UNPKG

iam-floyd

Version:

AWS IAM policy statement generator with fluent interface

1,612 lines 174 kB
import { AccessLevelList } from '../../shared/access-level'; import { PolicyStatement, Operator } from '../../shared'; /** * Statement provider for service [connect](https://docs.aws.amazon.com/service-authorization/latest/reference/list_amazonconnect.html). * * @param sid [SID](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements_sid.html) of the statement */ export declare class Connect extends PolicyStatement { servicePrefix: string; /** * Statement provider for service [connect](https://docs.aws.amazon.com/service-authorization/latest/reference/list_amazonconnect.html). * * @param sid [SID](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements_sid.html) of the statement */ constructor(sid?: string); /** * Grants permission to activate an evaluation form in the specified Amazon Connect instance. After the evaluation form is activated, it is available to start new evaluations based on the form * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_ActivateEvaluationForm.html */ toActivateEvaluationForm(): this; /** * Grants permission to federate into an Amazon Connect instance (Log in for emergency access functionality in the Amazon Connect console) * * Access Level: Write * * Dependent actions: * - connect:DescribeInstance * - connect:ListInstances * - ds:DescribeDirectories * * https://docs.aws.amazon.com/connect/latest/APIReference/API_GetFederationToken.html */ toAdminGetEmergencyAccessToken(): this; /** * Grants permission to grant access and to associate a dataset with the specified AWS account * * Access Level: Write * * Possible conditions: * - .ifInstanceId() */ toAssociateAnalyticsDataSet(): this; /** * Grants permission to associate approved origin for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toAssociateApprovedOrigin(): this; /** * Grants permission to associate a Lex bot for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * Dependent actions: * - iam:AttachRolePolicy * - iam:CreateServiceLinkedRole * - iam:PutRolePolicy * - lex:CreateResourcePolicy * - lex:DescribeBotAlias * - lex:GetBot * - lex:UpdateResourcePolicy * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toAssociateBot(): this; /** * Grants permission to associate a Customer Profiles domain for an existing Amazon Connect instance * * Access Level: Write * * Dependent actions: * - iam:AttachRolePolicy * - iam:CreateServiceLinkedRole * - iam:PutRolePolicy * - profile:GetDomain * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toAssociateCustomerProfilesDomain(): this; /** * Grants permission to default vocabulary for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() */ toAssociateDefaultVocabulary(): this; /** * Grants permission to associate a resource with a flow in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_AssociateFlow.html */ toAssociateFlow(): this; /** * Grants permission to associate instance storage for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifStorageResourceType() * - .ifInstanceId() * * Dependent actions: * - ds:DescribeDirectories * - firehose:DescribeDeliveryStream * - iam:AttachRolePolicy * - iam:CreateServiceLinkedRole * - iam:PutRolePolicy * - kinesis:DescribeStream * - kms:CreateGrant * - kms:DescribeKey * - s3:GetBucketAcl * - s3:GetBucketLocation * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toAssociateInstanceStorageConfig(): this; /** * Grants permission to associate a Lambda function for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * Dependent actions: * - lambda:AddPermission * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toAssociateLambdaFunction(): this; /** * Grants permission to associate a Lex bot for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * Dependent actions: * - iam:AttachRolePolicy * - iam:CreateServiceLinkedRole * - iam:PutRolePolicy * - lex:GetBot * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toAssociateLexBot(): this; /** * Grants permission to associate contact flow resources to phone number resources in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_AssociatePhoneNumberContactFlow.html */ toAssociatePhoneNumberContactFlow(): this; /** * Grants permission to associate quick connects with a queue in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_AssociateQueueQuickConnects.html */ toAssociateQueueQuickConnects(): this; /** * Grants permission to associate queues with a routing profile in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_AssociateRoutingProfileQueues.html */ toAssociateRoutingProfileQueues(): this; /** * Grants permission to associate a security key for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toAssociateSecurityKey(): this; /** * Grants permission to associate a user to a traffic distribution group in the specified Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * - .ifAwsResourceTag() * - .ifSearchTag() * * Dependent actions: * - connect:DescribeUser * - connect:SearchUsers * * https://docs.aws.amazon.com/connect/latest/APIReference/API_AssociateTrafficDistributionGroupUser.html */ toAssociateTrafficDistributionGroupUser(): this; /** * Grants permission to associate user proficiencies to a user in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_AssociateUserProficiencies.html */ toAssociateUserProficiencies(): this; /** * Grants permission to grant access and to associate the datasets with the specified AWS account * * Access Level: Write * * Possible conditions: * - .ifInstanceId() */ toBatchAssociateAnalyticsDataSet(): this; /** * Grants permission to revoke access and to disassociate the datasets with the specified AWS account * * Access Level: Write * * Possible conditions: * - .ifInstanceId() */ toBatchDisassociateAnalyticsDataSet(): this; /** * Grants permission