UNPKG

@cloud-copilot/iam-data

Version:
1,576 lines 48.5 kB
{ "acceptpredictions": { "name": "AcceptPredictions", "description": "Grants permission to accept prediction", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "acceptsubscriptionrequest": { "name": "AcceptSubscriptionRequest", "description": "Grants permission to approve a subscription request for a Data Asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "addentityowner": { "name": "AddEntityOwner", "description": "Grants permission to add an owner to an entity like domain unit", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "addpolicygrant": { "name": "AddPolicyGrant", "description": "Grants permission to add a policy grant", "accessLevel": "Permissions management", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "associateenvironmentrole": { "name": "AssociateEnvironmentRole", "description": "Grants permission to associate a role in a default service blueprint environment", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "batchdeletelinkedtypes": { "name": "BatchDeleteLinkedTypes", "isPermissionOnly": true, "description": "Grants permission to remove linked type items from an Amazon DataZone Domain", "accessLevel": "Write", "resourceTypes": [ { "name": "domain", "required": true, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [], "dependentActions": [] }, "batchputlinkedtypes": { "name": "BatchPutLinkedTypes", "isPermissionOnly": true, "description": "Grants permission to put linked type items to an Amazon DataZone Domain", "accessLevel": "Write", "resourceTypes": [ { "name": "domain", "required": true, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [], "dependentActions": [] }, "cancelmetadatagenerationrun": { "name": "CancelMetadataGenerationRun", "description": "Grants permission to cancel metadata generation run", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "cancelsubscription": { "name": "CancelSubscription", "description": "Grants permission to revoke or unsubscribe an approved subscription to Data Asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createasset": { "name": "CreateAsset", "description": "Grants permission to create asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createassetfilter": { "name": "CreateAssetFilter", "description": "Grants permission to create asset filter", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createassetrevision": { "name": "CreateAssetRevision", "description": "Grants permission to create new revision of an asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createassettype": { "name": "CreateAssetType", "description": "Grants permission to create an asset type", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createconnection": { "name": "CreateConnection", "description": "Grants permission to create connections", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createdataproduct": { "name": "CreateDataProduct", "description": "Grants permission to create data product", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createdataproductrevision": { "name": "CreateDataProductRevision", "description": "Grants permission to create data product revision", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createdatasource": { "name": "CreateDataSource", "description": "Grants permission to create a new DataSource", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createdomain": { "name": "CreateDomain", "description": "Grants permission to provision a domain which is a top level entity that contains other Amazon DataZone resources", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [ "aws:RequestTag/${TagKey}", "aws:TagKeys" ], "dependentActions": [] }, "createdomainunit": { "name": "CreateDomainUnit", "description": "Grants permission to create a domain unit", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createenvironment": { "name": "CreateEnvironment", "description": "Grants permission to create a collection of configurated resources used to publish and subscribe to data", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createenvironmentaction": { "name": "CreateEnvironmentAction", "description": "Grants permission to create an environment action in a default service blueprint environment", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createenvironmentblueprint": { "name": "CreateEnvironmentBlueprint", "isPermissionOnly": true, "description": "Grants permission to create a custom Environment Blueprint that allow user to add Environments to their Project", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createenvironmentprofile": { "name": "CreateEnvironmentProfile", "description": "Grants permission to create a template from a Blueprint that can be used to create a Environment", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createformtype": { "name": "CreateFormType", "description": "Grants permission to create a form type or a new revision of it", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createglossary": { "name": "CreateGlossary", "description": "Grants permission to create a business glossary", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createglossaryterm": { "name": "CreateGlossaryTerm", "description": "Grants permission to create a glossary term", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "creategroupprofile": { "name": "CreateGroupProfile", "description": "Grants permission to create a DataZone group profile for an IAM Identity Center group", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createlistingchangeset": { "name": "CreateListingChangeSet", "description": "Grants permission to create listing change set", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createproject": { "name": "CreateProject", "description": "Grants permission to create a Project to enable your team to publish and subscribe to data", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createprojectmembership": { "name": "CreateProjectMembership", "description": "Grants