Documentation
StaleSweep is a read-only AWS scanner that finds stale, idle, and unused resources across your accounts and shows you what they cost. Pick a section to get started.
AWS account setup
Connect a standalone account or a whole AWS Organization with a one-click, read-only CloudFormation deploy.
SSO setup
Sign in with Google/Microsoft, or connect Okta, Entra ID, or any SAML 2.0 identity provider for your team.
Scan scheduling
Run scans automatically — daily through bimonthly — and follow progress and results in the app.
Exception rules
Suppress intentional resources with rules, tags, or one click, without disabling whole detectors.
What we detect
The 60+ stale, idle, and unused resource patterns the scanner looks for, and how it avoids false positives.
Results, savings & exports
How findings, estimated savings, realized savings, and CSV export work.
Cost insights setup
Turn on Cost & Usage Report (CUR) ingestion for real AWS spend — bill breakdown, cost anomalies, and spend joined to your findings.
Slack report delivery
Post cost-report summaries and the full PDF to Slack channels, on demand or on a schedule.
Security & privacy
Read-only access, External IDs, tenant isolation, session security, and audit logging.
Troubleshooting
Fixes for the most common connection and scan issues.
