AWS · Cloud service
Amazon EC2 with OrchestrAI
Catalog exported 2026-09-02
Run Amazon EC2 from chat: launch and terminate instances, manage launch templates, Elastic IPs, and gateways.
OrchestrAI exposes 10 EC2 operations: 5 are low-risk (read-only or low-impact), 4 create or modify resources and run only after you confirm the plan, and 1 is destructive and requires a typed risk phrase. 4 of them also carry a step-level approval gate.
What teams use it for
Teams use OrchestrAI to launch instances from an AMI, describe what is running in a region, build launch templates for Auto Scaling groups, allocate and release Elastic IPs, and clean up internet gateways during teardown. Terminating instances is critical risk and needs a typed risk phrase, while releasing an Elastic IP or deleting a launch template waits for confirmation. There is no operation to stop, start, reboot, or resize an existing instance, so those actions remain in the console.
Every EC2 operation, with its risk level
| Operation | What it does | Risk | Step-level approval |
|---|---|---|---|
Allocate Elastic IP |
Allocate an Elastic IP address | Low risk | No |
Create EC2 Launch Template |
Create an EC2 launch template (AMI, instance type, security groups) for an Auto Scaling Group | Low risk | No |
Describe EC2 Instances |
Get information about EC2 instances | Low risk | No |
Describe Elastic IPs |
List Elastic IP addresses (all, or a specific allocation) with association state | Low risk | No |
Describe Internet Gateways |
List internet gateways (all, or a specific one) with their attachments | Low risk | No |
Delete EC2 Launch Template |
Delete an EC2 launch template (teardown) | Creates resources | Yes |
Delete Internet Gateway |
Delete an internet gateway (detaching it from its VPC first if needed) | Creates resources | Yes |
Launch EC2 Instances |
Launch one or more EC2 instances | Creates resources | No |
Release Elastic IP |
Release an Elastic IP address (disassociating it first if needed) | Creates resources | Yes |
Terminate EC2 Instances |
Terminate one or more EC2 instances | Destructive | Yes |
Risk tiers come from the catalog: low is read-only or low-impact, medium creates resources and is reversible, high modifies existing resources, destructive may lose data. Every plan that creates or changes resources is shown with its cost estimate and waits for your confirmation. Operations marked with a step-level approval pause again on their own step. Destructive operations require a typed risk phrase.
Prompts that work
- Launch two t3.medium instances in us-east-1 from ami-0abc123 in the web-sg security group
- Describe the EC2 instances tagged Environment=staging and show their state and private IPs
- Release the Elastic IP eipalloc-0f3e21 and delete the old bastion-lt launch template
Before anything runs
Every mutation shows its plan, cost estimate, and blast radius, then waits for your confirmation. Destructive operations require a typed risk phrase. Credentials are minted per run through OIDC federation and discarded afterward; nothing you create here is invisible later, because every resource lands in the desired-state ledger where drift is detected and can be converged. Details on the security page.
Frequently asked questions
- Can OrchestrAI stop or reboot an EC2 instance?
- No, it can launch, describe, and terminate instances, but stop, start, and reboot are not in the current operation set.
- How is terminating EC2 instances protected in OrchestrAI?
- Termination is critical risk. OrchestrAI lists the instance IDs and waits for confirmation plus a typed risk phrase before it runs.
- Which EC2 operations need an extra approval step?
- 4 operations carry a step-level approval gate on top of plan confirmation: Delete EC2 Launch Template, Terminate EC2 Instances, Release Elastic IP, Delete Internet Gateway. One of these is classed destructive and cannot run without a typed risk phrase.
Other AWS services
Related integrations
Try it on your own account
Connect your cloud read-only and see your resources, drift, and costs before anything runs. $5 minimum to start. Unused credits refunded in your first 14 days.
Unused credits refunded in your first 14 days.