AWS Fundamentals Logo
AWS Fundamentals
20519 IAM Actions

IAM Actions Explorer

Browse every AWS IAM action, resource type, and condition key. Understand exactly what permissions your policies need.

Alexa for Business

96
a4b:*
15 read61 write17 list3 tagging

Amazon AI Operations

33
aiops:*
10 read12 write5 list3 permissions3 tagging

Amazon API Gateway

3
execute-api:*
2 read1 write

Amazon API Gateway Management

13
apigateway:*
3 read7 write3 permissions

Amazon API Gateway Management V2

36
apigateway:*
9 read19 write5 list3 permissions

Amazon AppFlow

31
appflow:*
11 read13 write4 list3 tagging

Amazon AppIntegrations

35
app-integrations:*
5 read19 write8 list3 tagging

Amazon Application Recovery Controller - Zonal Shift

15
arc-zonal-shift:*
2 read10 write3 list

Amazon AppStream 2.0

89
appstream:*
21 read58 write4 list3 permissions3 tagging

Amazon ARC Region switch

24
arc-region-switch:*
4 read8 write6 list3 permissions3 tagging

Amazon Athena

81
athena:*
31 read32 write15 list3 tagging

Amazon Aurora DSQL

25
dsql:*
7 read11 write1 list3 permissions3 tagging

Amazon Bedrock

235
bedrock:*
52 read105 write34 list27 permissions17 tagging

Amazon Bedrock Agentcore

133
bedrock-agentcore:*
30 read57 write19 list18 permissions9 tagging

Amazon Bedrock Powered by AWS Mantle

23
bedrock-mantle:*
7 read9 write4 list3 tagging

Amazon Braket

20
braket:*
4 read8 write4 list1 permissions3 tagging

Amazon Chime

316
chime:*
86 read171 write50 list9 tagging

Amazon Cloud Directory

66
clouddirectory:*
11 read30 write18 list4 permissions3 tagging

Amazon CloudFront

173
cloudfront:*
38 read66 write38 list26 permissions5 tagging

Amazon CloudFront KeyValueStore

6
cloudfront-keyvaluestore:*
2 read3 write1 list

Amazon CloudSearch

32
cloudsearch:*
17 read10 write2 list3 tagging

Amazon CloudWatch

59
cloudwatch:*
22 read26 write8 list3 tagging

Amazon CloudWatch Application Insights

34
applicationinsights:*
10 read14 write7 list3 tagging

Amazon CloudWatch Application Signals

25
application-signals:*
4 read7 write11 list3 tagging

Amazon CloudWatch Evidently

38
evidently:*
8 read21 write6 list3 tagging

Amazon CloudWatch Internet Monitor

17
internetmonitor:*
6 read5 write3 list3 tagging

Amazon CloudWatch Logs

122
logs:*
40 read50 write10 list15 permissions7 tagging

Amazon CloudWatch Network Synthetic Monitor

12
networkmonitor:*
2 read6 write1 list3 tagging

Amazon CloudWatch Observability Access Manager

15
oam:*
2 read5 write3 list2 permissions3 tagging

Amazon CloudWatch Observability Admin Service

40
observabilityadmin:*
10 read20 write7 list3 tagging

Amazon CloudWatch Synthetics

22
synthetics:*
6 read10 write3 list3 tagging

Amazon CodeCatalyst

30
codecatalyst:*
5 read14 write4 list4 permissions3 tagging

Amazon CodeGuru

1
codeguru:*
1 read

Amazon CodeGuru Profiler

23
codeguru-profiler:*
8 read5 write3 list3 permissions4 tagging

Amazon CodeGuru Reviewer

17
codeguru-reviewer:*
4 read5 write5 list3 tagging

Amazon CodeGuru Security

15
codeguru-security:*
5 read4 write3 list3 tagging

Amazon CodeWhisperer

18
codewhisperer:*
3 read6 write3 list3 permissions3 tagging

Amazon Cognito Identity

26
cognito-identity:*
12 read4 write3 list2 permissions5 tagging

Amazon Cognito Sync

19
cognito-sync:*
10 read6 write3 list

Amazon Cognito User Pools

118
cognito-idp:*
60 read44 write11 list3 tagging

Amazon Comprehend

85
comprehend:*
25 read37 write17 list3 permissions3 tagging

Amazon Comprehend Medical

25
comprehendmedical:*
10 read10 write5 list

Amazon Connect

362
connect:*
62 read205 write86 list2 permissions7 tagging

Amazon Connect Cases

41
cases:*
8 read21 write9 list3 tagging

Amazon Connect Customer Profiles

102
profile:*
32 read42 write25 list3 tagging

Amazon Connect Health

42
health-agent:*
14 read16 write7 list5 tagging

Amazon Connect Outbound Campaigns

38
connect-campaigns:*
8 read25 write2 list3 tagging

Amazon Connect Voice ID

31
voiceid:*
9 read13 write6 list3 tagging

Amazon Data Lifecycle Manager

8
dlm:*
1 read4 permissions3 tagging

Amazon DataZone

226
datazone:*
54 read106 write43 list15 permissions8 tagging

Amazon Detective

36
detective:*
9 read15 write9 list3 tagging

Amazon DevOps Guru

31
devops-guru:*
13 read8 write10 list

Amazon DocumentDB Elastic Clusters

19
docdb-elastic:*
4 read9 write3 list3 tagging

Amazon DynamoDB

78
dynamodb:*
33 read32 write7 list3 permissions3 tagging

Amazon DynamoDB Accelerator (DAX)

30
dax:*
13 read14 write3 tagging

Amazon EC2

780
ec2:*
284 read445 write6 list42 permissions3 tagging

Amazon EC2 Auto Scaling

68
autoscaling:*
28 read33 write4 permissions3 tagging

Amazon EC2 Image Builder

77
imagebuilder:*
14 read27 write21 list12 permissions3 tagging

Amazon EC2 Instance Connect

3
ec2-instance-connect:*
1 read2 write

Amazon ECS MCP Service

2
ecs-mcp:*
1 read1 write

Amazon EKS Auth

1
eks-auth:*
1 permissions

Amazon EKS MCP Server

3
eks-mcp:*
2 read1 write

Amazon Elastic Block Store

6
ebs:*
1 read3 write2 list

Amazon Elastic Container Registry

60
ecr:*
19 read24 write2 list11 permissions4 tagging

Amazon Elastic Container Registry Public

23
ecr-public:*
7 read9 write3 permissions4 tagging

Amazon Elastic Container Service

67
ecs:*
17 read37 write10 list3 tagging

Amazon Elastic File System

38
elasticfilesystem:*
13 read14 write5 permissions6 tagging

Amazon Elastic Kubernetes Service

68
eks:*
17 read31 write15 list2 permissions3 tagging

Amazon Elastic MapReduce

83
elasticmapreduce:*
20 read38 write15 list8 permissions2 tagging

Amazon Elastic Transcoder

17
elastictranscoder:*
3 read9 write4 list1 permissions

Amazon Elastic VMware Service

14
evs:*
2 read6 write3 list3 tagging

Amazon ElastiCache

77
elasticache:*
31 read42 write1 list3 tagging

Amazon EMR on EKS (EMR Containers)

25
emr-containers:*
6 read11 write5 list3 tagging

Amazon EMR Serverless

19
emr-serverless:*
6 read7 write3 list3 tagging

Amazon EventBridge

60
events:*
15 read28 write12 list2 permissions3 tagging

Amazon EventBridge Pipes

10
pipes:*
1 read5 write1 list3 tagging

Amazon EventBridge Scheduler

12
scheduler:*
2 read5 write2 list3 tagging

Amazon EventBridge Schemas

31
schemas:*
6 read14 write5 list3 permissions3 tagging

Amazon FinSpace

59
finspace:*
15 read30 write11 list3 tagging

Amazon FinSpace API

1
finspace-api:*
1 read

Amazon Forecast

70
forecast:*
20 read33 write14 list3 tagging

Amazon Fraud Detector

74
frauddetector:*
24 read46 write1 list3 tagging

Amazon FreeRTOS

20
freertos:*
8 read5 write7 list

Amazon FSx

56
fsx:*
14 read36 write3 permissions3 tagging

Amazon GameLift Servers

118
gamelift:*
42 read58 write13 list2 permissions3 tagging

Amazon GameLift Streams

24
gameliftstreams:*
3 read14 write4 list3 tagging

Amazon GroundTruth Labeling

16
groundtruthlabeling:*
4 read9 write3 list

Amazon GuardDuty

88
guardduty:*
27 read44 write14 list3 tagging

Amazon Honeycode

30
honeycode:*
5 read15 write7 list3 tagging

Amazon Inspector

37
inspector:*
13 read12 write8 list2 permissions2 tagging

Amazon Inspector2

75
inspector2:*
19 read36 write16 list1 permissions3 tagging

Amazon Inspector2 Telemetry Channel

4
inspector2-telemetry:*
1 read3 write

Amazon InspectorScan

1
inspector-scan:*
1 read

Amazon Interactive Video Service

71
ivs:*
15 read27 write15 list4 permissions10 tagging

Amazon Interactive Video Service Chat

17
ivschat:*
3 read9 write2 list3 tagging

Amazon Kendra

66
kendra:*
17 read34 write12 list3 tagging

Amazon Kendra Intelligent Ranking

9
kendra-ranking:*
2 read3 write1 list3 tagging

Amazon Keyspaces (for Apache Cassandra)

21
cassandra:*
9 read7 write1 list4 tagging

Amazon Kinesis Analytics

17
kinesisanalytics:*
3 read10 write1 list3 tagging

Amazon Kinesis Analytics V2

33
kinesisanalytics:*
6 read20 write4 list3 tagging

Amazon Kinesis Data Streams

40
kinesis:*
13 read15 write3 list3 permissions6 tagging

Amazon Kinesis Firehose

12
firehose:*
1 read7 write1 list3 tagging

Amazon Kinesis Video Streams

46
kinesisvideo:*
21 read15 write4 list6 tagging

Amazon Lex

47
lex:*
24 read20 write3 tagging

Amazon Lex V2

119
lex:*
26 read53 write29 list6 permissions5 tagging

Amazon Lightsail

161
lightsail:*
71 read88 write2 tagging

Amazon Location

60
geo:*
19 read26 write12 list3 tagging

Amazon Location Service Maps

2
geo-maps:*
2 read

Amazon Location Service Places

7
geo-places:*
5 read2 list

Amazon Location Service Routes

5
geo-routes:*
5 read

Amazon Lookout for Equipment

49
lookoutequipment:*
8 read24 write11 list3 permissions3 tagging

Amazon Lookout for Metrics

30
lookoutmetrics:*
12 read9 write6 list3 tagging

Amazon Lookout for Vision

25
lookoutvision:*
6 read11 write5 list3 tagging

Amazon Machine Learning

28
machinelearning:*
9 read16 write3 tagging

Amazon Macie

81
macie2:*
28 read35 write15 list3 tagging

Amazon Managed Blockchain

34
managedblockchain:*
8 read16 write7 list3 tagging

Amazon Managed Blockchain Query

9
managedblockchain-query:*
4 read5 list

Amazon Managed Grafana

25
grafana:*
3 read13 write4 list2 permissions3 tagging

Amazon Managed Service for Prometheus

61
aps:*
18 read27 write10 list3 permissions3 tagging

Amazon Managed Streaming for Apache Kafka

59
kafka:*
12 read28 write13 list3 permissions3 tagging

Amazon Managed Streaming for Kafka Connect

18
kafkaconnect:*
4 read7 write4 list3 tagging

Amazon Managed Workflows for Apache Airflow

12
airflow:*
1 read7 write1 list3 tagging

Amazon Mechanical Turk

39
mechanicalturk:*
7 read22 write9 list1 permissions

Amazon MemoryDB

47
memorydb:*
19 read23 write2 list3 tagging

Amazon Message Delivery Service

6
ec2messages:*
4 read2 write

Amazon Message Gateway Service

4
ssmmessages:*
2 read2 write

Amazon Mobile Analytics

3
mobileanalytics:*
2 read1 write

Amazon Monitron

18
monitron:*
2 read7 write3 list3 permissions3 tagging

Amazon MQ

26
mq:*
7 read12 write4 list3 tagging

Amazon Neptune

33
neptune-db:*
14 read14 write5 list

Amazon Neptune Analytics

38
neptune-graph:*
11 read18 write6 list3 tagging

Amazon Nimble Studio

51
nimble:*
13 read25 write10 list3 tagging

Amazon Nova Act

16
nova-act:*
2 read9 write5 list

Amazon One Enterprise

28
one:*
5 read15 write5 list3 tagging

Amazon OpenSearch

10
opensearch:*
5 read4 write1 list

Amazon OpenSearch Ingestion

23
osis:*
5 read8 write4 list3 permissions3 tagging

Amazon OpenSearch Serverless

49
aoss:*
9 read17 write7 list13 permissions3 tagging

Amazon OpenSearch Service

114
es:*
47 read45 write16 list3 permissions3 tagging

Amazon Personalize

83
personalize:*
24 read38 write18 list3 tagging

Amazon Pinpoint

123
mobiletargeting:*
52 read65 write3 list3 tagging

Amazon Pinpoint Email Service

42
ses:*
11 read23 write5 list3 tagging

Amazon Pinpoint SMS and Voice Service

8
sms-voice:*
1 read6 write1 list

Amazon Polly

9
polly:*
4 read3 write2 list

Amazon Q

37
q:*
10 read18 write4 list2 permissions3 tagging

Amazon Q Business

93
qbusiness:*
18 read48 write20 list4 permissions3 tagging

Amazon Q Business Q Apps

39
qapps:*
7 read23 write4 list2 permissions3 tagging

Amazon Q Developer

7
qdeveloper:*
1 read2 write4 tagging

Amazon Q in Connect

93
wisdom:*
22 read48 write20 list3 tagging

Amazon QLDB

35
qldb:*
21 read6 write4 list1 permissions3 tagging

Amazon QuickSight

271
quicksight:*
63 read108 write47 list49 permissions4 tagging

Amazon RDS

169
rds:*
62 read100 write4 permissions3 tagging

Amazon RDS Data API

6
rds-data:*
5 read1 write

Amazon RDS IAM Authentication

1
rds-db:*
1 read

Amazon Redshift

166
redshift:*
65 read86 write5 list7 permissions3 tagging

Amazon Redshift Data API

11
redshift-data:*
4 read2 write4 list1 tagging

Amazon Redshift Serverless

68
redshift-serverless:*
17 read30 write15 list3 permissions3 tagging

Amazon Rekognition

76
rekognition:*
26 read33 write12 list2 permissions3 tagging

Amazon Resource Group Tagging API

9
tag:*
3 read1 write5 tagging

Amazon RHEL Knowledgebase Portal

1
rhelkb:*
1 read

Amazon Route 53

71
route53:*
20 read21 write13 list14 permissions3 tagging

Amazon Route 53 Domains

34
route53domains:*
14 read14 write3 list3 tagging

Amazon Route 53 Profiles

18
route53profiles:*
3 read7 write3 list2 permissions3 tagging

Amazon Route 53 Recovery Cluster

4
route53-recovery-cluster:*
1 read2 write1 list

Amazon Route 53 Recovery Controls

28
route53-recovery-control-config:*
5 read12 write5 list3 permissions3 tagging

Amazon Route 53 Recovery Readiness

32
route53-recovery-readiness:*
9 read14 write6 list3 tagging

Amazon Route 53 Resolver

68
route53resolver:*
12 read32 write15 list6 permissions3 tagging

Amazon S3

168
s3:*
50 read54 write11 list35 permissions18 tagging

Amazon S3 Express

24
s3express:*
4 read9 write2 list6 permissions3 tagging

Amazon S3 Glacier

33
glacier:*
8 read12 write5 list5 permissions3 tagging

Amazon S3 Object Lambda

26
s3-object-lambda:*
7 read9 write4 list6 tagging

Amazon S3 on Outposts

48
s3-outposts:*
10 read14 write9 list6 permissions9 tagging

Amazon S3 Tables

53
s3tables:*
19 read22 write3 list6 permissions3 tagging

Amazon S3 Vectors

19
s3vectors:*
4 read6 write3 list3 permissions3 tagging

Amazon SageMaker

412
sagemaker:*
89 read216 write89 list10 permissions8 tagging

Amazon SageMaker data science assistant

1
sagemaker-data-science-assistant:*
1 write

Amazon SageMaker geospatial capabilities

19
sagemaker-geospatial:*
4 read8 write4 list3 tagging

Amazon SageMaker Unified Studio MCP

3
sagemaker-unified-studio-mcp:*
2 read1 write

Amazon SageMaker with MLflow

61
sagemaker-mlflow:*
22 read19 write8 list12 tagging

Amazon Security Lake

31
securitylake:*
4 read20 write4 list3 tagging

Amazon SES

71
ses:*
20 read41 write8 list2 permissions

Amazon Simple Email Service - Mail Manager

61
ses:*
15 read27 write12 list4 permissions3 tagging

Amazon Simple Email Service v2

111
ses:*
28 read58 write18 list4 permissions3 tagging

Amazon Simple Workflow Service

51
swf:*
31 read12 write5 list3 tagging

Amazon SimpleDB

10
sdb:*
3 read6 write1 list

Amazon SNS

41
sns:*
12 read14 write8 list4 permissions3 tagging

Amazon SQS

20
sqs:*
5 read7 write3 list2 permissions3 tagging

Amazon Textract

25
textract:*
11 read9 write2 list3 tagging

Amazon Timestream

37
timestream:*
15 read14 write5 list3 tagging

Amazon Timestream InfluxDB

19
timestream-influxdb:*
3 read9 write4 list3 tagging

Amazon Transcribe

51
transcribe:*
10 read29 write9 list3 tagging

Amazon Translate

19
translate:*
5 read7 write4 list3 tagging

Amazon Verified Permissions

27
verifiedpermissions:*
4 read4 write2 list14 permissions3 tagging

Amazon VPC Lattice

75
vpc-lattice:*
12 read39 write15 list6 permissions3 tagging

Amazon VPC Lattice Services

2
vpc-lattice-svcs:*
1 read1 write

Amazon WorkDocs

61
workdocs:*
23 read30 write1 list7 permissions

Amazon WorkLink

34
worklink:*
8 read15 write6 list2 permissions3 tagging

Amazon WorkMail

126
workmail:*
28 read60 write19 list16 permissions3 tagging

Amazon WorkMail Message Flow

2
workmailmessageflow:*
1 read1 write

Amazon WorkSpaces

98
workspaces:*
28 read60 write2 list5 permissions3 tagging

Amazon WorkSpaces Application Manager

1
wam:*
1 read

Amazon WorkSpaces Secure Browser

75
workspaces-web:*
14 read46 write12 list3 tagging

Amazon WorkSpaces Thin Client

18
thinclient:*
4 read7 write4 list3 tagging

AmazonMediaImport

1
mediaimport:*
1 write

Apache Kafka APIs for Amazon MSK clusters

19
kafka-cluster:*
16 read3 write

Application Discovery Arsenal

1
arsenal:*
1 write

AWS Account Management

16
account:*
6 read9 write1 list

AWS Action Recommendations

1
action-recommendations:*
1 list

AWS Activate

8
activate:*
6 read2 write

AWS Amplify

41
amplify:*
9 read21 write8 list3 tagging

AWS Amplify Admin

31
amplifybackend:*
8 read21 write2 list

AWS Amplify UI Builder

29
amplifyuibuilder:*
7 read15 write4 list3 tagging

AWS App Mesh

42
appmesh:*
8 read21 write7 list3 permissions3 tagging

AWS App Mesh Preview

39
appmesh-preview:*
8 read21 write7 list3 permissions

AWS App Runner

42
apprunner:*
10 read20 write9 list3 tagging

AWS App Studio

5
appstudio:*
2 read3 write

AWS App2Container

4
a2c:*
2 read2 write

AWS AppConfig

47
appconfig:*
12 read24 write8 list3 tagging

AWS AppFabric

26
appfabric:*
6 read13 write4 list3 tagging

AWS Application Auto Scaling

14
application-autoscaling:*
5 read4 write2 permissions3 tagging

AWS Application Discovery Service

29
discovery:*
9 read15 write2 list3 tagging

AWS Application Migration Service

134
mgn:*
33 read67 write24 list1 permissions9 tagging

AWS Application Transformation Service

14
application-transformation:*
6 read8 write

AWS AppSync

87
appsync:*
24 read44 write13 list3 permissions3 tagging

AWS Artifact

15
artifact:*
6 read3 write3 list3 tagging

AWS Audit Manager

62
auditmanager:*
19 read29 write11 list3 tagging

AWS Auto Scaling

6
autoscaling-plans:*
3 read3 write

AWS B2B Data Interchange

30
b2bi:*
9 read14 write4 list3 tagging

AWS Backup

118
backup:*
27 read52 write30 list6 permissions3 tagging

AWS Backup Gateway

27
backup-gateway:*
7 read14 write3 list3 tagging

AWS Backup Search

12
backup-search:*
2 read3 write4 list3 tagging

AWS Backup storage

15
backup-storage:*
8 read5 write2 list

AWS Batch

39
batch:*
11 read17 write5 list3 permissions3 tagging

AWS Billing

28
billing:*
12 read8 write2 list3 permissions3 tagging

AWS Billing and Cost Management Dashboards

9
bcm-dashboards:*
1 read3 write1 list1 permissions3 tagging

AWS Billing And Cost Management Data Exports

12
bcm-data-exports:*
3 read3 write3 list3 tagging

AWS Billing And Cost Management Pricing Calculator

36
bcm-pricing-calculator:*
4 read19 write10 list3 tagging

AWS Billing And Cost Management Recommended Actions

1
bcm-recommended-actions:*
1 list

AWS Billing Conductor

32
billingconductor:*
1 read18 write10 list3 tagging

AWS Billing Console

9
aws-portal:*
5 read4 write

AWS Budget Service

13
budgets:*
6 read4 write3 tagging

AWS BugBust

17
bugbust:*
4 read4 write6 list3 tagging

AWS Certificate Manager

16
acm:*
6 read6 write1 list3 tagging

AWS Chatbot

39
chatbot:*
12 read19 write5 list3 tagging

AWS Clean Rooms

92
cleanrooms:*
27 read42 write20 list3 tagging

AWS Clean Rooms ML

59
cleanrooms-ml:*
13 read24 write16 list3 permissions3 tagging

AWS Cloud Control API

8
cloudformation:*
2 read4 write2 list

AWS Cloud Map

33
servicediscovery:*
8 read15 write4 list3 permissions3 tagging

AWS Cloud9

29
cloud9:*
12 read13 write1 list3 tagging

AWS CloudFormation

94
cloudformation:*
40 read28 write22 list2 permissions2 tagging

AWS CloudHSM

18
cloudhsm:*
3 read9 write3 permissions3 tagging

AWS CloudShell

11
cloudshell:*
4 read7 write

AWS CloudTrail

66
cloudtrail:*
16 read32 write12 list3 permissions3 tagging

AWS CloudTrail Data

1
cloudtrail-data:*
1 write

AWS CloudWatch RUM

20
rum:*
3 read9 write2 list3 permissions3 tagging

AWS CodeArtifact

51
codeartifact:*
12 read19 write11 list6 permissions3 tagging

AWS CodeBuild

67
codebuild:*
15 read31 write18 list3 permissions

AWS CodeCommit

90
codecommit:*
45 read35 write7 list3 tagging

AWS CodeConnections

38
codeconnections:*
13 read16 write6 list3 tagging

AWS CodeDeploy

48
codedeploy:*
17 read17 write9 list5 tagging

AWS CodeDeploy secure host commands service

4
codedeploy-commands-secure:*
2 read2 write

AWS CodePipeline

44
codepipeline:*
10 read18 write8 list8 tagging

AWS CodeStar

22
codestar:*
3 read11 write4 list1 permissions3 tagging

AWS CodeStar Connections

38
codestar-connections:*
13 read16 write6 list3 tagging

AWS CodeStar Notifications

13
codestar-notifications:*
3 read4 write3 list3 tagging

AWS Compute Optimizer

28
compute-optimizer:*
17 read11 write

AWS Compute Optimizer Automation

23
aco-automation:*
4 read7 write9 list3 tagging

AWS Config

97
config:*
40 read38 write5 list2 permissions12 tagging

AWS Connector Service

3
awsconnector:*
2 read1 write

AWS Console Mobile App

2
consoleapp:*
1 read1 list

AWS Consolidated Billing

2
consolidatedbilling:*
1 list1 permissions

AWS Control Catalog

6
controlcatalog:*
1 read5 list

AWS Control Tower

65
controltower:*
24 read19 write19 list3 tagging

AWS Cost and Usage Report

12
cur:*
5 read4 write3 tagging

AWS Cost Explorer Service

59
ce:*
28 read19 write4 list8 tagging

AWS Cost Optimization Hub

8
cost-optimization-hub:*
2 read2 write4 list

AWS Customer Verification Service

5
customer-verification:*
2 read3 write

AWS Data Exchange

40
dataexchange:*
5 read19 write5 list11 tagging

AWS Data Pipeline

21
datapipeline:*
12 read6 write1 list2 tagging

AWS Database Migration Service

124
dms:*
47 read66 write8 list3 tagging

AWS DataSync

66
datasync:*
19 read38 write5 list4 tagging

AWS Deadline Cloud

115
deadline:*
22 read53 write32 list5 permissions3 tagging

AWS Device Farm

77
devicefarm:*
22 read29 write23 list3 tagging

AWS DevOps Agent Service

50
aidevops:*
13 read23 write12 list2 tagging

AWS Diagnostic tools

9
ts:*
3 read1 write2 list3 tagging

AWS Direct Connect

63
directconnect:*
22 read37 write1 list3 tagging

AWS Directory Service

91
ds:*
27 read50 write6 list5 permissions3 tagging

AWS Directory Service Data

17
ds-data:*
2 read9 write6 list

AWS Elastic Beanstalk

50
elasticbeanstalk:*
22 read19 write3 list2 permissions4 tagging

AWS Elastic Disaster Recovery

90
drs:*
30 read48 write2 list10 tagging

AWS Elastic Load Balancing

28
elasticloadbalancing:*
6 read14 write5 permissions3 tagging

AWS Elastic Load Balancing V2

57
elasticloadbalancing:*
20 read33 write1 permissions3 tagging

AWS Elemental Appliances and Software

14
elemental-appliances-software:*
8 read5 write1 list

AWS Elemental Appliances and Software Activation Service

13
elemental-activations:*
10 read3 write

AWS Elemental Inference

12
elemental-inference:*
2 read6 write1 list3 tagging

AWS Elemental MediaConnect

80
mediaconnect:*
20 read46 write10 list1 permissions3 tagging

AWS Elemental MediaConvert

32
mediaconvert:*
6 read14 write6 list3 permissions3 tagging

AWS Elemental MediaLive

125
medialive:*
28 read71 write23 list3 tagging

AWS Elemental MediaPackage

19
mediapackage:*
4 read9 write3 list3 tagging

AWS Elemental MediaPackage V2

34
mediapackagev2:*
7 read14 write4 list6 permissions3 tagging

AWS Elemental MediaPackage VOD

17
mediapackage-vod:*
4 read7 write3 list3 tagging

AWS Elemental MediaStore

26
mediastore:*
3 read6 write2 list12 permissions3 tagging

AWS Elemental MediaTailor

44
mediatailor:*
10 read21 write7 list3 permissions3 tagging

AWS Elemental Support Cases

17
elemental-support-cases:*
3 read9 write2 permissions3 tagging

AWS Elemental Support Content

1
elemental-support-content:*
1 read

AWS End User Messaging SMS and Voice V2

90
sms-voice:*
25 read56 write3 list3 permissions3 tagging

AWS End User Messaging Social

21
social-messaging:*
5 read10 write3 list3 tagging

AWS Entity Resolution

40
entityresolution:*
11 read15 write7 list4 permissions3 tagging

AWS Fault Injection Service

29
fis:*
10 read9 write7 list3 tagging

AWS Firewall Manager

42
fms:*
10 read15 write11 list3 permissions3 tagging

AWS Free Tier

7
freetier:*
5 read1 write1 list

AWS Global Accelerator

56
globalaccelerator:*
14 read27 write12 list3 tagging

AWS Glue

301
glue:*
117 read145 write26 list3 permissions10 tagging

AWS Glue DataBrew

44
databrew:*
7 read26 write8 list3 tagging

AWS Ground Station

35
groundstation:*
8 read15 write7 list5 tagging

AWS Health APIs and Notifications

14
health:*
11 read2 write1 tagging

AWS HealthImaging

28
medical-imaging:*
12 read6 write7 list3 tagging

AWS HealthLake

47
healthlake:*
25 read11 write8 list3 tagging

AWS HealthOmics

96
omics:*
23 read45 write22 list3 permissions3 tagging

AWS IAM Access Analyzer

35
access-analyzer:*
11 read9 write6 list6 permissions3 tagging

AWS IAM Identity Center

126
sso:*
23 read51 write21 list28 permissions3 tagging

AWS IAM Identity Center directory

57
sso-directory:*
14 read31 write12 list

AWS IAM Identity Center OIDC service

3
sso-oauth:*
1 read2 write

AWS Identity and Access Management (IAM)

187
iam:*
32 read56 write23 list52 permissions24 tagging

AWS Identity and Access Management Roles Anywhere

30
rolesanywhere:*
4 read19 write4 list3 tagging

AWS Identity Store

27
identitystore:*
9 read13 write5 list

AWS Identity Store Auth

3
identitystore-auth:*
1 read1 write1 list

AWS Identity Sync

13
identity-sync:*
3 read9 write1 list

AWS Import Export Disk Service

6
importexport:*
2 read3 write1 list

AWS Invoicing Service

22
invoicing:*
6 read9 write4 list3 tagging

AWS IoT

290
iot:*
70 read134 write64 list19 permissions3 tagging

AWS IoT Analytics

34
iotanalytics:*
7 read19 write5 list3 tagging

AWS IoT Core Device Advisor

14
iotdeviceadvisor:*
4 read5 write2 list3 tagging

AWS IoT Device Tester

5
iot-device-tester:*
4 read1 write

AWS IoT Events

39
iotevents:*
8 read20 write8 list3 tagging

AWS IoT Fleet Hub for Device Management

8
iotfleethub:*
1 read3 write1 list3 tagging

AWS IoT FleetWise

56
iotfleetwise:*
12 read28 write13 list3 tagging

AWS IoT Greengrass

93
greengrass:*
23 read41 write20 list6 permissions3 tagging

AWS IoT Greengrass V2

29
greengrass:*
7 read9 write7 list3 permissions3 tagging

AWS IoT Jobs DataPlane

4
iotjobsdata:*
2 read2 write

AWS IoT Managed Integrations

83
iotmanagedintegrations:*
22 read41 write17 list3 tagging

AWS IoT SiteWise

106
iotsitewise:*
30 read46 write23 list4 permissions3 tagging

AWS IoT TwinMaker

40
iottwinmaker:*
10 read18 write9 list3 tagging

AWS IoT Wireless

113
iotwireless:*
29 read65 write16 list3 tagging

AWS IQ

63
iq:*
28 read27 write8 list

AWS IQ Permissions

9
iq-permission:*
9 permissions

AWS Key Management Service

55
kms:*
24 read17 write4 list7 permissions3 tagging

AWS Lake Formation

61
lakeformation:*
16 read19 write5 list6 permissions15 tagging

AWS Lambda

88
lambda:*
21 read44 write14 list6 permissions3 tagging

AWS Launch Wizard

40
launchwizard:*
15 read11 write11 list3 tagging

AWS License Manager

62
license-manager:*
13 read20 write17 list9 permissions3 tagging

AWS License Manager Linux Subscriptions Manager

11
license-manager-linux-subscriptions:*
2 read3 write3 list3 tagging

AWS License Manager User Subscriptions

17
license-manager-user-subscriptions:*
9 write5 list3 tagging

AWS Mainframe Modernization Application Testing

24
apptest:*
4 read11 write6 list3 tagging

AWS Mainframe Modernization Service

37
m2:*
9 read14 write11 list3 tagging

AWS Marketplace

27
aws-marketplace:*
4 read7 write2 list14 tagging

AWS Marketplace Catalog

14
aws-marketplace:*
3 read2 write3 list3 permissions3 tagging

AWS Marketplace Commerce Analytics Service

2
marketplacecommerceanalytics:*
1 read1 write

AWS Marketplace Deployment Service

4
aws-marketplace:*
1 write3 tagging

AWS Marketplace Discovery

1
aws-marketplace:*
1 list

AWS Marketplace Entitlement Service

1
aws-marketplace:*
1 read

AWS Marketplace Image Building Service

3
aws-marketplace:*
1 read1 write1 list

AWS Marketplace Management Portal

13
aws-marketplace-management:*
9 read4 write

AWS Marketplace Metering Service

4
aws-marketplace:*
2 read2 write

AWS Marketplace Private Marketplace

5
aws-marketplace:*
1 read3 write1 list

AWS Marketplace Procurement Systems Integration

2
aws-marketplace:*
1 read1 write

AWS Marketplace Reporting

1
aws-marketplace:*
1 read

AWS Marketplace Seller Reporting

1
aws-marketplace:*
1 read

AWS Marketplace Vendor Insights

24
vendor-insights:*
7 read9 write5 list3 tagging

AWS MCP Server

3
aws-mcp:*
2 read1 write

AWS Microservice Extractor for .NET

1
serviceextract:*
1 read

AWS Migration Acceleration Program Credits

3
mapcredits:*
3 list

AWS Migration Hub

46
mgh:*
9 read19 write10 list5 permissions3 tagging

AWS Migration Hub Orchestrator

34
migrationhub-orchestrator:*
8 read16 write7 list3 tagging

AWS Migration Hub Refactor Spaces

24
refactor-spaces:*
4 read9 write5 list3 permissions3 tagging

AWS Migration Hub Strategy Recommendations

31
migrationhub-strategy:*
12 read12 write7 list

AWS MWAA Serverless

15
airflow-serverless:*
3 read5 write4 list3 tagging

AWS Network Firewall

79
network-firewall:*
14 read42 write11 list9 permissions3 tagging

AWS Network Manager

95
networkmanager:*
27 read47 write7 list11 permissions3 tagging

AWS Network Manager Chat

7
networkmanager-chat:*
1 read4 write2 list

AWS OpsWorks

74
opsworks:*
22 read46 write3 permissions3 tagging

AWS OpsWorks Configuration Management

19
opsworks-cm:*
5 read11 write3 tagging

AWS Organizations

63
organizations:*
11 read18 write16 list15 permissions3 tagging

AWS Outposts

36
outposts:*
11 read14 write8 list3 tagging

AWS Panorama

36
panorama:*
13 read11 write9 list3 tagging

AWS Parallel Computing Service

20
pcs:*
4 read10 write3 list3 tagging

AWS Partner Central

110
partnercentral:*
29 read54 write24 list3 tagging

AWS Partner central account management

5
partnercentral-account-management:*
2 read3 write

AWS Payment Cryptography

40
payment-cryptography:*
21 read14 write2 list3 tagging

AWS Payments

24
payments:*
7 read7 write7 list3 tagging

AWS Performance Insights

13
pi:*
5 read2 write3 list3 tagging

AWS Price List

5
pricing:*
4 read1 list

AWS PricingPlanManager Service

8
pricingplanmanager:*
1 read6 write1 list

AWS Private CA Connector for Active Directory

25
pca-connector-ad:*
4 read9 write4 list5 permissions3 tagging

AWS Private CA Connector for SCEP

12
pca-connector-scep:*
3 read4 write2 list3 tagging

AWS Private Certificate Authority

23
acm-pca:*
6 read7 write1 list6 permissions3 tagging

AWS PrivateLink

1
vpce:*
1 read

AWS Proton

111
proton:*
25 read56 write24 list3 permissions3 tagging

AWS Purchase Orders Console

14
purchase-orders:*
3 read6 write2 list3 tagging

AWS Recycle Bin

10
rbin:*
3 read3 write1 list3 tagging

AWS rePost Private

19
repostspace:*
2 read8 write2 list4 permissions3 tagging

AWS Resilience Hub

63
resiliencehub:*
11 read25 write20 list4 permissions3 tagging

AWS Resource Access Manager (RAM)