permission to add a user to a Project", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createprojectprofile": { "name": "CreateProjectProfile", "description": "Grants permission to create a project profile", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createrule": { "name": "CreateRule", "description": "Grants permission to create rule", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createsubscriptiongrant": { "name": "CreateSubscriptionGrant", "description": "Grants permission to create a grant for an approved subscription on a subscription target", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createsubscriptionrequest": { "name": "CreateSubscriptionRequest", "description": "Grants permission to create a subscription request for a Data Asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createsubscriptiontarget": { "name": "CreateSubscriptionTarget", "description": "Grants permission to create a subscription target for a Environment in the project", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "createuserprofile": { "name": "CreateUserProfile", "description": "Grants permission to create a user profile for an existing user in the customers IAM Identity Center", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteasset": { "name": "DeleteAsset", "description": "Grants permission to delete an asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteassetfilter": { "name": "DeleteAssetFilter", "description": "Grants permission to delete asset filter", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteassettype": { "name": "DeleteAssetType", "description": "Grants permission to delete an asset type", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteconnection": { "name": "DeleteConnection", "description": "Grants permission to delete connections", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletedataproduct": { "name": "DeleteDataProduct", "description": "Grants permission to delete data product", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletedatasource": { "name": "DeleteDataSource", "description": "Grants permission to update existing DataSource", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletedomain": { "name": "DeleteDomain", "description": "Grants permission to delete a provisioned domain", "accessLevel": "Write", "resourceTypes": [ { "name": "domain", "required": true, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [], "dependentActions": [] }, "deletedomainsharingpolicy": { "name": "DeleteDomainSharingPolicy", "isPermissionOnly": true, "description": "Grants permission to delete a resource policy for a DataZone Domain", "accessLevel": "Permissions management", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletedomainunit": { "name": "DeleteDomainUnit", "description": "Grants permission to delete an existing domain unit", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteenvironment": { "name": "DeleteEnvironment", "description": "Grants permission to Delete Environment", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteenvironmentaction": { "name": "DeleteEnvironmentAction", "description": "Grants permission to delete an environment action in a default service blueprint environment", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteenvironmentblueprint": { "name": "DeleteEnvironmentBlueprint", "isPermissionOnly": true, "description": "Grants permission to delete Environment Blueprint", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteenvironmentblueprintconfiguration": { "name": "DeleteEnvironmentBlueprintConfiguration", "description": "Grants permission to delete environment blueprint configuration", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteenvironmentprofile": { "name": "DeleteEnvironmentProfile", "description": "Grants permission to delete Environment Profile", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteformtype": { "name": "DeleteFormType", "description": "Grants permission to delete a form type", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteglossary": { "name": "DeleteGlossary", "description": "Grants permission to delete a business glossary", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteglossaryterm": { "name": "DeleteGlossaryTerm", "description": "Grants permission to delete a glossary term", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletelisting": { "name": "DeleteListing", "description": "Grants permission to delete listing", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteproject": { "name": "DeleteProject", "description": "Grants permission to delete a Project that enables your team to publish and subscribe to data", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteprojectmembership": { "name": "DeleteProjectMembership", "description": "Grants permission to remove a user from a project", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleteprojectprofile": { "name": "DeleteProjectProfile", "description": "Grants permission to delete a project profile", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deleterule": { "name": "DeleteRule", "description": "Grants permission to delete rule", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletesubscriptiongrant": { "name": "DeleteSubscriptionGrant", "description": "Grants permission to delete a subscription grant from a subscription target", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletesubscriptionrequest": { "name": "DeleteSubscriptionRequest", "description": "Grants permission to delete a pending subscription request for a Data Asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletesubscriptiontarget": { "name": "DeleteSubscriptionTarget", "description": "Grants permission to delete a subscription target from a Environment in the project", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "deletetimeseriesdatapoints": { "name": "DeleteTimeSeriesDataPoints", "description": "Grants