRAGON_URLPRIVATE_JWT_SECRET
razed-hg-dev-plinko:2 razed-hg-dev-plinko 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-plinko:staging awslogs:/ecs/razed-hg-dev COMMON_MS_HOSTREDIS_HOSTREDIS_PORTCOMMON_MS_PORT POSTGRES_USERPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_DBPOSTGRES_HOSTTERRAGON_URLTERRAGON_API_KEYPRIVATE_JWT_SECRETKENO_GAME_IDMINES_GAME_IDDICES_GAME_IDPLINKO_GAME_IDWHEEL_GAME_IDLIMBO_GAME_IDBOXES_GAME_IDNODE_EXTRA_CA_CERTS
razed-hg-dev-plinko:2 razed-hg-dev-plinko-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-plinko-nginx:staging awslogs:/ecs/razed-hg-dev None -
razed-hg-dev-redis:3 redis redis:latest awslogs:/ecs/razed-hg-dev None -
razed-house-games-dev-blackjack:2 razed-house-games-dev-blackjack 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-blackjack:16febeb507a26477c58c59224cbb09716d91636f awslogs:/ecs/razed-house-games-dev COMMON_MS_HOSTREDIS_HOSTREDIS_PORTCOMMON_MS_PORT POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URLBLACKJACK_GAME_IDBLACKJACK_GAME_API_BASE_URL
razed-house-games-dev-blackjack:2 razed-house-games-dev-blackjack-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-blackjack-nginx:latest awslogs:/ecs/razed-house-games-dev None -
razed-house-games-dev-boxes:2 razed-house-games-dev-boxes 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-boxes:5c3ad05d69377f9c9b52de8c35e98ab0e281a3cd awslogs:/ecs/razed-house-games-dev COMMON_MS_HOSTREDIS_HOSTREDIS_PORTCOMMON_MS_PORT POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URLBOXES_GAME_IDBOXES_GAME_API_BASE_URL
razed-house-games-dev-boxes:2 razed-house-games-dev-boxes-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-boxes-nginx:latest awslogs:/ecs/razed-house-games-dev None -
razed-house-games-dev-common:3 razed-house-games-dev-common 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-common:5702eba0ef4c0e8bc065f21a2d36912708376e54 awslogs:/ecs/razed-house-games-dev REDIS_PORTREDIS_HOST POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URLDICES_GAME_API_BASE_URLLIMBO_GAME_API_BASE_URLPLINKO_GAME_API_BASE_URLKENO_GAME_API_BASE_URLMINES_GAME_API_BASE_URLBLACKJACK_GAME_API_BASE_URLWHEEL_GAME_API_BASE_URL
razed-house-games-dev-common:3 razed-house-games-dev-common-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-common-nginx:latest awslogs:/ecs/razed-house-games-dev None -
razed-house-games-dev-dices:2 razed-house-games-dev-dices 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-dices:6bb347bc9f1aad562056f8129582eba34a98a386 awslogs:/ecs/razed-house-games-dev COMMON_MS_HOSTREDIS_HOSTREDIS_PORTCOMMON_MS_PORT POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URLDICES_GAME_IDDICES_GAME_API_BASE_URL
razed-house-games-dev-dices:2 razed-house-games-dev-dices-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-dices-nginx:latest awslogs:/ecs/razed-house-games-dev None -
razed-house-games-dev-keno:3 razed-house-games-dev-keno 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-keno:5c3ad05d69377f9c9b52de8c35e98ab0e281a3cd awslogs:/ecs/razed-house-games-dev COMMON_MS_HOSTREDIS_HOSTREDIS_PORTCOMMON_MS_PORT POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URLKENO_GAME_IDKENO_GAME_API_BASE_URL
razed-house-games-dev-keno:3 razed-house-games-dev-keno-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-keno-nginx:latest awslogs:/ecs/razed-house-games-dev None -
razed-house-games-dev-limbo:3 razed-house-games-dev-limbo 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-limbo:5c3ad05d69377f9c9b52de8c35e98ab0e281a3cd awslogs:/ecs/razed-house-games-dev COMMON_MS_HOSTREDIS_HOSTREDIS_PORTCOMMON_MS_PORT POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URLLIMBO_GAME_IDLIMBO_GAME_API_BASE_URL
