No description
- Add new AWS MCP managed policy with permissions for MCP tool invocation - Extend IAM permissions: add AttachRolePolicy and CreatePolicy actions - Add ELB permissions for target group modification - Add ECS permissions for task definition management (register/deregister/tag) |
||
|---|---|---|
| policies | ||
| roles | ||
| README.md | ||
CloudFormation Write IAM Definitions
This repository defines IAM roles and policies for safely executing AWS CloudFormation operations via AssumeRole.
-
roles/cloudformation-write-role.yamlIAM role for CloudFormation execution, including ECR import permissions. Assumable by specified IAM Identity Center roles. -
policies/cloudformation-write-policy.yamlManaged policy granting minimal CloudFormation write access. Intended for use via the execution role, not attached directly to users.