permission to delete existing TimeSeriesDataPoints", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "disassociateenvironmentrole": { "name": "DisassociateEnvironmentRole", "description": "Grants permission to disassociate a role in a default service blueprint environment", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getasset": { "name": "GetAsset", "description": "Grants permission to retrieve an asset", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getassetfilter": { "name": "GetAssetFilter", "description": "Grants permission to get asset filter", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getassettype": { "name": "GetAssetType", "description": "Grants permission to get an asset type", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getconnection": { "name": "GetConnection", "description": "Grants permission to get connections", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getdataproduct": { "name": "GetDataProduct", "description": "Grants permission to get data product", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getdatasource": { "name": "GetDataSource", "description": "Grants permission to Get a existing DataSource in Amazon DataZone using its identifier", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getdatasourcerun": { "name": "GetDataSourceRun", "description": "Grants permission to get DataSource run job in Amazon DataZone using it's identifier", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getdomain": { "name": "GetDomain", "description": "Grants permission to retrieve information about a domain", "accessLevel": "Read", "resourceTypes": [ { "name": "domain", "required": true, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [], "dependentActions": [] }, "getdomainexecutionrolecredentials": { "name": "GetDomainExecutionRoleCredentials", "isPermissionOnly": true, "description": "Grants permission to use features that require access to domain execution role credentials", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getdomainsharingpolicy": { "name": "GetDomainSharingPolicy", "isPermissionOnly": true, "description": "Grants permission to retrieve a resource policy for a DataZone Domain", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getdomainunit": { "name": "GetDomainUnit", "description": "Grants permission to get an existing domain unit", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getenvironment": { "name": "GetEnvironment", "description": "Grants permission to get Environment details", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getenvironmentaction": { "name": "GetEnvironmentAction", "description": "Grants permission to get an environment action in a default service blueprint environment", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getenvironmentactionlink": { "name": "GetEnvironmentActionLink", "isPermissionOnly": true, "description": "Grants permission to get environment action link", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getenvironmentblueprint": { "name": "GetEnvironmentBlueprint", "description": "Grants permission to get Environment Blueprint details", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getenvironmentblueprintconfiguration": { "name": "GetEnvironmentBlueprintConfiguration", "description": "Grants permission to get environment blueprint configuration", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getenvironmentcredentials": { "name": "GetEnvironmentCredentials", "description": "Grants permission to get short term credentials that assume the Environment user role", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getenvironmentprofile": { "name": "GetEnvironmentProfile", "description": "Grants permission to get Environment Profile details", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getformtype": { "name": "GetFormType", "description": "Grants permission to get a form type", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getglossary": { "name": "GetGlossary", "description": "Grants permission to get a business glossary", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getglossaryterm": { "name": "GetGlossaryTerm", "description": "Grants permission to get a glossary term", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getgroupprofile": { "name": "GetGroupProfile", "description": "Grants permission to retrieve an existing DataZone group profile", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getiamportalloginurl": { "name": "GetIamPortalLoginUrl", "description": "Grants permission to an IAM principal to log into the DataZone Portal", "accessLevel": "Permissions management", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getjobrun": { "name": "GetJobRun", "description": "Grants permission to get job runs", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getlineageevent": { "name": "GetLineageEvent", "description": "Grants permission to get lineage events", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getlineagenode": { "name": "GetLineageNode", "description": "Grants permission to get the lineage node", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getlisting": { "name": "GetListing", "description": "Grants permission to get listing", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getmetadatagenerationrun": { "name": "GetMetadataGenerationRun", "description": "Grants permission to get metadata generation run", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getproject": { "name": "GetProject", "description": "Grants permission to get Project details", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getprojectprofile": { "name": "GetProjectProfile", "description": "Grants permission to get project profile details", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getrule": { "name": "GetRule", "description": "Grants permission to get