Read-only AWS access
Customers deploy a cross-account role protected by an external ID. No AWS keys are requested; the product does not mutate infrastructure.
Security
Only claims with a current code or runbook source belong on this page.
Customers deploy a cross-account role protected by an external ID. No AWS keys are requested; the product does not mutate infrastructure.
SpendLens uses the customer-owned CUR export with inventory context.
Customer-facing article work is organization-scoped; article stages run as separate runtime services.
An article marked seo.noindex remains reachable by detail URL but is omitted from listings and sitemap.
The existing export surface includes reader preferences, consent history, and briefed articles. Current UI says server-side profile deletion is not yet available.