# Core Capabilities

Sandbox Studio provides a range of tools to make AWS sandbox account management fast, safe, and cost-effective. The table below explains the core capabilities of the platform, how it works, and the specific benefits it can bring to your teams.

<table id="bkmrk-feature-what-it-does" style="width: 100%; height: 1005.17px;"><thead><tr style="height: 35.7969px;"><th class="align-left" style="width: 20.5006%;">**Capability**</th><th class="align-left" style="width: 39.0942%;">**What It Does**</th><th class="align-left" style="width: 40.4052%;">**Benefit**</th></tr></thead><tbody><tr style="height: 137.219px;"><td style="width: 20.5006%; height: 137.219px; padding-top: 12px;">**Instant Account Access**</td><td style="width: 39.0942%; height: 137.219px;">- Launch AWS sandbox accounts in seconds with all required configurations already applied.
- Accounts are ready for use immediately without any manual setup.

</td><td style="width: 40.4052%; height: 137.219px;">- Start projects right away without waiting for environments to be built.
- Enable rapid experimentation, testing, or proof-of-concept work.

</td></tr><tr style="height: 120.422px;"><td style="width: 20.5006%; height: 120.422px; padding-top: 12px;">**Stay on Budget**</td><td style="width: 39.0942%; height: 120.422px;">- Define spending limits for each account so costs are controlled automatically.
- Receive alerts in real time before spending thresholds are exceeded.

</td><td style="width: 40.4052%; height: 120.422px;">- Prevent budget overruns before they happen.
- Keep sandbox activity predictable and aligned with financial goals.

</td></tr><tr style="height: 120.422px;"><td style="width: 20.5006%; height: 120.422px; padding-top: 12px;">**Simplified Account Cleanup**</td><td style="width: 39.0942%; height: 120.422px;">- Automatically remove all deployed resources when an account reaches its budget or time limit.
- Reset the account back to a clean, ready-to-use state.

</td><td style="width: 40.4052%; height: 120.422px;">- Reduce manual cleanup effort and free up team time.
- Ensure accounts are always safe to reuse for the next activity.

</td></tr><tr style="height: 137.219px;"><td style="width: 20.5006%; height: 137.219px; padding-top: 12px;">**Built-in Security**</td><td style="width: 39.0942%; height: 137.219px;">- Apply service control policies (SCPs) to restrict services, regions, or actions.
- Configure IAM permissions automatically for each sandbox account.

</td><td style="width: 40.4052%; height: 137.219px;">- Enforce security and compliance rules without manual setup.
- Reduce the risk of unauthorised access or unsafe configurations.

</td></tr><tr style="height: 109.625px;"><td style="width: 20.5006%; height: 109.625px; padding-top: 12px;">**Flexible Permissions**</td><td style="width: 39.0942%; height: 109.625px;">- Assign role-based IAM permissions tailored to each account type.
- Limit user access to only the resources and actions they need.

</td><td style="width: 40.4052%; height: 109.625px; padding-top: 12px;">- Prevent accidental or unwanted changes to environments.
- Match account access precisely to each team member’s responsibilities.

</td></tr><tr style="height: 120.422px;"><td style="width: 20.5006%; height: 120.422px; padding-top: 12px;">**Ready-to-Launch Environments**</td><td style="width: 39.0942%; height: 120.422px;">- Pre-provision AWS accounts with infrastructure for specific events or learning activities.
- Perfect for hackathons, training workshops, and tutorials.

</td><td style="width: 40.4052%; height: 120.422px;">- Eliminate setup delays before events begin.
- Provide a consistent, ready-made environment for participants.

</td></tr><tr style="height: 103.625px;"><td style="width: 20.5006%; height: 103.625px; padding-top: 12px;">**Controlled Access**</td><td style="width: 39.0942%; height: 103.625px;">- Allow managers to oversee and manage specific accounts or groups.
- Define permissions in detail to control exactly who can do what.

</td><td style="width: 40.4052%; height: 103.625px;">- Maintain a clear hierarchy of control across accounts.
- Balance flexibility with governance requirements.

</td></tr><tr style="height: 120.422px;"><td style="width: 20.5006%; height: 120.422px; padding-top: 12px;">**Easy Management**</td><td style="width: 39.0942%; height: 120.422px;">- Manage all sandbox accounts from a single, centralised dashboard.
- Interface is designed to be simple for both technical and non-technical users.

</td><td style="width: 40.4052%; height: 120.422px;">- Give all team members the ability to manage sandboxes confidently.
- Reduce reliance on technical specialists for basic account tasks.

</td></tr></tbody></table>