aws-waf-cost-optimization-review
Review AWS workload cost posture against the Well-Architected Framework Cost Optimization Pillar. Covers cost visibility, tagging compliance, commitment coverage, rightsizing, Spot and managed service adoption, and idle resource identification. Use when auditing cloud spend, plan
Install
npx skills add https://github.com/VincentChuWaiChow/vanguard-frontier-agentic/tree/master/skills/aws/aws-waf-cost-optimization-review
claude plugin marketplace add https://llmmart.ai/marketplace.json && claude plugin install vincentchuwaichow-vanguard-frontier-agentic@llmmart
git clone https://github.com/VincentChuWaiChow/vanguard-frontier-agentic.git
The skills CLI installs just this skill, for any of its supported agents. Claude Code installs the whole vincentchuwaichow/vanguard-frontier-agentic collection as a plugin from our marketplace. Git is the plain clone.
Skill manifest
AWS WAF Cost Optimization Pillar Review
Purpose
Act as the AWS WAF Cost Optimization Pillar reviewer — evaluate workload cost posture against the five cost optimization design principles and identify savings opportunities with prioritized, evidence-backed recommendations.
When to use
- Preparing for a formal AWS Well-Architected Review (Cost Optimization Pillar)
- Auditing cloud spend, analyzing Cost Explorer data, or identifying rightsizing opportunities
- Planning Savings Plans or Reserved Instance commitments
Lean operating rules
- Always confirm current monthly spend and commitment coverage before recommending changes.
- Prefer
AwsDocumentationMcpServerwhen available. Otherwise fall back to official docs. - Separate confirmed facts from inference. If spend data was not provided, say so.
- Never recommend deleting resources or cancelling commitments without explicit inventory confirmation.
- Load references only when needed; do not pull all deep guidance into short answers.
References
Load these only when needed:
- Workflow and output contract — use when executing the full WAF cost review, formatting findings, or generating the savings opportunity report.
- Safety checklist — use before recommending any resource deletion, commitment purchase, or billing configuration change.
- Official sources — use when grounding AWS pricing models, Savings Plans, or cost management tooling.
- Well-Architected Cost Optimization Review Guide — use for domain-specific failure modes, safe workflow, verification targets, and pushback criteria.
Files (vanguard-frontier-agentic)
-
references
-
official-sources.md 2 KB
# Official sources Use this reference only when you need source grounding for AWS service behavior or the detailed source list. ## AWS documentation Use these as starting points, not as proof of the user's live AWS state: - https://docs.aws.amazon.com/wellarchitected/latest/cost-optimization-pillar/welcome.html - https://docs.aws.amazon.com/wellarchitected/latest/framework/cost-optimization.html - https://docs.aws.amazon.com/wellarchitected/latest/framework/cost_cloud_financial_management.html - https://docs.aws.amazon.com/wellarchitected/latest/framework/cost_manage_demand_resources.html ## Grounding rule Official documentation explains AWS service behavior. It does not prove the user's current account, Region, quota, resource configuration, IAM boundary, pricing, entitlement, or operational state. Prefer read-only AWS MCP or CLI evidence, repository evidence, or sanitized user-provided evidence for current-state claims. ## Current MCP/documentation refresh (2026-06-02) Service facts from official docs: - The Well-Architected Cost Optimization Pillar focuses on avoiding unnecessary cost while meeting business outcomes. - Cost optimization review areas include cloud financial management, expenditure awareness, cost-effective resources, demand/resource management, and continuous optimization. Sampled live evidence: - Read-only API availability sampling reported `WellArchitected+GetWorkload` as `isAvailableIn` in `us-east-1`, `us-west-2`, `eu-west-1`, and `ap-southeast-1`. - Cost-review evidence still requires workload, billing, tagging, utilization, and commitment data from the user's account; Well-Architected API availability alone does not prove review status. Review implications: - Require spend owner, cost allocation/tags, unit economics, utilization, rightsizing, commitment coverage, idle resources, and risk of reliability/security regression before recommending savings. - Do not treat Well-Architected answers or tool access as proof that cost risks are remediated. -
safety-checklist.md 1.3 KB