razed-house-games-dev-limbo:3 razed-house-games-dev-limbo-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-limbo-nginx:latest awslogs:/ecs/razed-house-games-dev None -
razed-house-games-dev-mines:3 razed-house-games-dev-mines 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-mines:5c3ad05d69377f9c9b52de8c35e98ab0e281a3cd awslogs:/ecs/razed-house-games-dev COMMON_MS_HOSTREDIS_HOSTREDIS_PORTCOMMON_MS_PORT POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URLMINES_GAME_IDMINES_GAME_API_BASE_URL
razed-house-games-dev-mines:3 razed-house-games-dev-mines-nginx 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-mines-nginx:latest awslogs:/ecs/razed-house-games-dev None -
razed-house-games-dev-plinko:4 razed-house-games-dev-plinko 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-plinko:5c3ad05d69377f9c9b52de8c35e98ab0e281a3cd awslogs:/ecs/razed-house-games-dev COMMON_MS_HOSTREDIS_HOSTREDIS_PORTCOMMON_MS_PORT POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URLPLINKO_GAME_IDPLINKO_GAME_API_BASE_URL
razed-house-games-dev-plinko:4 razed-house-games-dev-plinko-nginx 901472986157.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-plinko-nginx:latest awslogs:/ecs/razed-house-games-dev None -
razed-house-games-dev-prod:2 razed-house-games-dev-prod 223882169413.dkr.ecr.eu-central-2.amazonaws.com/razed-house-games-monolith:0c6d35716b99bf3afd69af0d97500f4a8ee30ea2 awslogs:/ecs/razed-house-games-dev REDIS_PORTREDIS_HOST POSTGRES_DBPOSTGRES_HOSTPOSTGRES_PASSWORDPOSTGRES_PORTPOSTGRES_USERPRIVATE_JWT_SECRETTERRAGON_API_KEYTERRAGON_URL
razed-house-games-dev-redis:1 razed-house-games-dev-redis redis:latest awslogs:/ecs/razed-house-games-dev None -
🗄️ RDS Instances
DB Identifier Engine Class Status Storage Encrypted Multi-AZ Public Backup Delete Prot. Tags
dev-zurich-house-games-db postgres 17.5 db.t4g.micro available 20 GiB Yes No Yes 7d Yes app=house-gamesmap-migrated=migS0EK6JMBZCenvironment=devlocation=eu-central-2terraform=truebrand=razedName=dev-zurich-house-games-db
razed-dev-aurora-primary-cluster-instance-0 aurora-mysql 8.0.mysql_aurora.3.10.0 db.t4g.large available 1 GiB Yes No No 7d No map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
📨 SQS Queues
Total Queues: 62
Without Encryption: 62
Without DLQ: 62
Queue Name Type Encrypted DLQ Configured Visibility Timeout Messages Tags
accumulate_bonus_programs Standard No No 300s 10 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
accumulate_bonus_programs.fifo FIFO No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
accumulate_bonus_programs_ref Standard No No 300s 3998 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
accumulate_bonus_programs_referral Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
accumulate_bonus_programs_settle Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
accumulate_bonus_programs_summary Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
ad_checks Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
assign_new_game_to_bonus Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
assign_new_game_to_game_segment Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
assign_new_game_to_game_tag Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
audit_logs Standard No No 300s 1 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
automatic_withdrawal Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
betting_limit Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
bonuses Standard No No 300s 1 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
broadcast Standard No No 300s 2327 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
broadcast_balance Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
