Skip to content

Commit 7e9d708

Browse files
author
MAMIP Bot
committed
SecurityAgentWebAppAPIPolicy - Policy Version v1
1 parent 0967aca commit 7e9d708

File tree

1 file changed

+68
-0
lines changed

1 file changed

+68
-0
lines changed
Lines changed: 68 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,68 @@
1+
{
2+
"PolicyVersion": {
3+
"CreateDate": "2025-12-02T15:04:06Z",
4+
"VersionId": "v1",
5+
"Document": {
6+
"Version": "2012-10-17",
7+
"Statement": [
8+
{
9+
"Action": [
10+
"securityagent:ListAgentInstances",
11+
"securityagent:ListControls"
12+
],
13+
"Resource": "*",
14+
"Effect": "Allow",
15+
"Condition": {
16+
"StringEquals": {
17+
"aws:ResourceAccount": "${aws:PrincipalAccount}"
18+
}
19+
},
20+
"Sid": "ApplicationAccess"
21+
},
22+
{
23+
"Action": [
24+
"securityagent:AddArtifact",
25+
"securityagent:BatchDeletePentests",
26+
"securityagent:BatchGetAgentInstances",
27+
"securityagent:BatchGetArtifactMetadata",
28+
"securityagent:BatchGetFindings",
29+
"securityagent:BatchGetPentestJobs",
30+
"securityagent:BatchGetPentests",
31+
"securityagent:BatchGetTasks",
32+
"securityagent:CreateDocumentReview",
33+
"securityagent:CreatePentest",
34+
"securityagent:DeleteArtifact",
35+
"securityagent:GetArtifact",
36+
"securityagent:GetCodeReviewTask",
37+
"securityagent:GetDocReviewTask",
38+
"securityagent:GetDocumentReview",
39+
"securityagent:GetDocumentReviewArtifact",
40+
"securityagent:ListArtifacts",
41+
"securityagent:ListControls",
42+
"securityagent:ListDiscoveredEndpoints",
43+
"securityagent:ListDocumentReviewComments",
44+
"securityagent:ListDocumentReviews",
45+
"securityagent:ListFindings",
46+
"securityagent:ListIntegratedResources",
47+
"securityagent:ListPentestJobsForPentest",
48+
"securityagent:ListPentests",
49+
"securityagent:ListTasks",
50+
"securityagent:StartPentestExecution",
51+
"securityagent:StopPentestExecution",
52+
"securityagent:UpdateFinding",
53+
"securityagent:UpdatePentest"
54+
],
55+
"Resource": "arn:aws:securityagent:*:*:agent-instance*",
56+
"Effect": "Allow",
57+
"Condition": {
58+
"StringEquals": {
59+
"aws:ResourceAccount": "${aws:PrincipalAccount}"
60+
}
61+
},
62+
"Sid": "AgentInstanceAccess"
63+
}
64+
]
65+
},
66+
"IsDefaultVersion": true
67+
}
68+
}

0 commit comments

Comments
 (0)