Skip to main content

CodeBuild Project Environment Does Not Have Logging Configured

Overview

This check examines if a CodeBuild project environment includes a minimum of one activated logging option, such as S3 or CloudWatch logs. The check results in failure if the CodeBuild project environment lacks any enabled log options.

Considering security aspects, enabling logging is a crucial practice for facilitating future forensic investigations in the event of security incidents. The correlation of irregularities in CodeBuild projects with threat detections enhances confidence in the precision of these threat detections.

Vendor

AWS

Cloud Service

CodeBuild

CodeBuild.4

Severity

3

Item Types

AWS::CodeBuild::Project