campaign_message Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
cash_drops Standard No No 300s 1 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
casino_bet_detail Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
challenges Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
compliance_actions Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
compliances.fifo FIFO No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
crm Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
crm_high Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
default Standard No No 300s 129070 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
emails Standard No No 300s 35 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
export Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
forward_game_log_processed Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
forward_player_wr_processed Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
game_log_locks Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
game_logs Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
game_logs.fifo FIFO No No 300s 68 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
import_batches Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
loyalty_programs Standard No No 300s 550 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
notifications Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
payment_integration_logs Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
player_activities Standard No No 300s 50 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
player_flagged_computing Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
player_tips Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
player_transactional_summary Standard No No 300s 4000 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
player_vip Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
post_wagered_bonus_programs Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
prune_open_bets Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
quests Standard No No 300s 4000 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
raffles Standard No No 300s 3998 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
rebate_programs Standard No No 300s 2 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
recent_games Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
referral_plans Standard No No 300s 2 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
risk_fraud Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
segments Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
segments.fifo FIFO No No 300s 2340 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
segments_computing.fifo FIFO No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
sms Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
sportbook_bet_detail Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
spotlight-search Standard No No 300s 1232 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
sync_game_to_ec Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
telescope Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
tournaments Standard No No 300s 1399 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
tournaments.fifo FIFO No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
trigger_scheduled_programs Standard No No 3000s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
wagering_requirements Standard No No 300s 4000 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
webhook_call Standard No No 300s 0 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
🔑 Secrets Manager
Total Secrets: 2
Without Rotation: 2
Secret Name Description KMS Key Rotation Last Rotated Last Accessed Tags
