Three pillars.
One IAM role.
- ARCH
Well-Architected Reviews
36 rules, 6 pillars. Reads your Terraform and CloudFormation, scores it, and hands back a PDF or SARIF report.
Operational Excellence, Security, Reliability, Performance, Cost, Sustainability36WAR rules - COST
Cost Optimization
Catches 79 waste patterns in 15+ AWS services. Orphaned EBS, oversized RDS, idle NAT gateways.
EC2, RDS, EBS, S3, Lambda, NAT Gateway, ELB, ElastiCache, Redshift, DynamoDB24%avg savings - SEC
Security Hardening
Prowler under the hood. Flags open buckets, over-permissive IAM, missing encryption.
CIS Benchmarks, PCI-DSS, HIPAA, SOC2, NIST, GDPR, AWS Best Practices200+checks
Five minutes to first scan.
No agents. No sidecars. One IAM role.
- 01
Connect
Deploy one cross-account IAM role. Five minutes, no agents, no sidecars.
aws cloudformation deploy --template lighthouse-role.yaml - 02
Scan
Architecture, cost, and security checks run in parallel across every account.
Scanning 15+ services across 3 pillars... - 03
Remediate
Each finding comes with CloudFormation or Terraform you can actually run.
resource "aws_s3_bucket_versioning" "fix" { ... }
Per firm. Not per seat.
One bill, your whole team. Free tier is real, not a fourteen-day trial.
- 1 client, 1 AWS account
- Architecture reviews (5 findings)
- Weekly scans
- Dashboard access
- 5 clients, 10 AWS accounts
- Daily scans
- PDF reports
- IaC generation
- 20 clients, 50 AWS accounts
- Everything in Solo
- White-label branding
- CSV export & advanced recs
- Unlimited clients & accounts
- Everything in Team
- AI/ML insights
- API access