aws-cloudformation-elasticache — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited aws-cloudformation-elasticache (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Use this skill to model ElastiCache infrastructure with CloudFormation without turning SKILL.md into a full service manual.
Focus on the delivery decisions that matter most:
Use the bundled references/ documents for larger production templates and service-specific detail.
Use this skill when:
AWS::ElastiCache::CacheCluster and AWS::ElastiCache::ReplicationGroupTypical trigger phrases include cloudformation elasticache, redis replication group, memcached cluster, cache subnet group, and export redis endpoint.
Use:
ReplicationGroup for production Redis-style deployments that need failover, replicas, or shardingCacheCluster for Memcached or simple single-node cache scenariosDo not start with resource YAML before deciding whether the application needs durability, read replicas, cluster mode, or just an ephemeral cache.
Create and wire:
Keep the cache private unless there is a very unusual and well-reviewed reason not to.
For production-style Redis deployments, decide on:
For lower environments, document when a cheaper single-node configuration is acceptable.
Parameterize only the settings that truly vary between environments, such as node type, subnet IDs, or snapshot retention.
Export outputs that other stacks need, typically:
Before deployment:
Parameters:
CacheNodeType:
Type: String
Default: cache.t4g.small
Resources:
CacheSubnetGroup:
Type: AWS::ElastiCache::SubnetGroup
Properties:
Description: Private subnets for the cache tier
SubnetIds: !Ref PrivateSubnetIds
CacheSecurityGroup:
Type: AWS::EC2::SecurityGroup
Properties:
GroupDescription: Application access to Redis
VpcId: !Ref VpcId
RedisReplicationGroup:
Type: AWS::ElastiCache::ReplicationGroup
Properties:
ReplicationGroupDescription: Application Redis cluster
Engine: redis
CacheNodeType: !Ref CacheNodeType
NumNodeGroups: 1
ReplicasPerNodeGroup: 1
AutomaticFailoverEnabled: true
MultiAZEnabled: true
CacheSubnetGroupName: !Ref CacheSubnetGroup
SecurityGroupIds:
- !Ref CacheSecurityGroup
TransitEncryptionEnabled: true
AtRestEncryptionEnabled: trueOutputs:
RedisPrimaryEndpoint:
Description: Primary endpoint used by the application stack
Value: !GetAtt RedisReplicationGroup.PrimaryEndPoint.Address
Export:
Name: !Sub "${AWS::StackName}-RedisPrimaryEndpoint"Keep outputs small and stable so consumer stacks do not break unnecessarily.
references/examples.md instead of expanding the root skill endlessly.references/examples.mdreferences/reference.mdaws-cloudformation-vpcaws-cloudformation-securityaws-cloudformation-ecsaws-cloudformation-lambda~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.