razed-dev-rds-admin-password - secretsmanager Disabled - 2026-01-14 map-migrated=migS0EK6JMBZC
razed-dev-redshift-admin-password - secretsmanager Disabled - 2026-01-14 map-migrated=migS0EK6JMBZC
📋 CloudWatch Log Groups
Total Log Groups: 6
Without Retention Policy: 5
Log Group Name Retention (Days) Stored Size
/aws/rds/cluster/razed-dev-primary-cluster/error Never Expire 0 B
/aws/rds/instance/razed-dev-db-master/error Never Expire 0 B
/ecs/razed-hg-dev Never Expire 0 B
/ecs/razed-house-games-dev Never Expire 0 B
RDSOSMetrics 30 0 B
firelens-container Never Expire 0 B
⚖️ Application & Network Load Balancers
Name Type Scheme State DNS Name VPC AZs Listeners Target Groups Tags
razed-dev-ecs-alb APPLICATION internet-facing active razed-dev-ecs-alb-1225085804.eu-central-2.elb.amazonaws.com vpc-00279654aabe28a96 2 HTTP:80, HTTPS:443 12 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
razed-dev-ecs-internal-alb APPLICATION internal active internal-razed-dev-ecs-internal-alb-1926619989.eu-central-2.elb.amazonaws.com vpc-00279654aabe28a96 2 HTTP:80, HTTPS:443 4 map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
dev-central-2-house-games-alb APPLICATION internet-facing active dev-central-2-house-games-alb-1159892231.eu-central-2.elb.amazonaws.com vpc-00279654aabe28a96 2 0 app=house-gamesmap-migrated=migS0EK6JMBZCenvironment=devlocation=eu-central-2terraform=truebrand=razed
razed-house-games-dev-alb APPLICATION internet-facing active razed-house-games-dev-alb-1407691372.eu-central-2.elb.amazonaws.com vpc-00279654aabe28a96 2 HTTP:80 8 app=razed-house-gamesmap-migrated=migS0EK6JMBZCenvironment=devlocation=eu-central-2brand=razed
razed-hg-dev-alb APPLICATION internet-facing active razed-hg-dev-alb-1818652889.eu-central-2.elb.amazonaws.com vpc-00279654aabe28a96 2 HTTP:80, HTTPS:443 4 -
Target Groups
Load Balancer Target Group Name Protocol Port Target Type Health Check
razed-dev-ecs-alb razed-dev-api-tg-441 HTTPS 441 instance HTTPS:/robots.txt
razed-dev-ecs-alb razed-dev-bo-tg-440 HTTPS 440 instance HTTPS:/robots.txt
razed-dev-ecs-alb razed-dev-callbk-tg-442 HTTPS 442 instance HTTPS:/robots.txt
razed-dev-ecs-alb razed-dev-cdncms-tg-449 HTTPS 449 instance HTTPS:/health
razed-dev-ecs-alb razed-dev-cms-tg-444 HTTPS 444 instance HTTPS:/
razed-dev-ecs-alb razed-dev-elk-tg-443 HTTPS 443 instance HTTPS:/
razed-dev-ecs-alb razed-dev-fe-tg-443 HTTPS 443 instance HTTPS:/robots.txt
razed-dev-ecs-alb razed-dev-golcalbk-9442 HTTP 9442 instance HTTP:/api/v2/callback/game-service/ping
razed-dev-ecs-alb razed-dev-graylg-tg-443 HTTPS 443 instance HTTPS:/
razed-dev-ecs-alb razed-dev-intgrlg-tg443 HTTPS 443 instance HTTPS:/
razed-dev-ecs-alb razed-dev-shadcn-tg-443 HTTPS 443 instance HTTPS:/
razed-dev-ecs-alb razed-dev-wbsket-tg6002 HTTPS 6002 instance HTTPS:/
razed-dev-ecs-internal-alb razed-dev-callbck-int-442 HTTPS 442 instance HTTPS:/player/api/v1/ping
razed-dev-ecs-internal-alb razed-dev-cms-internal-444 HTTPS 444 instance HTTPS:/
razed-dev-ecs-internal-alb razed-dev-golcalbk-int-9442 HTTP 9442 instance HTTP:/api/v2/callback/game-service/ping
razed-dev-ecs-internal-alb razed-dev-ws-int-tg6002 HTTPS 6002 instance HTTPS:/
razed-house-games-dev-alb razed-hg-dev-blackjack-tg HTTP 80 ip HTTP:/health
razed-house-games-dev-alb razed-hg-dev-boxes-tg HTTP 80 ip HTTP:/health
razed-house-games-dev-alb razed-hg-dev-common-tg HTTP 80 ip HTTP:/api/common/health
razed-house-games-dev-alb razed-hg-dev-dices-tg HTTP 80 ip HTTP:/health
razed-house-games-dev-alb razed-hg-dev-keno-tg HTTP 80 ip HTTP:/health
razed-house-games-dev-alb razed-hg-dev-limbo-tg HTTP 80 ip HTTP:/health
razed-house-games-dev-alb razed-hg-dev-mines-tg HTTP 80 ip HTTP:/health
