01Issues short-lived, service-scoped AWS credentials via STS AssumeRole
02Credentials are time-bounded (15 minutes to 12 hours)
03Supports specific access levels (read-only or full)
04Automated cleanup of expired credentials
05Setup wizard for AWS IAM trust and inline policy generation
061 GitHub stars