Earlier quoted context omitted.
Do you think humans are doing a better job? Research shows that 95% of the permissions granted to users aren't used which creates huge problems and is a reason for spending millions in security tools. Why not use Slauth and other checks such as policy simulators to get tightened policies pre-deployed
AWS and GCP already provide tools to show excess permissions...
I wrote some code once to fetch all those preconfigured role permissions and then present them in a more digestible way