razed-house-games-dev-alb razed-hg-dev-plinko-tg HTTP 80 ip HTTP:/health
razed-hg-dev-alb razed-hg-dev-blackjack-tg-2 HTTP 80 ip HTTP:/api/blackjack/health
razed-hg-dev-alb razed-hg-dev-common-tg-2 HTTP 80 ip HTTP:/health
razed-hg-dev-alb razed-hg-dev-plinko-tg-2 HTTP 80 ip HTTP:/api/plinko/health
razed-hg-dev-alb razed-hg-dev-tg HTTP 80 ip HTTP:/health
🔐 Security Groups (In Use)
Name Group ID VPC Used By Inbound Ports Outbound Ports Open to Internet Tags
dev-central-2-house-games-ecs-sg sg-0e95725257c561b59 vpc-00279654aabe28a96 ECS(10) tcp:0-65535 All No environment=devmap-migrated=migS0EK6JMBZCapp=house-gameslocation=eu-central-2brand=razedterraform=true
cloudnomads-cdk-builder sg-0b4cb58ab738e9f0f vpc-01e0e1fbc243eaa38 EC2(1) tcp:3389 All No aws:cloudformation:stack-name=cloudnomads-cdk-builderaws:cloudformation:logical-id=CdkBuilderSgaws:cloudformation:stack-id=arn:aws:cloudformation:eu-central-2:223882169413:stack/cloudnomads-cdk-builder/3d99d620-7d90-11f0-a28e-0eb1d98d6cdd
razed-hg-dev-alb-sg sg-019b84b5f04ec1a58 vpc-00279654aabe28a96 APPLICATION(1) tcp:443, tcp:80 All Yes -
razed-dev-allow-ssh sg-0e985c1978aba1d8f vpc-00279654aabe28a96 EC2(2) tcp:22 All No Customer=razedmap-migrated=migS0EK6JMBZCEnvironment=dev
dev-zurich-house-games-sg sg-0f4433903a93dd00a vpc-00279654aabe28a96 EC2(1) All, tcp:22, tcp:443, tcp:80 All Yes app=house-gamesbrand=razedterraform=trueenvironment=devlocation=eu-central-2map-migrated=migS0EK6JMBZC
dev-zurich-razed-frontend-20250902045525816200000002 sg-090b1af472fa80ea3 vpc-00279654aabe28a96 EC2(1) tcp:22, tcp:443, tcp:80 All Yes managed-by=terraformapp=frontendenvironment=devcomponent=frontendbrand=razedProject=frontend-amiManagedBy=Terraformlocation=zurichmap-migrated=migS0EK6JMBZC
razed-hg-dev-ecs-tasks sg-09611ff36bbc22f4d vpc-00279654aabe28a96 ECS(5) tcp:3000-3010, tcp:4000, tcp:6379, tcp:80 All No -
razed-dev-allow-local sg-0626ac5f331b8becc vpc-00279654aabe28a96 APPLICATION(1), EC2(12) All All No map-migrated=migS0EK6JMBZCEnvironment=devCustomer=razed
razed-dev-allow-http-https sg-0db350803a55c0512 vpc-00279654aabe28a96 APPLICATION(1) tcp:443, tcp:80 All Yes map-migrated=migS0EK6JMBZCCustomer=razedEnvironment=dev
razed-dev-temporary-allow-all sg-06ea9f5bf834c4d97 vpc-00279654aabe28a96 EC2(1) All All Yes -
dev-central-2-house-games-alb-sg sg-0b7178b98bdfb020c vpc-00279654aabe28a96 APPLICATION(2) tcp:443, tcp:80 All Yes app=house-gamesbrand=razedlocation=eu-central-2terraform=trueenvironment=devmap-migrated=migS0EK6JMBZC
dev-zurich-razed-frontend-sg-20250902013034739100000002 sg-0bcef4c622149e027 vpc-00279654aabe28a96 EC2(1) tcp:22, tcp:443, tcp:80 All Yes map-migrated=migS0EK6JMBZCenvironment=devbrand=razedcomponent=frontendmanaged-by=terraformapp=frontendlocation=zurich
razed-dev-allow-local-port-3306 sg-067496eb87877ec0f vpc-00279654aabe28a96 RDS(1) tcp:3306 All No map-migrated=migS0EK6JMBZCEnvironment=devCustomer=razed
dev-zurich-house-games-db-sg sg-0a9d25d5dd9f30fb6 vpc-00279654aabe28a96 RDS(1) tcp:5432 All No environment=devbrand=razedterraform=truelocation=eu-central-2app=house-gamesmap-migrated=migS0EK6JMBZC
Security Group Rules Detail
Security Group Direction Protocol Port Range Source/Destination
dev-central-2-house-games-ecs-sg sg-0e95725257c561b59 Inbound tcp 0-65535 sg: sg-0b7178b98bdfb020c, sg: sg-0e95725257c561b59
cloudnomads-cdk-builder sg-0b4cb58ab738e9f0f Inbound tcp 3389 84.254.23.220/32
razed-hg-dev-alb-sg sg-019b84b5f04ec1a58 Inbound tcp 80 0.0.0.0/0
razed-hg-dev-alb-sg sg-019b84b5f04ec1a58 Inbound tcp 443 0.0.0.0/0
razed-dev-allow-ssh sg-0e985c1978aba1d8f Inbound tcp 22 152.32.100.39/32, 18.134.162.129/32, 84.252.112.3/32, 119.93.179.143/32, 18.132.4.226/32, 14.161.16.211/32, 35.176.218.252/32, 118.69.133.85/32