to get metadata for multiple attached files from an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_BatchGetAttachedFileMetadata.html */ toBatchGetAttachedFileMetadata(): this; /** * Grants permission to get summary information about the flow associations for the specified Amazon Connect instance * * Access Level: List * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_BatchGetFlowAssociation.html */ toBatchGetFlowAssociation(): this; /** * Grants permission to put contacts in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_BatchPutContact.html */ toBatchPutContact(): this; /** * Grants permission to claim phone number resources in an Amazon Connect instance or traffic distribution group * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_ClaimPhoneNumber.html */ toClaimPhoneNumber(): this; /** * Grants permission to complete an attached file upload in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CompleteAttachedFileUpload.html */ toCompleteAttachedFileUpload(): this; /** * Grants permission to create agent status in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateAgentStatus.html */ toCreateAgentStatus(): this; /** * Grants permission to create authentication profile resources in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateAuthenticationProfile.html */ toCreateAuthenticationProfile(): this; /** * Grants permission to create a new contact using the Amazon Connect API * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * - .ifContactInitiationMethod() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateContact.html */ toCreateContact(): this; /** * Grants permission to create a contact flow in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * - .ifFlowType() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateContactFlow.html */ toCreateContactFlow(): this; /** * Grants permission to create a contact flow module in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateContactFlowModule.html */ toCreateContactFlowModule(): this; /** * Grants permission to create a version a flow in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * - .ifFlowType() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateContactFlowVersion.html */ toCreateContactFlowVersion(): this; /** * Grants permission to create an email address resource in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateEmailAddress.html */ toCreateEmailAddress(): this; /** * Grants permission to create an evaluation form in the specified Amazon Connect instance. The form can be used to define questions related to agent performance, and create sections to organize such questions. Question and section identifiers cannot be duplicated within the same evaluation form * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateEvaluationForm.html */ toCreateEvaluationForm(): this; /** * Grants permission to create hours of operation in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateHoursOfOperation.html */ toCreateHoursOfOperation(): this; /** * Grants permission to create an hours of operation override in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateHoursOfOperationOverride.html */ toCreateHoursOfOperationOverride(): this; /** * Grants permission to create a new Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * * Dependent actions: * - ds:AuthorizeApplication * - ds:CheckAlias * - ds:CreateAlias * - ds:CreateDirectory * - ds:CreateIdentityPoolDirectory * - ds:DeleteDirectory * - ds:DescribeDirectories * - ds:UnauthorizeApplication * - iam:AttachRolePolicy * - iam:CreateServiceLinkedRole * - iam:PutRolePolicy * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toCreateInstance(): this; /** * Grants permission to create an integration association with an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * - .ifAwsRequestTag() * - .ifAwsTagKeys() * * Dependent actions: * - app-integrations:CreateApplicationAssociation * - app-integrations:CreateEventIntegrationAssociation * - app-integrations:GetApplication * - cases:GetDomain * - chime:AssociateVoiceConnectorConnect * - chime:DisassociateVoiceConnectorConnect * - chime:TagResource * - chime:UntagResource * - connect:DescribeInstance * - ds:DescribeDirectories * - events:PutRule * - events:PutTargets * - iam:AttachRolePolicy * - iam:CreateServiceLinkedRole * - iam:PutRolePolicy * - mobiletargeting:GetApp * - voiceid:DescribeDomain * - wisdom:GetAssistant * - wisdom:GetKnowledgeBase * - wisdom:TagResource * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateIntegrationAssociation.html */ toCreateIntegrationAssociation(): this; /** * Grants permission to add a participant to an ongoing contact * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateParticipant.html */ toCreateParticipant(): this; /** * Grants permission to create persistent contact associations for a contact * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreatePersistentContactAssociation.html */ toCreatePersistentContactAssociation(): this; /** * Grants permission to create a predefined attribute in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreatePredefinedAttribute.html */ toCreatePredefinedAttribute(): this; /** * Grants permission to create a prompt in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * Dependent actions: * - kms:Decrypt * - s3:GetObject * - s3:GetObjectAcl * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreatePrompt.html */ toCreatePrompt(): this; /** * Grants permission to create a push notification registration for an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreatePushNotificationRegistration.html */ toCreatePushNotificationRegistration(): this; /** * Grants permission to create a queue in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateQueue.html */ toCreateQueue(): this; /** * Grants permission to create a quick connect