not a customer record
-
2026-07-28
09:14:03Z01Observed Live todaykloudle-aws-s3 reports public-access-block disabled. One line among hundreds returned by the scan — not yet a security issue.
-
2026-07-28
09:14:41Z02Proven Live todayevidence: bucket-policy.json acl.json public-access-block.json (snapshot at scan time)
-
2026-07-28
09:31:19Z03Promoted Near-termseverity: High · why: bucket reachable via public CloudFront distribution; objects written by a deploy role an agent uses
-
2026-07-28
09:31:20Z04Recorded Near-termlinked: KSP10179 (CloudFront origin → public-readable S3), deploy-role identity node · written to ledger
-
2026-07-29
15:02:56Z05Human decision Near-termgate: allow-scoped-fix · agent scope: S3.PublicAccessBlock on this resource only · waiver alternative: 30d with reason
-
2026-07-29
15:04:11Z06Acted from ledger Destinationremediation: enable public-access-block · scope: this resource only · change-proof returned to ledger
-
2026-07-30
03:00:37Z07Verified Near-termre-scan: S3.PublicAccessBlock → pass · status: resolved, verified