rule", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getsubscription": { "name": "GetSubscription", "description": "Grants permission to retrieve a subscription", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getsubscriptioneligibility": { "name": "GetSubscriptionEligibility", "isPermissionOnly": true, "description": "Grants permission to get subscription eligibilty", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getsubscriptiongrant": { "name": "GetSubscriptionGrant", "description": "Grants permission to retireve a subscription grant", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getsubscriptionrequestdetails": { "name": "GetSubscriptionRequestDetails", "description": "Grants permission to reject a subscription request for a Data Asset", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getsubscriptiontarget": { "name": "GetSubscriptionTarget", "description": "Grants permission to retireve details of subscription target", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "gettimeseriesdatapoint": { "name": "GetTimeSeriesDataPoint", "description": "Grants permission to get an existing TimeSeriesDataPoints in Amazon DataZone using its identifier", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getupdateeligibility": { "name": "GetUpdateEligibility", "description": "Grants permission to get update eligibility status for project constructs", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "getuserprofile": { "name": "GetUserProfile", "description": "Grants permission to retrieve a user profile for an existing user in the DataZone Domain", "accessLevel": "Read", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listaccountenvironments": { "name": "ListAccountEnvironments", "description": "Grants permission to list Environments across all domains in an AWS Account", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listassetfilters": { "name": "ListAssetFilters", "description": "Grants permission to list asset filters", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listassetrevisions": { "name": "ListAssetRevisions", "description": "Grants permission to list revisions of an asset", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listconnections": { "name": "ListConnections", "description": "Grants permission to list connections", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listdataproductrevisions": { "name": "ListDataProductRevisions", "description": "Grants permission to list data product revisions", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listdatasourcerunactivities": { "name": "ListDataSourceRunActivities", "description": "Grants permission to list DataSource runs job's activities on Asset", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listdatasourceruns": { "name": "ListDataSourceRuns", "description": "Grants permission to list DataSource runs job", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listdatasources": { "name": "ListDataSources", "description": "Grants permission to list existing DataSources", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listdomainunitsforparent": { "name": "ListDomainUnitsForParent", "description": "Grants permission to list child domain units for a given parent domain unit", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listdomains": { "name": "ListDomains", "description": "Grants permission to retrieve all domains", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listentityowners": { "name": "ListEntityOwners", "description": "Grants permission to list owners of an entity like domain unit", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listenvironmentactions": { "name": "ListEnvironmentActions", "description": "Grants permission to list environment actions in a default service blueprint environment", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listenvironmentblueprintconfigurationsummaries": { "name": "ListEnvironmentBlueprintConfigurationSummaries", "isPermissionOnly": true, "description": "Grants permission to list environment blueprint configuration summaries", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listenvironmentblueprintconfigurations": { "name": "ListEnvironmentBlueprintConfigurations", "description": "Grants permission to list environment blueprint configurations", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listenvironmentblueprints": { "name": "ListEnvironmentBlueprints", "description": "Grants permission to list Domain for Environment Blueprints", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listenvironmentprofiles": { "name": "ListEnvironmentProfiles", "description": "Grants permission to list Domain for Environment Profiles", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listenvironments": { "name": "ListEnvironments", "description": "Grants permission to show Environments in the Domain", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listgroupsforuser": { "name": "ListGroupsForUser", "description": "Grants permission to list all the DataZone group profiles that the DataZone user profile is a member of", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listjobruns": { "name": "ListJobRuns", "description": "Grants permission to list job runs", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listlineageevents": { "name": "ListLineageEvents", "description": "Grants permission to list lineage events", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listlineagenodehistory": { "name": "ListLineageNodeHistory", "description": "Grants permission to list historical versions of lineage node", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listlinkedtypes": { "name": "ListLinkedTypes", "isPermissionOnly": true, "description": "Grants permission to list linked type items linked to an Amazon DataZone Domain", "accessLevel": "List", "resourceTypes": [ { "name": "domain", "required": true, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [], "dependentActions": [] }, "listmetadatagenerationruns": { "name": "ListMetadataGenerationRuns", "description": "Grants