I really don't know what must happen before I give AWS CRUD credentials to a third party. However, that something didn't happen by reading this website and its value proposition. I'm saying this as, hopefully, source for inspiration. The amount of trust a third party must inspire before anyone (like me at least?) dares to delegate operation must be overwhelming.
Thanks! This is super helpful What'd be your thoughts on the following options: - IAM role account-to-account (no credentials sharing) - Self-hosted webapp that runs in your account - Mac app so that creds never ever leave your laptop
this is probably as close as I'd get to use it, yes, with a little console that displays all the communications as a prove of good faith, welcoming anyone to spoof network and find out there are no home-calls/telemetry involved.