Closed twitu closed 5 years ago
Skew makes various read requests against every service you have it scanning-- it would be hard to define any narrower policy than the built-in global read policy.
Thanks I think that should do it. For reference I have included a link to the ReadOnlyAccess policy.
I tested a skew script in
god_mode
and it worked perfectly as it should. However, it would be great to know the permissions required so I can create an IAM role for the script. Instead you could also mention the kind of operations skew performs and I can make a policy accordingly. Thank you for the help.