EC2 instance is missing an Owner tag
- Severity
- Low
- Service
- Tagging
- Check ID
- EC2_MISSING_OWNER_TAG
What this check finds
The EC2 instance has no 'Owner' tag (typically a team or individual email). Without an owner tag, idle or zombie instances go unnoticed and there is no clear escalation path for security incidents affecting the resource.
Passing looks like: EC2 instances have an Owner tag.
How to fix it
Add an Owner tag.
AWS CLI
aws ec2 create-tags --resources INSTANCE_ID --tags Key=Owner,Value=team@example.comEnforce tagging policy via AWS Config required-tags managed rule or AWS Organizations tag policies.
Names in capitals are placeholders for your own resource. Review a command before you run it.
Compliance
This is an operational hygiene check. It flags something worth tidying rather than a control an auditor asks for, so it is not mapped to a compliance framework.
Checked on every scan
KloudLytics runs this check each time it scans a connected AWS account, through a read-only role, and lists every affected resource with its region. On Pro and Business a fix is written for the specific resource rather than the general case above. The exact access it needs