The user you create needs the following policies attached.
AWSPriceListServiceFullAccess
AmazonEC2FullAccess
AmazonS3FullAccess
You can instead use readonly policies for EC2 and S3, but you will limit the apps functionality. This app does not track any of your information and the only queries you will be doing are to the aws api, using your keys.