AWS
Key & Secret Rotation
KMS keys and Secrets Manager secrets with rotation state: off, overdue or actively rotating.
Live preview — demo data
Same idea on another cloud
What this pane shows
Two stacked tables: customer-managed KMS keys (with rotation enabled / disabled / not applicable for asymmetric keys) and Secrets Manager secrets (with rotation Lambda, last-rotated date, and overdue flag if past their rotation interval). A top scorecard counts the three states.
Key use cases
- Identify production secrets that have never been rotated.
- Catch a rotation Lambda that's been failing silently for weeks.
- Audit customer-managed-key rotation coverage for compliance.
- Plan rotation work after a credential exposure incident.
How to embed
Drop this snippet on any HTML page that loads lp-embed.js. The pane
mounts itself wherever the matching <div> is in the DOM.
<div class="lp-kms-rotation-panel"
data-lp-account="<your-account-alias>"></div>
<script src="https://lightpane.io/embed/lp-embed.js"
data-lp-key="<your-access-key>"></script>
<script src="https://lightpane.io/_pane-tests/aws/kms-rotation/kms-rotation.js"
defer></script>
Tier
Available on Explorer and above.
Build notes
Mock-only at the moment — live-wiring tracked in the roadmap.