permission to list metadata generation runs", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listnotifications": { "name": "ListNotifications", "description": "Grants permission to list notifications and events for a datazone user", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listpolicygrants": { "name": "ListPolicyGrants", "description": "Grants permission to list policy grants", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listprojectmemberships": { "name": "ListProjectMemberships", "description": "Grants permission to list Project Members", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listprojectprofiles": { "name": "ListProjectProfiles", "description": "Grants permission to list project profiles", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listprojects": { "name": "ListProjects", "description": "Grants permission to list Projects", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listrules": { "name": "ListRules", "description": "Grants permission to list rules", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listsubscriptiongrants": { "name": "ListSubscriptionGrants", "description": "Grants permission to List subscription grants for a subscribed principal", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listsubscriptionrequests": { "name": "ListSubscriptionRequests", "description": "Grants permission to list subscription requests", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listsubscriptiontargets": { "name": "ListSubscriptionTargets", "description": "Grants permission to list subscription targets", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listsubscriptions": { "name": "ListSubscriptions", "description": "Grants permission to list subscriptions", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listtagsforresource": { "name": "ListTagsForResource", "description": "Grants permission to retrieve all tags associated with a resource", "accessLevel": "Read", "resourceTypes": [ { "name": "domain", "required": false, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [], "dependentActions": [] }, "listtimeseriesdatapoints": { "name": "ListTimeSeriesDataPoints", "description": "Grants permission to list existing TimeSeriesDataPoints", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "listwarehousemetadata": { "name": "ListWarehouseMetadata", "isPermissionOnly": true, "description": "Grants permission to list available Manager Secrets", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "postlineageevent": { "name": "PostLineageEvent", "description": "Grants permission to post lineage events", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "posttimeseriesdatapoints": { "name": "PostTimeSeriesDataPoints", "description": "Grants permission to post a new TimeSeriesDataPoints", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "provisiondomain": { "name": "ProvisionDomain", "isPermissionOnly": true, "description": "Grants permission to provision domain with default project setup", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "putdomainsharingpolicy": { "name": "PutDomainSharingPolicy", "isPermissionOnly": true, "description": "Grants permission to add a resource policy for a DataZone Domain", "accessLevel": "Permissions management", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "putenvironmentblueprintconfiguration": { "name": "PutEnvironmentBlueprintConfiguration", "description": "Grants permission to put environment blueprint configuration", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "refreshtoken": { "name": "RefreshToken", "isPermissionOnly": true, "description": "Grants permission to refresh token", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "rejectpredictions": { "name": "RejectPredictions", "description": "Grants permission to reject prediction", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "rejectsubscriptionrequest": { "name": "RejectSubscriptionRequest", "description": "Grants permission to reject a subscription request for a Data Asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "removeentityowner": { "name": "RemoveEntityOwner", "description": "Grants permission to remove an existing owner of an entity like domain unit", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "removepolicygrant": { "name": "RemovePolicyGrant", "description": "Grants permission to remove a policy grant", "accessLevel": "Permissions management", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "revokesubscription": { "name": "RevokeSubscription", "description": "Grants permission to revoke a subscription", "accessLevel": "Permissions management", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "search": { "name": "Search", "description": "Grants permission to search datazone entities", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "searchgroupprofiles": { "name": "SearchGroupProfiles", "description": "Grants permission to search DataZone group profiles and IAM Identity Center groups", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "searchlistings": { "name": "SearchListings", "description": "Grants permission to search listings", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "searchrules": { "name": "SearchRules", "isPermissionOnly": true, "description": "Grants permission to search rules", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "searchtypes": { "name": "SearchTypes", "description": "Grants permission to search types such asset types and form types in a domain", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "searchuserprofiles": { "name": "SearchUserProfiles", "description": "Grants permission to search DataZone user profiles, IAM Identity Center users, and DataZone IAM principal profiles", "accessLevel": "List", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "ssologin": { "name": "SsoLogin", "isPermissionOnly": true, "description": "Grants