Your Amazon ECS clusters have CloudWatch Container Insights enabled. Container Insights collects…
Your Amazon ECS Fargate services are running on the latest platform version. Fargate platform versions…
Your Amazon ECS (Elastic Container Service) services do not automatically assign public IP addresses to…
All containers in your Amazon ECS task definitions have read-only root filesystems enabled. When a…
Your Amazon ECS task definitions do not share the host's process or IPC (inter-process communication)…
Amazon ECS task definitions configured with host network mode run containers as non-root users. When…
Your Amazon ECS task definitions have logging configured in non-blocking mode. When containers write logs…
All containers within your Amazon ECS task definitions have logging configured. Specifically, it ensures…
This check scans AWS ECS task definitions for plaintext secrets stored in container environment variables…
Your Amazon ECS task definitions do not have containers configured to run in privileged mode. When a…
ECS task sets do not automatically assign public IP addresses to tasks. When public IP assignment is…