Service: AWS CodeStar
Short Name:
codestar
ARN Format:
arn:aws:codestar:${Region}:${Account}:project/${ResourceId}
ARN Regex:
^arn:aws:codestar:.+:[0-9]+:project/.+
ReadOnlyAccess
…
AWSSupportServiceRolePolicyAction | Access | Reference | Description |
---|---|---|---|
codestar:ListProjects | Docs | Grants permission to list all projects in CodeStar associated with your AWS account | |
codestar:ListResources | Docs | Grants permission to list all resources associated with a project in CodeStar | |
codestar:ListTagsForProject | Docs | Grants permission to list the tags associated with a project in CodeStar | |
codestar:ListTeamMembers | Docs | Grants permission to list all team members associated with a project | |
codestar:ListUserProfiles | Docs | Grants permission to list user profiles in AWS CodeStar | |
codestar:VerifyServiceRole | Docs | Grants permission to verify whether the AWS CodeStar service role exists in the customer's account | |
codestar:AssociateTeamMember | Docs | Grants permission to add a user to the team for an AWS CodeStar project | |
codestar:CreateProject | Docs | Grants permission to create a project with minimal structure, customer policies, and no resources | |
codestar:DeleteProject | Docs | Grants permission to delete a project, including project resources. Does not delete users associated with the project, but does delete the IAM roles that allowed access to the project | |
codestar:DisassociateTeamMember | Docs | Grants permission to remove a user from a project. Removing a user from a project also removes the IAM policies from that user that allowed access to the project and its resources | |
codestar:UpdateTeamMember | Docs | Grants permission to update team member attributes within a CodeStar project | |
codestar:DescribeProject | Docs | Grants permission to describe a project and its resources | |
codestar:DescribeUserProfile | Docs | Grants permission to describe a user in AWS CodeStar and the user attributes across all projects | |
codestar:GetExtendedAccess | Docs | Grants permission to extended read APIs | |
codestar:TagProject | Docs | Grants permission to add tags to a project in CodeStar | |
codestar:UntagProject | Docs | Grants permission to remove tags from a project in CodeStar | |
codestar:CreateUserProfile | Docs | Grants permission to create a profile for a user that includes user preferences, display name, and email | |
codestar:DeleteExtendedAccess | Docs | Grants permission to extended delete APIs | |
codestar:DeleteUserProfile | Docs | Grants permission to delete a user profile in AWS CodeStar, including all personal preference data associated with that profile, such as display name and email address. It does not delete the history of that user, for example the history of commits made by that user | |
codestar:PutExtendedAccess | Docs | Grants permission to extended write APIs | |
codestar:UpdateProject | Docs | Grants permission to update a project in CodeStar | |
codestar:UpdateUserProfile | Docs | Grants permission to update a profile for a user that includes user preferences, display name, and email |
aws:RequestTag/${TagKey}
aws:ResourceTag/${TagKey}
aws:TagKeys
iam:ResourceTag/${TagKey}