In a similar vein, of event based response and remediate/report/notify, but more compliance/governance as code style, https://github.com/cloud-custodian/cloud-custodian ~ 2.7k stars 240 contributors.. disclaimer I’m a maintainer. Bonus it works several clouds (aws, azure, gcp)
It hardly feels sneaky... it's right on their blog. And they list a lot of projects alongside theirs. And their product is built off a popular open source D&R system.