permission to login using SSO", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "ssologout": { "name": "SsoLogout", "isPermissionOnly": true, "description": "Grants permission to logout as SSO user", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "startdatasourcerun": { "name": "StartDataSourceRun", "description": "Grants permission to start a DataSource run job", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "startmetadatagenerationrun": { "name": "StartMetadataGenerationRun", "description": "Grants permission to start metadata generation run", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "stopmetadatagenerationrun": { "name": "StopMetadataGenerationRun", "description": "Grants permission to stop metadata generation run", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "tagresource": { "name": "TagResource", "description": "Grants permission to add or update tags to a resource", "accessLevel": "Tagging", "resourceTypes": [ { "name": "domain", "required": true, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [ "aws:RequestTag/${TagKey}", "aws:TagKeys" ], "dependentActions": [] }, "untagresource": { "name": "UntagResource", "description": "Grants permission to remove tags associated with a resource", "accessLevel": "Tagging", "resourceTypes": [ { "name": "domain", "required": true, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [ "aws:TagKeys" ], "dependentActions": [] }, "updateassetfilter": { "name": "UpdateAssetFilter", "description": "Grants permission to update asset filter", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateconnection": { "name": "UpdateConnection", "description": "Grants permission to update connections", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updatedatasource": { "name": "UpdateDataSource", "description": "Grants permission to update existing DataSource", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updatedatasourcerunactivities": { "name": "UpdateDataSourceRunActivities", "isPermissionOnly": true, "description": "Grants permission to update data source run activities", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updatedomain": { "name": "UpdateDomain", "description": "Grants permission to update information for a domain", "accessLevel": "Write", "resourceTypes": [ { "name": "domain", "required": true, "conditionKeys": [], "dependentActions": [] } ], "conditionKeys": [], "dependentActions": [] }, "updatedomainunit": { "name": "UpdateDomainUnit", "description": "Grants permission to update an existing domain unit", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateenvironment": { "name": "UpdateEnvironment", "description": "Grants permission to update Environment settings", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateenvironmentaction": { "name": "UpdateEnvironmentAction", "description": "Grants permission to update an environment action in a default service blueprint environment", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateenvironmentblueprint": { "name": "UpdateEnvironmentBlueprint", "isPermissionOnly": true, "description": "Grants permission to update Environment Blueprint settings", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateenvironmentconfiguration": { "name": "UpdateEnvironmentConfiguration", "isPermissionOnly": true, "description": "Grants permission to update environment configuration", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateenvironmentdeploymentstatus": { "name": "UpdateEnvironmentDeploymentStatus", "isPermissionOnly": true, "description": "Grants permission to update status of the Environment deployment", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateenvironmentprofile": { "name": "UpdateEnvironmentProfile", "description": "Grants permission to update EnvironmentProfile configuration", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateglossary": { "name": "UpdateGlossary", "description": "Grants permission to update a business glossary", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateglossaryterm": { "name": "UpdateGlossaryTerm", "description": "Grants permission to update a glossary term", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updategroupprofile": { "name": "UpdateGroupProfile", "description": "Grants permission to update a DataZone group profile", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateproject": { "name": "UpdateProject", "description": "Grants permission to update a Project that enables your team to publish and subscribe to data", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateprojectprofile": { "name": "UpdateProjectProfile", "description": "Grants permission to update a project profile", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updaterule": { "name": "UpdateRule", "description": "Grants permission to update rule", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updatesubscriptiongrantstatus": { "name": "UpdateSubscriptionGrantStatus", "description": "Grants permission to update a subscription grant status for custom grants", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updatesubscriptionrequest": { "name": "UpdateSubscriptionRequest", "description": "Grants permission to update business reason for subscription request for a Data Asset", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updatesubscriptiontarget": { "name": "UpdateSubscriptionTarget", "description": "Grants permission to update a subscription target", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "updateuserprofile": { "name": "UpdateUserProfile", "description": "Grants permission to update a DataZone user profile", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] }, "validatepassrole": { "name": "ValidatePassRole", "isPermissionOnly": true, "description": "Grants permission to validate pass role", "accessLevel": "Write", "resourceTypes": [], "conditionKeys": [], "dependentActions": [] } }