Get Involved
Query: S3 bucket policy should prohibit public access
Description
This control checks that the access granted by the S3 bucket is restricted by any of the principals, federated users, service principals, IP addresses, or VPCs that you provide. The rule is compliant if a bucket policy is not present.
Query
Tables used in this query:
Controls using this query: