@cloud-copilot/iam-data
Version:
1,576 lines • 48.5 kB
JSON
{
"acceptpredictions": {
"name": "AcceptPredictions",
"description": "Grants permission to accept prediction",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"acceptsubscriptionrequest": {
"name": "AcceptSubscriptionRequest",
"description": "Grants permission to approve a subscription request for a Data Asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"addentityowner": {
"name": "AddEntityOwner",
"description": "Grants permission to add an owner to an entity like domain unit",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"addpolicygrant": {
"name": "AddPolicyGrant",
"description": "Grants permission to add a policy grant",
"accessLevel": "Permissions management",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"associateenvironmentrole": {
"name": "AssociateEnvironmentRole",
"description": "Grants permission to associate a role in a default service blueprint environment",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"batchdeletelinkedtypes": {
"name": "BatchDeleteLinkedTypes",
"isPermissionOnly": true,
"description": "Grants permission to remove linked type items from an Amazon DataZone Domain",
"accessLevel": "Write",
"resourceTypes": [
{
"name": "domain",
"required": true,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [],
"dependentActions": []
},
"batchputlinkedtypes": {
"name": "BatchPutLinkedTypes",
"isPermissionOnly": true,
"description": "Grants permission to put linked type items to an Amazon DataZone Domain",
"accessLevel": "Write",
"resourceTypes": [
{
"name": "domain",
"required": true,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [],
"dependentActions": []
},
"cancelmetadatagenerationrun": {
"name": "CancelMetadataGenerationRun",
"description": "Grants permission to cancel metadata generation run",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"cancelsubscription": {
"name": "CancelSubscription",
"description": "Grants permission to revoke or unsubscribe an approved subscription to Data Asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createasset": {
"name": "CreateAsset",
"description": "Grants permission to create asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createassetfilter": {
"name": "CreateAssetFilter",
"description": "Grants permission to create asset filter",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createassetrevision": {
"name": "CreateAssetRevision",
"description": "Grants permission to create new revision of an asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createassettype": {
"name": "CreateAssetType",
"description": "Grants permission to create an asset type",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createconnection": {
"name": "CreateConnection",
"description": "Grants permission to create connections",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createdataproduct": {
"name": "CreateDataProduct",
"description": "Grants permission to create data product",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createdataproductrevision": {
"name": "CreateDataProductRevision",
"description": "Grants permission to create data product revision",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createdatasource": {
"name": "CreateDataSource",
"description": "Grants permission to create a new DataSource",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createdomain": {
"name": "CreateDomain",
"description": "Grants permission to provision a domain which is a top level entity that contains other Amazon DataZone resources",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [
"aws:RequestTag/${TagKey}",
"aws:TagKeys"
],
"dependentActions": []
},
"createdomainunit": {
"name": "CreateDomainUnit",
"description": "Grants permission to create a domain unit",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createenvironment": {
"name": "CreateEnvironment",
"description": "Grants permission to create a collection of configurated resources used to publish and subscribe to data",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createenvironmentaction": {
"name": "CreateEnvironmentAction",
"description": "Grants permission to create an environment action in a default service blueprint environment",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createenvironmentblueprint": {
"name": "CreateEnvironmentBlueprint",
"isPermissionOnly": true,
"description": "Grants permission to create a custom Environment Blueprint that allow user to add Environments to their Project",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createenvironmentprofile": {
"name": "CreateEnvironmentProfile",
"description": "Grants permission to create a template from a Blueprint that can be used to create a Environment",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createformtype": {
"name": "CreateFormType",
"description": "Grants permission to create a form type or a new revision of it",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createglossary": {
"name": "CreateGlossary",
"description": "Grants permission to create a business glossary",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createglossaryterm": {
"name": "CreateGlossaryTerm",
"description": "Grants permission to create a glossary term",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"creategroupprofile": {
"name": "CreateGroupProfile",
"description": "Grants permission to create a DataZone group profile for an IAM Identity Center group",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createlistingchangeset": {
"name": "CreateListingChangeSet",
"description": "Grants permission to create listing change set",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createproject": {
"name": "CreateProject",
"description": "Grants permission to create a Project to enable your team to publish and subscribe to data",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createprojectmembership": {
"name": "CreateProjectMembership",
"description": "Grants permission to add a user to a Project",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createprojectprofile": {
"name": "CreateProjectProfile",
"description": "Grants permission to create a project profile",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createrule": {
"name": "CreateRule",
"description": "Grants permission to create rule",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createsubscriptiongrant": {
"name": "CreateSubscriptionGrant",
"description": "Grants permission to create a grant for an approved subscription on a subscription target",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createsubscriptionrequest": {
"name": "CreateSubscriptionRequest",
"description": "Grants permission to create a subscription request for a Data Asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createsubscriptiontarget": {
"name": "CreateSubscriptionTarget",
"description": "Grants permission to create a subscription target for a Environment in the project",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"createuserprofile": {
"name": "CreateUserProfile",
"description": "Grants permission to create a user profile for an existing user in the customers IAM Identity Center",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteasset": {
"name": "DeleteAsset",
"description": "Grants permission to delete an asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteassetfilter": {
"name": "DeleteAssetFilter",
"description": "Grants permission to delete asset filter",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteassettype": {
"name": "DeleteAssetType",
"description": "Grants permission to delete an asset type",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteconnection": {
"name": "DeleteConnection",
"description": "Grants permission to delete connections",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletedataproduct": {
"name": "DeleteDataProduct",
"description": "Grants permission to delete data product",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletedatasource": {
"name": "DeleteDataSource",
"description": "Grants permission to update existing DataSource",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletedomain": {
"name": "DeleteDomain",
"description": "Grants permission to delete a provisioned domain",
"accessLevel": "Write",
"resourceTypes": [
{
"name": "domain",
"required": true,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [],
"dependentActions": []
},
"deletedomainsharingpolicy": {
"name": "DeleteDomainSharingPolicy",
"isPermissionOnly": true,
"description": "Grants permission to delete a resource policy for a DataZone Domain",
"accessLevel": "Permissions management",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletedomainunit": {
"name": "DeleteDomainUnit",
"description": "Grants permission to delete an existing domain unit",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteenvironment": {
"name": "DeleteEnvironment",
"description": "Grants permission to Delete Environment",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteenvironmentaction": {
"name": "DeleteEnvironmentAction",
"description": "Grants permission to delete an environment action in a default service blueprint environment",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteenvironmentblueprint": {
"name": "DeleteEnvironmentBlueprint",
"isPermissionOnly": true,
"description": "Grants permission to delete Environment Blueprint",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteenvironmentblueprintconfiguration": {
"name": "DeleteEnvironmentBlueprintConfiguration",
"description": "Grants permission to delete environment blueprint configuration",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteenvironmentprofile": {
"name": "DeleteEnvironmentProfile",
"description": "Grants permission to delete Environment Profile",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteformtype": {
"name": "DeleteFormType",
"description": "Grants permission to delete a form type",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteglossary": {
"name": "DeleteGlossary",
"description": "Grants permission to delete a business glossary",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteglossaryterm": {
"name": "DeleteGlossaryTerm",
"description": "Grants permission to delete a glossary term",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletelisting": {
"name": "DeleteListing",
"description": "Grants permission to delete listing",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteproject": {
"name": "DeleteProject",
"description": "Grants permission to delete a Project that enables your team to publish and subscribe to data",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteprojectmembership": {
"name": "DeleteProjectMembership",
"description": "Grants permission to remove a user from a project",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleteprojectprofile": {
"name": "DeleteProjectProfile",
"description": "Grants permission to delete a project profile",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deleterule": {
"name": "DeleteRule",
"description": "Grants permission to delete rule",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletesubscriptiongrant": {
"name": "DeleteSubscriptionGrant",
"description": "Grants permission to delete a subscription grant from a subscription target",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletesubscriptionrequest": {
"name": "DeleteSubscriptionRequest",
"description": "Grants permission to delete a pending subscription request for a Data Asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletesubscriptiontarget": {
"name": "DeleteSubscriptionTarget",
"description": "Grants permission to delete a subscription target from a Environment in the project",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"deletetimeseriesdatapoints": {
"name": "DeleteTimeSeriesDataPoints",
"description": "Grants permission to delete existing TimeSeriesDataPoints",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"disassociateenvironmentrole": {
"name": "DisassociateEnvironmentRole",
"description": "Grants permission to disassociate a role in a default service blueprint environment",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getasset": {
"name": "GetAsset",
"description": "Grants permission to retrieve an asset",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getassetfilter": {
"name": "GetAssetFilter",
"description": "Grants permission to get asset filter",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getassettype": {
"name": "GetAssetType",
"description": "Grants permission to get an asset type",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getconnection": {
"name": "GetConnection",
"description": "Grants permission to get connections",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getdataproduct": {
"name": "GetDataProduct",
"description": "Grants permission to get data product",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getdatasource": {
"name": "GetDataSource",
"description": "Grants permission to Get a existing DataSource in Amazon DataZone using its identifier",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getdatasourcerun": {
"name": "GetDataSourceRun",
"description": "Grants permission to get DataSource run job in Amazon DataZone using it's identifier",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getdomain": {
"name": "GetDomain",
"description": "Grants permission to retrieve information about a domain",
"accessLevel": "Read",
"resourceTypes": [
{
"name": "domain",
"required": true,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [],
"dependentActions": []
},
"getdomainexecutionrolecredentials": {
"name": "GetDomainExecutionRoleCredentials",
"isPermissionOnly": true,
"description": "Grants permission to use features that require access to domain execution role credentials",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getdomainsharingpolicy": {
"name": "GetDomainSharingPolicy",
"isPermissionOnly": true,
"description": "Grants permission to retrieve a resource policy for a DataZone Domain",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getdomainunit": {
"name": "GetDomainUnit",
"description": "Grants permission to get an existing domain unit",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getenvironment": {
"name": "GetEnvironment",
"description": "Grants permission to get Environment details",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getenvironmentaction": {
"name": "GetEnvironmentAction",
"description": "Grants permission to get an environment action in a default service blueprint environment",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getenvironmentactionlink": {
"name": "GetEnvironmentActionLink",
"isPermissionOnly": true,
"description": "Grants permission to get environment action link",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getenvironmentblueprint": {
"name": "GetEnvironmentBlueprint",
"description": "Grants permission to get Environment Blueprint details",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getenvironmentblueprintconfiguration": {
"name": "GetEnvironmentBlueprintConfiguration",
"description": "Grants permission to get environment blueprint configuration",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getenvironmentcredentials": {
"name": "GetEnvironmentCredentials",
"description": "Grants permission to get short term credentials that assume the Environment user role",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getenvironmentprofile": {
"name": "GetEnvironmentProfile",
"description": "Grants permission to get Environment Profile details",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getformtype": {
"name": "GetFormType",
"description": "Grants permission to get a form type",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getglossary": {
"name": "GetGlossary",
"description": "Grants permission to get a business glossary",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getglossaryterm": {
"name": "GetGlossaryTerm",
"description": "Grants permission to get a glossary term",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getgroupprofile": {
"name": "GetGroupProfile",
"description": "Grants permission to retrieve an existing DataZone group profile",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getiamportalloginurl": {
"name": "GetIamPortalLoginUrl",
"description": "Grants permission to an IAM principal to log into the DataZone Portal",
"accessLevel": "Permissions management",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getjobrun": {
"name": "GetJobRun",
"description": "Grants permission to get job runs",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getlineageevent": {
"name": "GetLineageEvent",
"description": "Grants permission to get lineage events",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getlineagenode": {
"name": "GetLineageNode",
"description": "Grants permission to get the lineage node",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getlisting": {
"name": "GetListing",
"description": "Grants permission to get listing",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getmetadatagenerationrun": {
"name": "GetMetadataGenerationRun",
"description": "Grants permission to get metadata generation run",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getproject": {
"name": "GetProject",
"description": "Grants permission to get Project details",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getprojectprofile": {
"name": "GetProjectProfile",
"description": "Grants permission to get project profile details",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getrule": {
"name": "GetRule",
"description": "Grants permission to get rule",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getsubscription": {
"name": "GetSubscription",
"description": "Grants permission to retrieve a subscription",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getsubscriptioneligibility": {
"name": "GetSubscriptionEligibility",
"isPermissionOnly": true,
"description": "Grants permission to get subscription eligibilty",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getsubscriptiongrant": {
"name": "GetSubscriptionGrant",
"description": "Grants permission to retireve a subscription grant",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getsubscriptionrequestdetails": {
"name": "GetSubscriptionRequestDetails",
"description": "Grants permission to reject a subscription request for a Data Asset",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getsubscriptiontarget": {
"name": "GetSubscriptionTarget",
"description": "Grants permission to retireve details of subscription target",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"gettimeseriesdatapoint": {
"name": "GetTimeSeriesDataPoint",
"description": "Grants permission to get an existing TimeSeriesDataPoints in Amazon DataZone using its identifier",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getupdateeligibility": {
"name": "GetUpdateEligibility",
"description": "Grants permission to get update eligibility status for project constructs",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"getuserprofile": {
"name": "GetUserProfile",
"description": "Grants permission to retrieve a user profile for an existing user in the DataZone Domain",
"accessLevel": "Read",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listaccountenvironments": {
"name": "ListAccountEnvironments",
"description": "Grants permission to list Environments across all domains in an AWS Account",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listassetfilters": {
"name": "ListAssetFilters",
"description": "Grants permission to list asset filters",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listassetrevisions": {
"name": "ListAssetRevisions",
"description": "Grants permission to list revisions of an asset",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listconnections": {
"name": "ListConnections",
"description": "Grants permission to list connections",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listdataproductrevisions": {
"name": "ListDataProductRevisions",
"description": "Grants permission to list data product revisions",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listdatasourcerunactivities": {
"name": "ListDataSourceRunActivities",
"description": "Grants permission to list DataSource runs job's activities on Asset",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listdatasourceruns": {
"name": "ListDataSourceRuns",
"description": "Grants permission to list DataSource runs job",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listdatasources": {
"name": "ListDataSources",
"description": "Grants permission to list existing DataSources",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listdomainunitsforparent": {
"name": "ListDomainUnitsForParent",
"description": "Grants permission to list child domain units for a given parent domain unit",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listdomains": {
"name": "ListDomains",
"description": "Grants permission to retrieve all domains",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listentityowners": {
"name": "ListEntityOwners",
"description": "Grants permission to list owners of an entity like domain unit",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listenvironmentactions": {
"name": "ListEnvironmentActions",
"description": "Grants permission to list environment actions in a default service blueprint environment",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listenvironmentblueprintconfigurationsummaries": {
"name": "ListEnvironmentBlueprintConfigurationSummaries",
"isPermissionOnly": true,
"description": "Grants permission to list environment blueprint configuration summaries",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listenvironmentblueprintconfigurations": {
"name": "ListEnvironmentBlueprintConfigurations",
"description": "Grants permission to list environment blueprint configurations",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listenvironmentblueprints": {
"name": "ListEnvironmentBlueprints",
"description": "Grants permission to list Domain for Environment Blueprints",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listenvironmentprofiles": {
"name": "ListEnvironmentProfiles",
"description": "Grants permission to list Domain for Environment Profiles",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listenvironments": {
"name": "ListEnvironments",
"description": "Grants permission to show Environments in the Domain",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listgroupsforuser": {
"name": "ListGroupsForUser",
"description": "Grants permission to list all the DataZone group profiles that the DataZone user profile is a member of",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listjobruns": {
"name": "ListJobRuns",
"description": "Grants permission to list job runs",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listlineageevents": {
"name": "ListLineageEvents",
"description": "Grants permission to list lineage events",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listlineagenodehistory": {
"name": "ListLineageNodeHistory",
"description": "Grants permission to list historical versions of lineage node",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listlinkedtypes": {
"name": "ListLinkedTypes",
"isPermissionOnly": true,
"description": "Grants permission to list linked type items linked to an Amazon DataZone Domain",
"accessLevel": "List",
"resourceTypes": [
{
"name": "domain",
"required": true,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [],
"dependentActions": []
},
"listmetadatagenerationruns": {
"name": "ListMetadataGenerationRuns",
"description": "Grants permission to list metadata generation runs",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listnotifications": {
"name": "ListNotifications",
"description": "Grants permission to list notifications and events for a datazone user",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listpolicygrants": {
"name": "ListPolicyGrants",
"description": "Grants permission to list policy grants",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listprojectmemberships": {
"name": "ListProjectMemberships",
"description": "Grants permission to list Project Members",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listprojectprofiles": {
"name": "ListProjectProfiles",
"description": "Grants permission to list project profiles",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listprojects": {
"name": "ListProjects",
"description": "Grants permission to list Projects",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listrules": {
"name": "ListRules",
"description": "Grants permission to list rules",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listsubscriptiongrants": {
"name": "ListSubscriptionGrants",
"description": "Grants permission to List subscription grants for a subscribed principal",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listsubscriptionrequests": {
"name": "ListSubscriptionRequests",
"description": "Grants permission to list subscription requests",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listsubscriptiontargets": {
"name": "ListSubscriptionTargets",
"description": "Grants permission to list subscription targets",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listsubscriptions": {
"name": "ListSubscriptions",
"description": "Grants permission to list subscriptions",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listtagsforresource": {
"name": "ListTagsForResource",
"description": "Grants permission to retrieve all tags associated with a resource",
"accessLevel": "Read",
"resourceTypes": [
{
"name": "domain",
"required": false,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [],
"dependentActions": []
},
"listtimeseriesdatapoints": {
"name": "ListTimeSeriesDataPoints",
"description": "Grants permission to list existing TimeSeriesDataPoints",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"listwarehousemetadata": {
"name": "ListWarehouseMetadata",
"isPermissionOnly": true,
"description": "Grants permission to list available Manager Secrets",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"postlineageevent": {
"name": "PostLineageEvent",
"description": "Grants permission to post lineage events",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"posttimeseriesdatapoints": {
"name": "PostTimeSeriesDataPoints",
"description": "Grants permission to post a new TimeSeriesDataPoints",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"provisiondomain": {
"name": "ProvisionDomain",
"isPermissionOnly": true,
"description": "Grants permission to provision domain with default project setup",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"putdomainsharingpolicy": {
"name": "PutDomainSharingPolicy",
"isPermissionOnly": true,
"description": "Grants permission to add a resource policy for a DataZone Domain",
"accessLevel": "Permissions management",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"putenvironmentblueprintconfiguration": {
"name": "PutEnvironmentBlueprintConfiguration",
"description": "Grants permission to put environment blueprint configuration",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"refreshtoken": {
"name": "RefreshToken",
"isPermissionOnly": true,
"description": "Grants permission to refresh token",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"rejectpredictions": {
"name": "RejectPredictions",
"description": "Grants permission to reject prediction",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"rejectsubscriptionrequest": {
"name": "RejectSubscriptionRequest",
"description": "Grants permission to reject a subscription request for a Data Asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"removeentityowner": {
"name": "RemoveEntityOwner",
"description": "Grants permission to remove an existing owner of an entity like domain unit",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"removepolicygrant": {
"name": "RemovePolicyGrant",
"description": "Grants permission to remove a policy grant",
"accessLevel": "Permissions management",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"revokesubscription": {
"name": "RevokeSubscription",
"description": "Grants permission to revoke a subscription",
"accessLevel": "Permissions management",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"search": {
"name": "Search",
"description": "Grants permission to search datazone entities",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"searchgroupprofiles": {
"name": "SearchGroupProfiles",
"description": "Grants permission to search DataZone group profiles and IAM Identity Center groups",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"searchlistings": {
"name": "SearchListings",
"description": "Grants permission to search listings",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"searchrules": {
"name": "SearchRules",
"isPermissionOnly": true,
"description": "Grants permission to search rules",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"searchtypes": {
"name": "SearchTypes",
"description": "Grants permission to search types such asset types and form types in a domain",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"searchuserprofiles": {
"name": "SearchUserProfiles",
"description": "Grants permission to search DataZone user profiles, IAM Identity Center users, and DataZone IAM principal profiles",
"accessLevel": "List",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"ssologin": {
"name": "SsoLogin",
"isPermissionOnly": true,
"description": "Grants permission to login using SSO",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"ssologout": {
"name": "SsoLogout",
"isPermissionOnly": true,
"description": "Grants permission to logout as SSO user",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"startdatasourcerun": {
"name": "StartDataSourceRun",
"description": "Grants permission to start a DataSource run job",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"startmetadatagenerationrun": {
"name": "StartMetadataGenerationRun",
"description": "Grants permission to start metadata generation run",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"stopmetadatagenerationrun": {
"name": "StopMetadataGenerationRun",
"description": "Grants permission to stop metadata generation run",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"tagresource": {
"name": "TagResource",
"description": "Grants permission to add or update tags to a resource",
"accessLevel": "Tagging",
"resourceTypes": [
{
"name": "domain",
"required": true,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [
"aws:RequestTag/${TagKey}",
"aws:TagKeys"
],
"dependentActions": []
},
"untagresource": {
"name": "UntagResource",
"description": "Grants permission to remove tags associated with a resource",
"accessLevel": "Tagging",
"resourceTypes": [
{
"name": "domain",
"required": true,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [
"aws:TagKeys"
],
"dependentActions": []
},
"updateassetfilter": {
"name": "UpdateAssetFilter",
"description": "Grants permission to update asset filter",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateconnection": {
"name": "UpdateConnection",
"description": "Grants permission to update connections",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updatedatasource": {
"name": "UpdateDataSource",
"description": "Grants permission to update existing DataSource",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updatedatasourcerunactivities": {
"name": "UpdateDataSourceRunActivities",
"isPermissionOnly": true,
"description": "Grants permission to update data source run activities",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updatedomain": {
"name": "UpdateDomain",
"description": "Grants permission to update information for a domain",
"accessLevel": "Write",
"resourceTypes": [
{
"name": "domain",
"required": true,
"conditionKeys": [],
"dependentActions": []
}
],
"conditionKeys": [],
"dependentActions": []
},
"updatedomainunit": {
"name": "UpdateDomainUnit",
"description": "Grants permission to update an existing domain unit",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateenvironment": {
"name": "UpdateEnvironment",
"description": "Grants permission to update Environment settings",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateenvironmentaction": {
"name": "UpdateEnvironmentAction",
"description": "Grants permission to update an environment action in a default service blueprint environment",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateenvironmentblueprint": {
"name": "UpdateEnvironmentBlueprint",
"isPermissionOnly": true,
"description": "Grants permission to update Environment Blueprint settings",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateenvironmentconfiguration": {
"name": "UpdateEnvironmentConfiguration",
"isPermissionOnly": true,
"description": "Grants permission to update environment configuration",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateenvironmentdeploymentstatus": {
"name": "UpdateEnvironmentDeploymentStatus",
"isPermissionOnly": true,
"description": "Grants permission to update status of the Environment deployment",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateenvironmentprofile": {
"name": "UpdateEnvironmentProfile",
"description": "Grants permission to update EnvironmentProfile configuration",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateglossary": {
"name": "UpdateGlossary",
"description": "Grants permission to update a business glossary",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateglossaryterm": {
"name": "UpdateGlossaryTerm",
"description": "Grants permission to update a glossary term",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updategroupprofile": {
"name": "UpdateGroupProfile",
"description": "Grants permission to update a DataZone group profile",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateproject": {
"name": "UpdateProject",
"description": "Grants permission to update a Project that enables your team to publish and subscribe to data",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateprojectprofile": {
"name": "UpdateProjectProfile",
"description": "Grants permission to update a project profile",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updaterule": {
"name": "UpdateRule",
"description": "Grants permission to update rule",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updatesubscriptiongrantstatus": {
"name": "UpdateSubscriptionGrantStatus",
"description": "Grants permission to update a subscription grant status for custom grants",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updatesubscriptionrequest": {
"name": "UpdateSubscriptionRequest",
"description": "Grants permission to update business reason for subscription request for a Data Asset",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updatesubscriptiontarget": {
"name": "UpdateSubscriptionTarget",
"description": "Grants permission to update a subscription target",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"updateuserprofile": {
"name": "UpdateUserProfile",
"description": "Grants permission to update a DataZone user profile",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
},
"validatepassrole": {
"name": "ValidatePassRole",
"isPermissionOnly": true,
"description": "Grants permission to validate pass role",
"accessLevel": "Write",
"resourceTypes": [],
"conditionKeys": [],
"dependentActions": []
}
}