in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateQuickConnect.html */ toCreateQuickConnect(): this; /** * Grants permission to create a routing profile in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateRoutingProfile.html */ toCreateRoutingProfile(): this; /** * Grants permission to create a rule in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateRule.html */ toCreateRule(): this; /** * Grants permission to create a security profile for the specified Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateSecurityProfile.html */ toCreateSecurityProfile(): this; /** * Grants permission to create a task template in an Amazon Connect instance * * Access Level: Write * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateTaskTemplate.html */ toCreateTaskTemplate(): this; /** * Grants permission to create a traffic distribution group * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateTrafficDistributionGroup.html */ toCreateTrafficDistributionGroup(): this; /** * Grants permission to create a use case for an integration association * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * - .ifAwsRequestTag() * - .ifAwsTagKeys() * * Dependent actions: * - connect:DescribeInstance * - ds:DescribeDirectories * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateUseCase.html */ toCreateUseCase(): this; /** * Grants permission to create a user for the specified Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateUser.html */ toCreateUser(): this; /** * Grants permission to create a user hierarchy group in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateUserHierarchyGroup.html */ toCreateUserHierarchyGroup(): this; /** * Grants permission to create a view in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateView.html */ toCreateView(): this; /** * Grants permission to create a view version in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateViewVersion.html */ toCreateViewVersion(): this; /** * Grants permission to create a vocabulary in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_CreateVocabulary.html */ toCreateVocabulary(): this; /** * Grants permission to deactivate an evaluation form in the specified Amazon Connect instance. After a form is deactivated, it is no longer available for users to start new evaluations based on the form * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeactivateEvaluationForm.html */ toDeactivateEvaluationForm(): this; /** * Grants permission to delete an attached file from an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsRequestTag() * - .ifAwsTagKeys() * - .ifInstanceId() * * Dependent actions: * - cases:DeleteRelatedItem * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteAttachedFile.html */ toDeleteAttachedFile(): this; /** * Grants permission to delete a contact evaluation in the specified Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteContactEvaluation.html */ toDeleteContactEvaluation(): this; /** * Grants permission to delete a contact flow in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * - .ifFlowType() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteContactFlow.html */ toDeleteContactFlow(): this; /** * Grants permission to delete a contact flow module in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteContactFlowModule.html */ toDeleteContactFlowModule(): this; /** * Grants permission to delete a version of a flow in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * - .ifFlowType() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteContactFlowVersion.html */ toDeleteContactFlowVersion(): this; /** * Grants permission to delete an email address resource in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteEmailAddress.html */ toDeleteEmailAddress(): this; /** * Grants permission to delete an evaluation form in the specified Amazon Connect instance. If the version property is provided, only the specified version of the evaluation form is deleted * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteEvaluationForm.html */ toDeleteEvaluationForm(): this; /** * Grants permission to delete hours of operation in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteHoursOfOperation.html */ toDeleteHoursOfOperation(): this; /** * Grants permission to delete an hours of operation override in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteHoursOfOperationOverride.html */ toDeleteHoursOfOperationOverride(): this; /** * Grants permission to delete an Amazon Connect instance. When you remove an instance, the link to an existing AWS directory is also removed * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * - .ifAwsResourceTag() * * Dependent actions: * - ds:DeleteDirectory * - ds:DescribeDirectories * - ds:UnauthorizeApplication * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDeleteInstance(): this; /** * Grants permission to delete an integration association from an Amazon Connect instance. The association must not have any use cases associated with it * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * Dependent actions: * - app-integrations:DeleteApplicationAssociation * - app-integrations:DeleteEventIntegrationAssociation * - connect:DescribeInstance * - ds:DescribeDirectories * - events:DeleteRule * - events:ListTargetsByRule * - events:RemoveTargets * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteIntegrationAssociation.html */ toDeleteIntegrationAssociation(): this; /** * Grants permission to delete a predefined attribute in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeletePredefinedAttribute.html */ toDeletePredefinedAttribute(): this; /** * Grants permission to delete a prompt in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeletePrompt.html */ toDeletePrompt(): this; /** * Grants permission to delete a push notification registration for