# Niyantrac — The Time Machine for AWS > Niyantrac is a governance, backup, and recovery platform for Amazon Web Services (AWS). It gives AWS accounts the "undo button" they natively lack: continuous backups, full version history, AI-generated change summaries, and one-click rollback for AWS IAM, IAM Identity Center (SSO), CloudFront, WAF, and Route 53. Niyantrac is deployed as an AMI directly inside the customer's own AWS account, so identity and configuration data never leaves their environment. ## What problem does Niyantrac solve? AWS has no native "undo." A deleted IAM role, an over-broad SSO permission set, or a misconfigured policy can lock out teams, break production, and create compliance gaps — with no built-in way to restore the previous state. AWS CloudTrail and AWS Config record *what* changed but cannot *revert* it. Niyantrac adds the missing recovery and governance layer on top of AWS. ## Who is Niyantrac for? - Security and compliance teams (CISO, GRC, security engineering) who need audit evidence, least-privilege enforcement, and proof of change control. - Cloud platform, DevOps, and SRE teams who need fast recovery from identity and configuration mistakes. - Regulated and global organizations with data-residency and sovereignty requirements (data stays in their own AWS account and region). ## Key capabilities - **Continuous backups** of IAM roles, policies, users, groups; IAM Identity Center (SSO) permission sets and assignments; plus CloudFront, WAF, and Route 53 — on a schedule and on every change. - **Full version history with AI summaries**: every change is versioned, timestamped, attributed to a user, and explained in plain English by AI (what changed, who changed it, what it affects, whether it looks risky). - **One-click rollback**: restore a deleted IAM role, revert an SSO permission set, or roll any resource back to any previous version in seconds, with pre-apply validation. - **Governance and compliance**: policy-based access control (PBAC), real-time alerts on permission/backup/deletion events, AI-flagged anomalies, and audit-ready evidence for SOC 2, ISO 27001, and internal access reviews. ## How Niyantrac differs from native AWS tools - **AWS CloudTrail** logs API activity but cannot restore prior state. - **AWS Config** records configuration history and timelines but does not perform one-click rollback of IAM/SSO and has limited Identity Center coverage. - **AWS Backup** does not cover IAM and IAM Identity Center configuration. - **Niyantrac** unifies backup, AI-explained version history, one-click rollback, and governance for identity *and* edge services in a single platform deployed inside your AWS account. ## Deployment and security Niyantrac is deployed as an AMI into the customer's own AWS account. All backups, version history, and credentials remain in the customer's account and region. Nothing is sent to a third-party SaaS. There is nothing to install on local machines; the product is accessed through a web dashboard. The AMI is available directly from Niyantrac — contact sales@niyantrac.com for access. ## Frequently asked questions **What does Niyantrac protect in my AWS account?** AWS IAM (roles, policies, users, groups) and IAM Identity Center / SSO (permission sets and assignments), plus CloudFront, WAF, and Route 53. Coverage continues to expand. **Can I roll back a deleted IAM role or SSO permission set?** Yes. Niyantrac keeps full version history and can restore a deleted role, revert an over-broad policy, or roll an SSO permission set back to a known-good state in seconds. **Why do I need Niyantrac if AWS has IAM, CloudTrail, and Config?** Those services tell you what changed; they cannot undo it. Niyantrac adds one-click rollback, AI change summaries, and audit-ready evidence. **Is my identity data secure and compliant with data-residency rules?** Yes. Data never leaves your AWS account or region because Niyantrac is deployed via AMI inside your environment. **Does Niyantrac help with compliance audits?** Yes. Every IAM and SSO change is versioned with an attributed audit trail, providing ready-made evidence for SOC 2, ISO 27001, and internal reviews. ## Links - Home: https://niyantrac.com/ - Contact / book a demo: https://niyantrac.com/contact - Documentation and guides: https://niyantrac.com/guides - Sales contact (AMI access & demos): sales@niyantrac.com ## Company Niyantrac is built by Hostin Services. The product name "niyantrac" reflects control and governance over cloud infrastructure.