dev-zurich-house-games-sg sg-0f4433903a93dd00a Inbound tcp 80 0.0.0.0/0
dev-zurich-house-games-sg sg-0f4433903a93dd00a Inbound All All 0.0.0.0/0
dev-zurich-house-games-sg sg-0f4433903a93dd00a Inbound tcp 22 0.0.0.0/0
dev-zurich-house-games-sg sg-0f4433903a93dd00a Inbound tcp 443 0.0.0.0/0
dev-zurich-razed-frontend-20250902045525816200000002 sg-090b1af472fa80ea3 Inbound tcp 80 0.0.0.0/0
dev-zurich-razed-frontend-20250902045525816200000002 sg-090b1af472fa80ea3 Inbound tcp 22 0.0.0.0/0
dev-zurich-razed-frontend-20250902045525816200000002 sg-090b1af472fa80ea3 Inbound tcp 443 0.0.0.0/0
razed-hg-dev-ecs-tasks sg-09611ff36bbc22f4d Inbound tcp 80 172.20.0.0/16
razed-hg-dev-ecs-tasks sg-09611ff36bbc22f4d Inbound tcp 6379 172.20.0.0/16
razed-hg-dev-ecs-tasks sg-09611ff36bbc22f4d Inbound tcp 4000 172.20.0.0/16
razed-hg-dev-ecs-tasks sg-09611ff36bbc22f4d Inbound tcp 3000-3010 172.20.0.0/16
razed-dev-allow-local sg-0626ac5f331b8becc Inbound All All 172.20.3.0/24, 172.20.4.0/24, 172.20.1.0/24, 172.20.2.0/24
razed-dev-allow-http-https sg-0db350803a55c0512 Inbound tcp 80 0.0.0.0/0
razed-dev-allow-http-https sg-0db350803a55c0512 Inbound tcp 443 0.0.0.0/0
razed-dev-temporary-allow-all sg-06ea9f5bf834c4d97 Inbound All All 0.0.0.0/0
dev-central-2-house-games-alb-sg sg-0b7178b98bdfb020c Inbound tcp 80 0.0.0.0/0
dev-central-2-house-games-alb-sg sg-0b7178b98bdfb020c Inbound tcp 443 0.0.0.0/0
dev-zurich-razed-frontend-sg-20250902013034739100000002 sg-0bcef4c622149e027 Inbound tcp 80 0.0.0.0/0
dev-zurich-razed-frontend-sg-20250902013034739100000002 sg-0bcef4c622149e027 Inbound tcp 22 0.0.0.0/0
dev-zurich-razed-frontend-sg-20250902013034739100000002 sg-0bcef4c622149e027 Inbound tcp 443 0.0.0.0/0
razed-dev-allow-local-port-3306 sg-067496eb87877ec0f Inbound tcp 3306 172.20.1.0/24, 172.20.3.0/24, 172.20.2.96/32, 172.20.2.58/32
dev-zurich-house-games-db-sg sg-0a9d25d5dd9f30fb6 Inbound tcp 5432 172.20.0.0/16, sg: sg-06ea9f5bf834c4d97
dev-central-2-house-games-ecs-sg sg-0e95725257c561b59 Outbound All All 0.0.0.0/0
cloudnomads-cdk-builder sg-0b4cb58ab738e9f0f Outbound All All 0.0.0.0/0
razed-hg-dev-alb-sg sg-019b84b5f04ec1a58 Outbound All All 0.0.0.0/0
razed-dev-allow-ssh sg-0e985c1978aba1d8f Outbound All All 0.0.0.0/0
dev-zurich-house-games-sg sg-0f4433903a93dd00a Outbound All All 0.0.0.0/0
dev-zurich-razed-frontend-20250902045525816200000002 sg-090b1af472fa80ea3 Outbound All All 0.0.0.0/0
razed-hg-dev-ecs-tasks sg-09611ff36bbc22f4d Outbound All All 0.0.0.0/0
razed-dev-allow-local sg-0626ac5f331b8becc Outbound All All 0.0.0.0/0
razed-dev-allow-http-https sg-0db350803a55c0512 Outbound All All 0.0.0.0/0
razed-dev-temporary-allow-all sg-06ea9f5bf834c4d97 Outbound All All 0.0.0.0/0
dev-central-2-house-games-alb-sg sg-0b7178b98bdfb020c Outbound All All 0.0.0.0/0
dev-zurich-razed-frontend-sg-20250902013034739100000002 sg-0bcef4c622149e027 Outbound All All 0.0.0.0/0
razed-dev-allow-local-port-3306 sg-067496eb87877ec0f Outbound All All 0.0.0.0/0
dev-zurich-house-games-db-sg sg-0a9d25d5dd9f30fb6 Outbound All All 0.0.0.0/0
🛡️ Compliance Findings
Network & Security (Section 5.2)

8

Open Security Groups (0.0.0.0/0)

5

EC2 Without IMDSv2

Yes

CloudTrail Enabled

Data Protection (Section 5.4)

16

Unencrypted EBS Volumes

0

Unencrypted RDS

62

SQS Without Encryption

Logging & Monitoring (Section 5.3)

5

Log Groups (No Retention)

RDS Standards (Section 7)

1

Public RDS Instances

2

RDS Without Multi-AZ

0

RDS Without Backups

Lambda Standards (Section 7)

0

Lambda Default Timeout (3s)

0

Lambda Without DLQ

SQS Standards (Section 7)

62

SQS Without DLQ

ECS Standards (Section 7)

55

Plaintext Env Vars

0

Privileged Containers