34
ram:*
4 read8 write4 list16 permissions2 tagging

AWS Resource Explorer

37
resource-explorer-2:*
9 read13 write9 list3 permissions3 tagging

AWS Resource Groups

29
resource-groups:*
6 read8 write5 list3 permissions7 tagging

AWS RoboMaker

59
robomaker:*
14 read30 write12 list3 tagging

AWS Route53 Global Resolver

48
route53globalresolver:*
9 read27 write9 list3 tagging

AWS RTB Fabric

27
rtbfabric:*
5 read16 write3 list3 tagging

AWS Savings Plans

10
savingsplans:*
5 read2 write3 tagging

AWS Secrets Manager

23
secretsmanager:*
5 read9 write2 list4 permissions3 tagging

AWS Security Agent

85
securityagent:*
25 read37 write18 list5 tagging

AWS Security Hub

114
securityhub:*
37 read50 write11 list11 permissions5 tagging

AWS Security Incident Response

24
security-ir:*
5 read11 write5 list3 tagging

AWS Security Token Service

16
sts:*
9 read2 write3 permissions2 tagging

AWS Server Migration Service

37
sms:*
14 read22 write1 list

AWS Serverless Application Repository

15
serverlessrepo:*
3 read6 write4 list2 permissions

AWS Service - Oracle Database@AWS

51
odb:*
10 read21 write11 list6 permissions3 tagging

AWS Service Catalog

117
servicecatalog:*
29 read50 write24 list3 permissions11 tagging

AWS Service for managing AWS Console user experience capabilities.

3
uxc:*
1 read2 write

AWS service providing managed private networks

26
private-networks:*
11 read7 write5 list3 tagging

AWS Shield

39
shield:*
10 read19 write5 list2 permissions3 tagging

AWS Shield network security director

8
network-security-director:*
2 read1 write5 list

AWS Signer

19
signer:*
5 read5 write3 list3 permissions3 tagging

AWS Signin

4
signin:*
1 read2 write1 list

AWS SimSpace Weaver

16
simspaceweaver:*
2 read9 write2 list3 tagging

AWS Snow Device Management

13
snow-device-management:*
4 read2 write4 list3 tagging

AWS Snowball

27
snowball:*
9 read11 write7 list

AWS SQL Workbench

79
sqlworkbench:*
23 read42 write10 list4 tagging

AWS Step Functions

39
states:*
12 read18 write6 list3 tagging

AWS Storage Gateway

97
storagegateway:*
30 read51 write11 list2 permissions3 tagging

AWS Supply Chain

36
scn:*
8 read16 write7 list2 permissions3 tagging

AWS Support

34
support:*
21 read10 write3 list

AWS Support App in Slack

13
supportapp:*
4 read7 write2 list

AWS Support Console

13
support-console:*
10 read3 write

AWS Support Plans

5
supportplans:*
2 read2 write1 list

AWS Sustainability

1
sustainability:*
1 read

AWS Systems Manager

156
ssm:*
66 read64 write18 list5 permissions3 tagging

AWS Systems Manager for SAP

30
ssm-sap:*
6 read9 write9 list3 permissions3 tagging

AWS Systems Manager GUI Connect

7
ssm-guiconnect:*
2 read4 write1 list

AWS Systems Manager Incident Manager

31
ssm-incidents:*
6 read14 write6 list2 permissions3 tagging

AWS Systems Manager Incident Manager Contacts

40
ssm-contacts:*
8 read16 write11 list2 permissions3 tagging

AWS Systems Manager Quick Setup

14
ssm-quicksetup:*
3 read5 write3 list3 tagging

AWS Tax Settings

23
tax:*
8 read11 write4 list

AWS Telco Network Builder

33
tnb:*
12 read13 write5 list3 tagging

AWS Tiros

5
tiros:*
4 read1 write

AWS Transfer Family

71
transfer:*
14 read40 write12 list1 permissions4 tagging

AWS Transform

20
transform:*
2 read9 write2 list7 tagging

AWS Transform custom

22
transform-custom:*
5 read10 write4 list3 tagging

AWS Trusted Advisor

52
trustedadvisor:*
26 read14 write12 list

AWS User Notifications

41
notifications:*
8 read19 write11 list3 tagging

AWS User Notifications Contacts

9
notifications-contacts:*
2 read3 write1 list3 tagging

AWS User Subscriptions

7
user-subscriptions:*
4 write3 list

AWS Verified Access

1
verified-access:*
1 read

AWS WAF

77
waf:*
17 read39 write15 list3 permissions3 tagging

AWS WAF Regional

81
waf-regional:*
18 read41 write16 list3 permissions3 tagging

AWS WAF V2

57
wafv2:*
17 read23 write11 list3 permissions3 tagging

AWS Well-Architected Tool

73
wellarchitected:*
18 read34 write18 list3 tagging

AWS Wickr

46
wickr:*
10 read25 write8 list3 tagging

AWS WorkSpaces Managed Instances

13
workspaces-instances:*
1 read6 write3 list3 tagging

AWS X-Ray

43
xray:*
21 read15 write2 list2 permissions3 tagging

Database Query Metadata Service

13
dbqms:*
4 read9 write

Multi-party approval

25
mpa:*
3 read9 write5 list5 permissions3 tagging

Network Flow Monitor

26
networkflowmonitor:*
8 read13 write2 list3 tagging

Service Quotas

26
servicequotas:*
8 read9 write6 list3 tagging

Tag Editor

3
resource-explorer:*
2 list1 tagging