an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeletePushNotificationRegistration.html */ toDeletePushNotificationRegistration(): this; /** * Grants permission to delete a queue in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteQueue.html */ toDeleteQueue(): this; /** * Grants permission to delete a quick connect in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteQuickConnect.html */ toDeleteQuickConnect(): this; /** * Grants permission to delete routing profiles in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteRoutingProfile.html */ toDeleteRoutingProfile(): this; /** * Grants permission to delete a rule in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteRule.html */ toDeleteRule(): this; /** * Grants permission to delete a security profile in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteSecurityProfile.html */ toDeleteSecurityProfile(): this; /** * Grants permission to delete a task template in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteTaskTemplate.html */ toDeleteTaskTemplate(): this; /** * Grants permission to delete a traffic distribution group * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteTrafficDistributionGroup.html */ toDeleteTrafficDistributionGroup(): this; /** * Grants permission to delete a use case from an integration association * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * Dependent actions: * - connect:DescribeInstance * - ds:DescribeDirectories * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteUseCase.html */ toDeleteUseCase(): this; /** * Grants permission to delete a user in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteUser.html */ toDeleteUser(): this; /** * Grants permission to delete a user hierarchy group in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteUserHierarchyGroup.html */ toDeleteUserHierarchyGroup(): this; /** * Grants permission to delete a view in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteView.html */ toDeleteView(): this; /** * Grants permission to delete a view version in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteViewVersion.html */ toDeleteViewVersion(): this; /** * Grants permission to delete a vocabulary in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DeleteVocabulary.html */ toDeleteVocabulary(): this; /** * Grants permission to describe agent status in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeAgentStatus.html */ toDescribeAgentStatus(): this; /** * Grants permission to describe authentication profile resources in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeAuthenticationProfile.html */ toDescribeAuthenticationProfile(): this; /** * Grants permission to describe a contact in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifInstanceId() * - .ifContactAssociationId() * - .ifChannel() * - .ifUserArn() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeContact.html */ toDescribeContact(): this; /** * Grants permission to describe a contact evaluation in the specified Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeContactEvaluation.html */ toDescribeContactEvaluation(): this; /** * Grants permission to describe a contact flow in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * - .ifFlowType() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeContactFlow.html */ toDescribeContactFlow(): this; /** * Grants permission to describe a contact flow module in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeContactFlowModule.html */ toDescribeContactFlowModule(): this; /** * Grants permission to describe an email address resource in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeEmailAddress.html */ toDescribeEmailAddress(): this; /** * Grants permission to describe an evaluation form in the specified Amazon Connect instance. If the version property is not provided, the latest version of the evaluation form is described * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeEvaluationForm.html */ toDescribeEvaluationForm(): this; /** * Grants permission to describe the status of forecasting, planning, and scheduling integration on an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/adminguide/optimization-apis.html */ toDescribeForecastingPlanningSchedulingIntegration(): this; /** * Grants permission to describe hours of operation in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeHoursOfOperation.html */ toDescribeHoursOfOperation(): this; /** * Grants permission to describe an hours of operation override in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeHoursOfOperationOverride.html */ toDescribeHoursOfOperationOverride(): this; /** * Grants permission to view details of an Amazon Connect instance and is also required to create an instance * * Access Level: Read * * Possible conditions: * - .ifInstanceId() * - .ifAwsResourceTag() * * Dependent actions: * - ds:DescribeDirectories * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDescribeInstance(): this; /** * Grants permission to view the attribute details of an existing Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAttributeType() * - .ifInstanceId() * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDescribeInstanceAttribute(): this; /** * Grants permission to view the instance storage configuration for an existing Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifStorageResourceType() * - .ifInstanceId() * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDescribeInstanceStorageConfig(): this; /** * Grants permission to describe phone number resources in an Amazon Connect instance or traffic distribution group * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribePhoneNumber.html */ toDescribePhoneNumber(): this; /** * Grants permission to describe a predefined attribute in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribePredefinedAttribute.html */ toDescribePredefinedAttribute(): this; /** * Grants permission to describe a prompt in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribePrompt.html */ toDescribePrompt(): this; /** * Grants permission to describe a queue in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeQueue.html */ toDescribeQueue(): this; /** * Grants permission to describe a quick connect in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeQuickConnect.html */ toDescribeQuickConnect(): this; /** * Grants permission to describe a routing profile in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeRoutingProfile.html */ toDescribeRoutingProfile(): this; /** * Grants permission to describe a rule in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeRule.html */ toDescribeRule(): this; /** * Grants permission to describe a security profile in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeSecurityProfile.html */ toDescribeSecurityProfile(): this; /** * Grants permission to describe a traffic distribution group * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeTrafficDistributionGroup.html */ toDescribeTrafficDistributionGroup(): this; /** * Grants permission to describe a user in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeUser.html */ toDescribeUser(): this; /** * Grants permission to describe a hierarchy group for an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeUserHierarchyGroup.html */ toDescribeUserHierarchyGroup(): this; /** * Grants permission to describe the hierarchy structure for an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeUserHierarchyStructure.html */ toDescribeUserHierarchyStructure(): this; /** * Grants permission to describe a view in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeView.html */ toDescribeView(): this; /** * Grants permission to describe a vocabulary in an Amazon Connect instance * * Access Level: Read * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DescribeVocabulary.html */ toDescribeVocabulary(): this; /** * Grants permission to revoke access and to disassociate a dataset with the specified AWS account * * Access Level: Write * * Possible conditions: * - .ifInstanceId() */ toDisassociateAnalyticsDataSet(): this; /** * Grants permission to disassociate approved origin for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDisassociateApprovedOrigin(): this; /** * Grants permission to disassociate a Lex bot for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * Dependent actions: * - iam:AttachRolePolicy * - iam:CreateServiceLinkedRole * - iam:PutRolePolicy * - lex:DeleteResourcePolicy * - lex:UpdateResourcePolicy * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDisassociateBot(): this; /** * Grants permission to disassociate a Customer Profiles domain for an existing Amazon Connect instance * * Access Level: Write * * Dependent actions: * - iam:AttachRolePolicy * - iam:DeleteRolePolicy * - iam:DetachRolePolicy * - iam:GetPolicy * - iam:GetPolicyVersion * - iam:GetRolePolicy * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDisassociateCustomerProfilesDomain(): this; /** * Grants permission to disassociate a resource from a flow in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DisassociateFlow.html */ toDisassociateFlow(): this; /** * Grants permission to disassociate instance storage for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifStorageResourceType() * - .ifInstanceId() * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDisassociateInstanceStorageConfig(): this; /** * Grants permission to disassociate a Lambda function for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * Dependent actions: * - lambda:RemovePermission * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDisassociateLambdaFunction(): this; /** * Grants permission to disassociate a Lex bot for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * Dependent actions: * - iam:AttachRolePolicy * - iam:CreateServiceLinkedRole * - iam:PutRolePolicy * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDisassociateLexBot(): this; /** * Grants permission to disassociate contact flow resources from phone number resources in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DisassociatePhoneNumberContactFlow.html */ toDisassociatePhoneNumberContactFlow(): this; /** * Grants permission to disassociate quick connects from a queue in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DisassociateQueueQuickConnects.html */ toDisassociateQueueQuickConnects(): this; /** * Grants permission to disassociate queues from a routing profile in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DisassociateRoutingProfileQueues.html */ toDisassociateRoutingProfileQueues(): this; /** * Grants permission to disassociate the security key for an existing Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/console/connect/amazon-connect-console/grant-instance-permissions */ toDisassociateSecurityKey(): this; /** * Grants permission to disassociate a user from a traffic distribution group in the specified Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * - .ifAwsResourceTag() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DisassociateTrafficDistributionGroupUser.html */ toDisassociateTrafficDistributionGroupUser(): this; /** * Grants permission to disassociate user proficiencies from a user in an Amazon Connect instance * * Access Level: Write * * Possible conditions: * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DisassociateUserProficiencies.html */ toDisassociateUserProficiencies(): this; /** * Grants permission to dismiss terminated Contact from Agent CCP * * Access Level: Write * * Possible conditions: * - .ifAwsResourceTag() * - .ifInstanceId() * * https://docs.aws.amazon.com/connect/latest/APIReference/API_DismissUserContact.html */ toDismissUs