# Safety Checklist Use before recommending any resource deletion, Reserved Instance purchase, Savings Plans commitment, or billing configuration change. ## Non-negotiables - Never recommend deleting resources, snapshots, AMIs, or volumes without explicit inventory confirmation and owner sign-off. - Never recommend cancelling Reserved Instances or modifying Savings Plans without confirming the coverage gap and business impact. - Do not invent pricing, discount percentages, or savings estimates — use Cost Explorer data or published AWS pricing. - Require explicit user approval before purchasing RIs, Savings Plans, or modifying AWS Budget alert thresholds. - Rightsizing recommendations must include confirmation that the workload owner has reviewed the utilization data. - Never recommend disabling Cost Anomaly Detection or removing budget alerts as a cost-saving measure. ## Stress checks - Is the resource confirmed idle (not just low utilization)? - Has the RI/SP purchase been validated against the commitment term and instance family lock-in? - Are the tagging changes backward-compatible with existing cost allocation reports? - Will the Savings Plans discount cover the expected instance mix across all account families? - What is the blast radius if the recommended Auto Scaling min-capacity change is wrong? -
well-architected-cost-review.md 3.1 KB
# Well-Architected Cost Optimization Review Guide Use this reference for AWS Well-Architected Framework Cost Optimization Pillar reviews. In this repository, `aws-waf-cost-optimization-review` means Well-Architected Framework review, not AWS Web Application Firewall configuration. ## What people get wrong The lazy story is: > Cost optimization means find idle resources and buy commitments. Wrong. Good cost review preserves business outcomes. Savings that degrade reliability, security, observability, or delivery speed are not automatically good recommendations. Common bad assumptions: - Current month spend alone proves waste. - Low utilization means safe rightsizing. - Reserved Instances or Savings Plans are safe if the discount is large. - Untagged resources are minor accounting issues. - Spot is always a cost win. - Deleting logs, backups, or redundancy is acceptable savings. ## Cost-specific failure modes - No owner, cost allocation tags, unit-cost metric, or budget accountability. - Recommendations ignore seasonality, migration, incident recovery, test load, or business growth. - Commitment purchase locks in wrong family/Region/account or hides architecture change plans. - Rightsizing ignores burst, memory, I/O, latency, failover, or compliance requirements. - Observability, backup, security, or resilience costs are cut without risk acceptance. - Savings estimate uses list pricing or aggregates without amortized/unblended context. ## Minimum safe workflow 1. Confirm workload, payer/member account scope, monthly spend, business owner, unit economics, and cost target. 2. Break down cost by service, account, Region, usage type, operation, tag, and resource where supported. 3. Evaluate governance: tagging, budgets, anomaly detection, chargeback/showback, and owner accountability. 4. Separate quick wins from structural optimization, commitment strategy, and risky workload changes. 5. Estimate savings with assumptions, confidence, operational risk, and pillar tradeoffs. 6. Require owner approval before deletion, downscaling, commitment purchase, retention reduction, or architecture change. 7. Track recommendations as experiments with rollback criteria and post-change cost validation. ## Verification targets - Cost Explorer/Billing data grouped by service, account, Region, usage type, operation, tag, and resource where available - budget, anomaly detection, cost category, and tag coverage evidence - utilization metrics, performance headroom, workload seasonality, and business-critical periods - Savings Plans/RI coverage, utilization, expiration, and purchase constraints - idle/underused resources with owner and purpose confirmation - reliability/security/observability impact for any proposed savings action ## When to push back Push back if the user asks to: - recommend commitments without usage stability and roadmap evidence - delete backups/logs/redundancy for savings without risk acceptance - rights-size production from average utilization only - blame teams from untagged or payer-level aggregates - ignore security or reliability tradeoffs - confuse this Well-Architected Framework review with AWS Web Application Firewall cost tuning -
workflow-and-output.md 2.1 KB
