Skip to main content

atmos aws cloudformation drift describe

Show the per-resource results of the most recently completed drift detection (DescribeStackResourceDrifts) without triggering a new one. Run drift detect first — this command only reads existing results.

Experimental
atmos aws cloudformation drift describe --help
 

Usage

atmos aws cloudformation drift describe <component> --stack <stack> [options]
atmos aws cloudformation drift describe vpc -s plat-ue2-dev

Flags

--stack, -s (required for a single component)
Atmos stack. Required when operating on a single component; optional (and used only to narrow the selected set) with --all/--affected.
--all (optional)
Describe drift for all aws/cloudformation components in dependency order.
--affected (optional)
Describe drift for affected aws/cloudformation components and their dependencies.
--include-dependents (optional)
With --affected, include dependent aws/cloudformation components.
--tags (optional)
Filter by tags (comma-separated, matches any): --tags=production,tier-1. Composes with --all/--affected to narrow the selected set further; cannot be combined with a single component argument.
--labels (optional)
Filter by labels (comma-separated key=value or key:value pairs, matches all): --labels=cost-center=platform,compliance=sox. Composes with --all/--affected/--tags; cannot be combined with a single component argument.

Output

Only resources that are not IN_SYNC are printed. If the stack has no drift results at all (no detection has ever run), drift describe says so and suggests running drift detect first.

note

drift describe does not fire before/after hook events — only apply, diff, and delete do.