Item logo image for Orthanc

Orthanc

ExtensionTools3 users
Item media 1 (screenshot) for Orthanc

Overview

One-click AWS SSO login and console access

Orthanc reads the AWS SSO profiles you already have in ~/.aws/config and puts them in your browser toolbar. Click a profile, land in the AWS Console signed in to that account and role. Expired session? Orthanc signs you in first, then opens the console. REQUIRES THE FREE COMPANION APP FOR macOS This extension does nothing on its own. It talks to the Orthanc app on your Mac, which is what reads your config and performs the sign-in. Get it here: https://stormacq.net/orthanc/ (macOS 26 or later) WHAT IT DOES • Lists every SSO profile from ~/.aws/config — no accounts to create, nothing to import, no setup wizard. • Shows session state per profile: a lit dot means the session is active, unlit means expired. • Opens the AWS Console for the profile you pick, in the account and role that profile names. • Signs you in when needed, then continues to the console — one click, not two steps. • Works with the AWS Console's multi-session support, so prod and staging can sit in adjacent tabs. • Star the profiles you actually use. Twelve in your config, two you touch daily: the Favourites tab shows only those. Stars live on your Mac, so Chrome, Firefox, and Safari all see the same list. WHY INSTALL IT Without it: run aws sso login, find the Identity Center portal bookmark, locate the right account in the list, pick the right role, wait for the redirect — and it opens in a new tab, never the one you already had. With twelve profiles and three SSO sessions, that ritual repeats all day, and the token expires exactly when you are mid-incident. Orthanc collapses it to one click. It also stays out of the way of your terminal. Tokens are cached in ~/.aws/sso/cache/ in the AWS CLI's own format, so a session started in Orthanc is picked up by aws commands in your shell — and a session started with aws sso login shows as active in the popup. WHAT IT NEVER SEES The extension never receives an AWS token or credential. Those stay in the native app on your Mac; the only thing handed to the browser is profile names, session status, and a final one-time sign-in URL to open in a tab. One permission: nativeMessaging. It cannot read page content, browsing history, or anything you type. There is no server in the login path — the app talks directly to AWS's own SSO OIDC and federation endpoints from your Mac. No accounts, no analytics SDKs, no tracking, no identifier of any kind. PRICING Two profiles are free forever — no trial, no clock, no account. You choose which two by starring them, and you can change your mind at any time. Unlimited profiles is a one-time $17.99 / €14.99 purchase in the app; there is no subscription. The extension itself is free. REQUIREMENTS • macOS 26 or later, with the free Orthanc companion app installed. • AWS IAM Identity Center (SSO) configured, and at least one SSO profile in ~/.aws/config. Profiles using static access keys are not shown — SSO only. • Works in Chrome and other Chromium browsers (Edge, Brave, Arc, Vivaldi, Opera).

Details

  • Version
    0.4.0
  • Updated
    September 10, 2026
  • Features
    Offers in-app purchases
  • Offered by
    Stormacq Consulting
  • Size
    50.15KiB
  • Languages
    English
  • Developer
    Stormacq Consulting SASU
    38 Rue Malsence Lille 59800 FR
    Email
    apps@stormacq.net
    Phone
    +33 6 89 30 45 42
  • Trader
    This developer has identified itself as a trader per the definition from the European Union and committed to only offer products or services that comply with EU laws.
  • D-U-N-S
    288110642

Privacy

Manage extensions and learn how they're being used in your organization
The developer has disclosed that it will not collect or use your data. To learn more, see the developer’s privacy policy.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Support

For help with questions, suggestions, or problems, visit the developer's support site

Google apps