← Back to Tech Blog

AWS · Infrastructure · Drift Detection

Configuration Drift Detector: Catch Config Drift Before It Spreads

By Chinmaya Chhatre · Solutions Engineer

One day, a change went live in our AWS environment that no one remembered making.

Security groups had shifted. Auto-scaling thresholds were off. What we had in Terraform did not match reality. I built this while working at Apex Analytix, where even minor infrastructure changes could impact supplier portals and audit workflows. We needed early warnings, not postmortems.

The Challenge

AWS Config tells you what changed, eventually. But I needed instant visibility, not hours later, not after something broke. I wanted something that could:

The Fix: Detect + Alert + Revert

I built a system using:

GitHub: github.com/chinmaya-chhatre/configuration-drift-detector

What Changed

Config drift is invisible until it is not. Detecting it is just as critical as preventing it.

Tradeoffs I Made

What I Would Add Next

More from the Tech Blog

Rate my site!