# Workflow and Output Contract Use this reference when performing the full WAF Cost Optimization Pillar review or formatting the final assessment. ## Review domains Work through these five cost optimization design principles: 1. **Cloud financial management** — Cost Explorer enabled, CUR in S3, Budgets per account/project, Cost Anomaly Detection active, tagging policy enforced 2. **Expenditure awareness** — 100% resource tagging (env, team, app, cost-center), Cost Allocation Tags in billing, charge-back / show-back reports 3. **Cost-effective resources** — Graviton vs x86 evaluation, instance family selection, S3 storage class usage, RDS instance type vs Aurora Serverless fit 4. **Usage optimization** — Auto Scaling for stateless compute, S3 Intelligent Tiering or lifecycle rules, Spot Instances for fault-tolerant workloads, dev environment auto-shutdown 5. **Rate optimization** — Savings Plans coverage (Compute > EC2 > SageMaker), Reserved Instances for database/cache, Committed Use Discounts, Hybrid Benefit (Windows/SQL) ## Safe workflow 1. **Frame scope**: accounts, Regions, top 5 services by spend, monthly total 2. **Gather evidence**: Cost Explorer by service/tag, Trusted Advisor cost checks, Compute Optimizer recommendations, current Savings Plans coverage 3. **Assess each principle**: identify gaps per principle with estimated monthly savings 4. **Prioritize findings**: by estimated monthly savings impact 5. **Quantify savings**: provide per-recommendation estimated range with confidence level 6. **Confirm before acting**: require approval for resource deletion, RI/SP purchase, or billing config changes ## Response shape 1. Scope: monthly spend, top services, current commitment coverage 2. Cost visibility and attribution assessment 3. Tagging compliance 4. Rightsizing and instance family opportunities 5. Commitment strategy (Savings Plans, RI coverage) 6. Spot and managed service adoption 7. Storage and data transfer optimization 8. Idle resource inventory 9. Prioritized savings opportunities (est. monthly $ impact) 10. Open risks and blockers
-
-
metadata.json 1.2 KB
{ "id": "aws-waf-cost-optimization-review", "name": "AWS WAF Cost Optimization Pillar Review", "type": "skill", "provider": "aws", "harnesses": [ "codex", "claude-code", "cursor", "gemini", "kiro", "other" ], "summary": "Review AWS workloads against the Well-Architected Framework Cost Optimization Pillar: cost visibility, tagging compliance, commitment coverage, rightsizing, Spot adoption, and idle resource identification.", "source_type": "original", "official_docs": [ "https://docs.aws.amazon.com/wellarchitected/latest/cost-optimization-pillar/welcome.html", "https://docs.aws.amazon.com/wellarchitected/latest/framework/cost-optimization.html", "https://docs.aws.amazon.com/wellarchitected/latest/framework/cost_cloud_financial_management.html", "https://docs.aws.amazon.com/wellarchitected/latest/framework/cost_manage_demand_resources.html" ], "security_notes": "Read-only advisory. Do not cancel Reserved Instances, Savings Plans, or delete resources without explicit approval and resource inventory confirmation.", "last_verified": "2026-06-02", "path": "skills/aws/aws-waf-cost-optimization-review", "author": "github: VincentChuWaiChow", "version": "0.1.4" } -
SKILL.md 2.3 KB
--- name: aws-waf-cost-optimization-review description: "Review AWS workload cost posture against the Well-Architected Framework Cost Optimization Pillar. Covers cost visibility, tagging compliance, commitment coverage, rightsizing, Spot and managed service adoption, and idle resource identification. Use when auditing cloud spend, planning Savings Plans purchases, or preparing for a formal WAF Cost Optimization Pillar review." allowed-tools: Read Grep Glob metadata: author: "github: VincentChuWaiChow" version: "0.1.4" updated: "2026-06-02" category: finops --- # AWS WAF Cost Optimization Pillar Review ## Purpose Act as the AWS WAF Cost Optimization Pillar reviewer — evaluate workload cost posture against the five cost optimization design principles and identify savings opportunities with prioritized, evidence-backed recommendations. ## When to use - Preparing for a formal AWS Well-Architected Review (Cost Optimization Pillar) - Auditing cloud spend, analyzing Cost Explorer data, or identifying rightsizing opportunities - Planning Savings Plans or Reserved Instance commitments ## Lean operating rules - Always confirm current monthly spend and commitment coverage before recommending changes. - Prefer `AwsDocumentationMcpServer` when available. Otherwise fall back to official docs. - Separate confirmed facts from inference. If spend data was not provided, say so. - Never recommend deleting resources or cancelling commitments without explicit inventory confirmation. - Load references only when needed; do not pull all deep guidance into short answers. ## References Load these only when needed: - [Workflow and output contract](references/workflow-and-output.md) — use when executing the full WAF cost review, formatting findings, or generating the savings opportunity report. - [Safety checklist](references/safety-checklist.md) — use before recommending any resource deletion, commitment purchase, or billing configuration change. - [Official sources](references/official-sources.md) — use when grounding AWS pricing models, Savings Plans, or cost management tooling. - [Well-Architected Cost Optimization Review Guide](references/well-architected-cost-review.md) — use for domain-specific failure modes, safe workflow, verification targets, and pushback criteria.
Comments (0)
Sign in to join the conversation.
Reviews (0)
No reviews yet.
No comments yet.