2

    aws-architect

    by Roy Yuen

    Expert AWS architecture guidance for building secure, scalable, and cost-optimized production environments.

    Updated Apr 2026
    Security scanned
    One-time purchase

    $5

    One-time purchase · Own forever

    ⚡ Also available via Agensi MCP — your AI agent can load this skill on demand via MCP. Learn more →

    Included in download

    • Design least-privilege IAM strategies and cross-account access patterns.
    • Review serverless architectures for scalability, retries, and idempotency.
    • Includes example output and usage patterns
    • Instant install
    • One-time purchase

    See it in action

    Recommendation: Use S3 with Object Lock for compliance data.
    Key Service: AWS Lambda with SQS DLQ for decoupling.
    Security: Implement Permission Boundaries for the 'Dev' role to prevent privilege escalation.
    Risk: Blast radius is high on the shared NAT Gateway; recommend VPC Endpoints.

    About This Skill

    What it does

    This skill transforms your AI agent into a production-grade AWS Cloud Architect. It provides deep technical guidance across the entire AWS ecosystem, focusing on multi-account strategy, IAM least-privilege design, serverless patterns, and high-availability networking. Unlike generic AI prompts, this skill enforces strict operational gatekeeping, ensuring designs prioritize security boundaries, disaster recovery, and cost-efficiency before implementation begins.

    Why use this skill

    Designing for the cloud is easy; designing for production is hard. This skill saves senior engineers hours of manual review by automatically identifying architectural "red flags" such as broad administrative access, destructive lifecycle defaults, and lack of idempotency in distributed systems. It acts as a specialized consultant that understands how different AWS services interact under load and provides actionable remediation steps rather than vague suggestions.

    Value Add

    • Risk Mitigation: Identifies blast radius concerns and failure modes in complex VPC or event-driven setups.
    • Cost Control: Recommends workload sizing and storage lifecycle policies to prevent budget overruns.
    • Compliance Ready: Aligns infrastructure with best practices for audit logging, data classification, and environment isolation.
    • Framework Agnostic: Provides architectural blueprints compatible with any IaC tool like Terraform, Pulumi, or CDK.

    📖 Learn more: Best DevOps & Deployment Skills for Claude Code →

    Use Cases

    • Design least-privilege IAM strategies and cross-account access patterns.
    • Review serverless architectures for scalability, retries, and idempotency.
    • Optimize AWS cloud costs through service rightsizing and lifecycle policies.
    • Audit networking designs for secure ingress, egress, and private connectivity.

    Reviews

    No reviews yet — be the first to share your experience.

    Only users who have downloaded or purchased this skill can leave a review.

    Security Scanned

    Passed automated security review

    Permissions

    No special permissions declared or detected

    Creator

    Frequently Asked Questions

    Similar Skills

    $5

    One-time