Overview
AIA combines large language models (Claude, GPT, DeepSeek, and any OpenAI/Anthropic-compatible model) with deep AWS service integration. Deployed as a self-hosted Docker container on a single EC2 instance, it gives cloud operations teams a conversational interface plus 30+ specialized AI tools that autonomously execute AWS operations across accounts. It supports both AWS Global and AWS China partitions,delivers results through a web UI and a Feishu (Lark) bot,and exports to Markdown, CSV, Excel, and Word.
Highlights
- AI-Powered Multi-Account AWS Management Manage IAM permissions, security compliance, billing, and AWS Organizations across 10 to 1000+ accounts through simple natural-language conversation. AIA's agentic AI chains 30+ specialized AWS tools to execute cross-account operations autonomously, replacing hours of console work with a single request.
- AI-Powered Multi-Account AWS Management Manage IAM permissions, security compliance,billing, and AWS Organizations across 10 to 1000+ accounts through simple natural-language conversation. AIA's agentic AI chains 30+ specialized AWS tools to execute cross-account operations autonomously, replacing hours of console work with a single request.
- Self-Hosted, Enterprise-Secure, Dual-Partition Deploy as a single Docker container on your own EC2 in under 5 minutes. Your data never leaves your infrastructure, with JWT auth, AES-256 encryption, RBAC, and full audit logging built in. Supports both AWS Global and AWS China, with web UI and Feishu (Lark) access.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Vendor refund policy
Please contact me.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (Arm) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
AeroBot - Usage Instructions
-
LAUNCH
- Launch the instance from this listing using the vendor-recommended instance type (m7g.large, ARM64) or larger.
- Ensure the security group allows inbound HTTPS (443) and HTTP (80), and SSH (22) from your admin IP only.
-
FIRST-TIME ACCESS
- After the instance boots (allow 2-3 minutes for containers to start), open https:/// in a browser.
- Log in with the initial administrator credentials shown in the deployment output / instance user-data log.
- You will be prompted to change the default password on first login.
-
CONFIGURE AI PROVIDER
- Go to Settings > AI Configuration.
- Add an LLM provider: Anthropic (Claude), OpenAI (GPT-4o), or any OpenAI/Anthropic-compatible endpoint (DeepSeek, Qwen, etc.).
- Enter your API key (stored AES-256 encrypted at rest).
-
CONNECT AWS ACCOUNTS
- Go to Accounts > Add Account.
- For the management account, provide credentials or an IAM role.
- For member accounts, deploy the provided CloudFormation template (AIAAssumeRoleTarget role) and register each account for cross-account AssumeRole access.
- Supports both AWS Global and AWS China partitions.
-
START USING AIA
- Open the chat interface and issue natural-language requests, e.g.: "List all IAM users with admin access across all accounts" "Find unused credentials older than 90 days" "Show this month's cost breakdown by account"
- Export results to Markdown, CSV, Excel, or Word as needed.
- (Optional) Connect the Feishu/Lark bot for team access.
-
SECURITY & MAINTENANCE
- Provide your own TLS certificate to Nginx for production HTTPS.
- Review the audit log (default 90-day retention) under Settings > Audit.
- Two roles are available: admin (full access) and user (limited)
Additional details
Usage instructions
AeroBot - Usage Instructions
-
LAUNCH
- Launch the instance from this listing using the vendor-recommended instance type (m7g.large, ARM64) or larger.
- Ensure the security group allows inbound HTTPS (443) and HTTP (80), and SSH (22) from your admin IP only.
-
FIRST-TIME ACCESS
- After the instance boots (allow 2-3 minutes for containers to start), open https://<instance-public-DNS-or-your-domain>/ in a browser.
- Log in with the initial administrator credentials shown in the deployment output / instance user-data log.
- You will be prompted to change the default password on first login.
-
CONFIGURE AI PROVIDER
- Go to Settings > AI Configuration.
- Add an LLM provider: Anthropic (Claude), OpenAI (GPT-4o), or any OpenAI/Anthropic-compatible endpoint (DeepSeek, Qwen, etc.).
- Enter your API key (stored AES-256 encrypted at rest).
-
CONNECT AWS ACCOUNTS
- Go to Accounts > Add Account.
- For the management account, provide credentials or an IAM role.
- For member accounts, deploy the provided CloudFormation template (AIAAssumeRoleTarget role) and register each account for cross-account AssumeRole access.
- Supports both AWS Global and AWS China partitions.
-
START USING AIA
- Open the chat interface and issue natural-language requests, e.g.: "List all IAM users with admin access across all accounts" "Find unused credentials older than 90 days" "Show this month's cost breakdown by account"
- Export results to Markdown, CSV, Excel, or Word as needed.
- (Optional) Connect the Feishu/Lark bot for team access.
-
SECURITY & MAINTENANCE
- Provide your own TLS certificate to Nginx for production HTTPS.
- Review the audit log (default 90-day retention) under Settings > Audit.
- Two roles are available: admin (full access) and user (limited).
Support
Vendor support
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.