naftiko: 1.0.0-alpha2 info: label: AWS Single Sign-On Admin description: 'AWS Single Sign-On Admin. 37 operations. Lead operation: Amazon IAM Identity Center Attach Customer Managed Policy Reference to Permission Set. Self-contained Naftiko capability covering one Amazon Iam Identity Center business surface.' tags: - Amazon Iam Identity Center - AWS Single Sign-On Admin created: '2026-05-19' modified: '2026-05-19' binds: - namespace: env keys: AMAZON_IAM_IDENTITY_CENTER_API_KEY: AMAZON_IAM_IDENTITY_CENTER_API_KEY capability: consumes: - type: http namespace: sso-admin baseUri: http://sso.{region}.amazonaws.com description: AWS Single Sign-On Admin business capability. Self-contained, no shared references. resources: - name: '#X-Amz-Target=SWBExternalService.AttachCustomerManagedPolicyReferenceToPermissio' path: /#X-Amz-Target=SWBExternalService.AttachCustomerManagedPolicyReferenceToPermissionSet operations: - name: attachcustomermanagedpolicyreferencetopermissionset method: POST description: Amazon IAM Identity Center Attach Customer Managed Policy Reference to Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.AttachManagedPolicyToPermissionSet' path: /#X-Amz-Target=SWBExternalService.AttachManagedPolicyToPermissionSet operations: - name: attachmanagedpolicytopermissionset method: POST description: Amazon IAM Identity Center Attach Managed Policy to Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.CreateAccountAssignment' path: /#X-Amz-Target=SWBExternalService.CreateAccountAssignment operations: - name: createaccountassignment method: POST description: Amazon IAM Identity Center Create Account Assignment outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.CreateInstanceAccessControlAttributeConfigurati' path: /#X-Amz-Target=SWBExternalService.CreateInstanceAccessControlAttributeConfiguration operations: - name: createinstanceaccesscontrolattributeconfiguration method: POST description: Amazon IAM Identity Center Create Instance Access Control Attribute Configuration outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.CreatePermissionSet' path: /#X-Amz-Target=SWBExternalService.CreatePermissionSet operations: - name: createpermissionset method: POST description: Amazon IAM Identity Center Create Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DeleteAccountAssignment' path: /#X-Amz-Target=SWBExternalService.DeleteAccountAssignment operations: - name: deleteaccountassignment method: POST description: Amazon IAM Identity Center Delete Account Assignment outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DeleteInlinePolicyFromPermissionSet' path: /#X-Amz-Target=SWBExternalService.DeleteInlinePolicyFromPermissionSet operations: - name: deleteinlinepolicyfrompermissionset method: POST description: Amazon IAM Identity Center Delete Inline Policy from Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DeleteInstanceAccessControlAttributeConfigurati' path: /#X-Amz-Target=SWBExternalService.DeleteInstanceAccessControlAttributeConfiguration operations: - name: deleteinstanceaccesscontrolattributeconfiguration method: POST description: Amazon IAM Identity Center Delete Instance Access Control Attribute Configuration outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DeletePermissionSet' path: /#X-Amz-Target=SWBExternalService.DeletePermissionSet operations: - name: deletepermissionset method: POST description: Amazon IAM Identity Center Delete Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DeletePermissionsBoundaryFromPermissionSet' path: /#X-Amz-Target=SWBExternalService.DeletePermissionsBoundaryFromPermissionSet operations: - name: deletepermissionsboundaryfrompermissionset method: POST description: Amazon IAM Identity Center Delete Permissions Boundary from Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DescribeAccountAssignmentCreationStatus' path: /#X-Amz-Target=SWBExternalService.DescribeAccountAssignmentCreationStatus operations: - name: describeaccountassignmentcreationstatus method: POST description: Amazon IAM Identity Center Describe Account Assignment Creation Status outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DescribeAccountAssignmentDeletionStatus' path: /#X-Amz-Target=SWBExternalService.DescribeAccountAssignmentDeletionStatus operations: - name: describeaccountassignmentdeletionstatus method: POST description: Amazon IAM Identity Center Describe Account Assignment Deletion Status outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DescribeInstanceAccessControlAttributeConfigura' path: /#X-Amz-Target=SWBExternalService.DescribeInstanceAccessControlAttributeConfiguration operations: - name: describeinstanceaccesscontrolattributeconfiguration method: POST description: Amazon IAM Identity Center Describe Instance Access Control Attribute Configuration outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DescribePermissionSet' path: /#X-Amz-Target=SWBExternalService.DescribePermissionSet operations: - name: describepermissionset method: POST description: Amazon IAM Identity Center Describe Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DescribePermissionSetProvisioningStatus' path: /#X-Amz-Target=SWBExternalService.DescribePermissionSetProvisioningStatus operations: - name: describepermissionsetprovisioningstatus method: POST description: Amazon IAM Identity Center Describe Permission Set Provisioning Status outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DetachCustomerManagedPolicyReferenceFromPermiss' path: /#X-Amz-Target=SWBExternalService.DetachCustomerManagedPolicyReferenceFromPermissionSet operations: - name: detachcustomermanagedpolicyreferencefrompermissionset method: POST description: Amazon IAM Identity Center Detach Customer Managed Policy Reference from Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.DetachManagedPolicyFromPermissionSet' path: /#X-Amz-Target=SWBExternalService.DetachManagedPolicyFromPermissionSet operations: - name: detachmanagedpolicyfrompermissionset method: POST description: Amazon IAM Identity Center Detach Managed Policy from Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.GetInlinePolicyForPermissionSet' path: /#X-Amz-Target=SWBExternalService.GetInlinePolicyForPermissionSet operations: - name: getinlinepolicyforpermissionset method: POST description: Amazon IAM Identity Center Get Inline Policy for Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.GetPermissionsBoundaryForPermissionSet' path: /#X-Amz-Target=SWBExternalService.GetPermissionsBoundaryForPermissionSet operations: - name: getpermissionsboundaryforpermissionset method: POST description: Amazon IAM Identity Center Get Permissions Boundary for Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListAccountAssignmentCreationStatus' path: /#X-Amz-Target=SWBExternalService.ListAccountAssignmentCreationStatus operations: - name: listaccountassignmentcreationstatus method: POST description: Amazon IAM Identity Center List Account Assignment Creation Status outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListAccountAssignmentDeletionStatus' path: /#X-Amz-Target=SWBExternalService.ListAccountAssignmentDeletionStatus operations: - name: listaccountassignmentdeletionstatus method: POST description: Amazon IAM Identity Center List Account Assignment Deletion Status outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListAccountAssignments' path: /#X-Amz-Target=SWBExternalService.ListAccountAssignments operations: - name: listaccountassignments method: POST description: Amazon IAM Identity Center List Account Assignments outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListAccountsForProvisionedPermissionSet' path: /#X-Amz-Target=SWBExternalService.ListAccountsForProvisionedPermissionSet operations: - name: listaccountsforprovisionedpermissionset method: POST description: Amazon IAM Identity Center List Accounts for Provisioned Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListCustomerManagedPolicyReferencesInPermission' path: /#X-Amz-Target=SWBExternalService.ListCustomerManagedPolicyReferencesInPermissionSet operations: - name: listcustomermanagedpolicyreferencesinpermissionset method: POST description: Amazon IAM Identity Center List Customer Managed Policy References in Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListInstances' path: /#X-Amz-Target=SWBExternalService.ListInstances operations: - name: listinstances method: POST description: Amazon IAM Identity Center List Instances outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListManagedPoliciesInPermissionSet' path: /#X-Amz-Target=SWBExternalService.ListManagedPoliciesInPermissionSet operations: - name: listmanagedpoliciesinpermissionset method: POST description: Amazon IAM Identity Center List Managed Policies in Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListPermissionSetProvisioningStatus' path: /#X-Amz-Target=SWBExternalService.ListPermissionSetProvisioningStatus operations: - name: listpermissionsetprovisioningstatus method: POST description: Amazon IAM Identity Center List Permission Set Provisioning Status outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListPermissionSets' path: /#X-Amz-Target=SWBExternalService.ListPermissionSets operations: - name: listpermissionsets method: POST description: Amazon IAM Identity Center List Permission Sets outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListPermissionSetsProvisionedToAccount' path: /#X-Amz-Target=SWBExternalService.ListPermissionSetsProvisionedToAccount operations: - name: listpermissionsetsprovisionedtoaccount method: POST description: Amazon IAM Identity Center List Permission Sets Provisioned to Account outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: MaxResults in: query type: string description: Pagination limit - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ListTagsForResource' path: /#X-Amz-Target=SWBExternalService.ListTagsForResource operations: - name: listtagsforresource method: POST description: Amazon IAM Identity Center List Tags for Resource outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: NextToken in: query type: string description: Pagination token - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.ProvisionPermissionSet' path: /#X-Amz-Target=SWBExternalService.ProvisionPermissionSet operations: - name: provisionpermissionset method: POST description: Amazon IAM Identity Center Provision Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.PutInlinePolicyToPermissionSet' path: /#X-Amz-Target=SWBExternalService.PutInlinePolicyToPermissionSet operations: - name: putinlinepolicytopermissionset method: POST description: Amazon IAM Identity Center Put Inline Policy to Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.PutPermissionsBoundaryToPermissionSet' path: /#X-Amz-Target=SWBExternalService.PutPermissionsBoundaryToPermissionSet operations: - name: putpermissionsboundarytopermissionset method: POST description: Amazon IAM Identity Center Put Permissions Boundary to Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.TagResource' path: /#X-Amz-Target=SWBExternalService.TagResource operations: - name: tagresource method: POST description: Amazon IAM Identity Center Tag Resource outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.UntagResource' path: /#X-Amz-Target=SWBExternalService.UntagResource operations: - name: untagresource method: POST description: Amazon IAM Identity Center Untag Resource outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.UpdateInstanceAccessControlAttributeConfigurati' path: /#X-Amz-Target=SWBExternalService.UpdateInstanceAccessControlAttributeConfiguration operations: - name: updateinstanceaccesscontrolattributeconfiguration method: POST description: Amazon IAM Identity Center Update Instance Access Control Attribute Configuration outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true - name: '#X-Amz-Target=SWBExternalService.UpdatePermissionSet' path: /#X-Amz-Target=SWBExternalService.UpdatePermissionSet operations: - name: updatepermissionset method: POST description: Amazon IAM Identity Center Update Permission Set outputRawFormat: json outputParameters: - name: result type: object value: $. inputParameters: - name: X-Amz-Target in: header type: string required: true - name: body in: body type: object description: Request body (JSON). required: true authentication: type: apikey key: Authorization value: '{{env.AMAZON_IAM_IDENTITY_CENTER_API_KEY}}' placement: header exposes: - type: rest namespace: sso-admin-rest port: 8080 description: REST adapter for AWS Single Sign-On Admin. One Spectral-compliant resource per consumed operation, prefixed with /v1. resources: - path: /v1/x-amz-target-swbexternalservice-attachcustomermanagedpolicyreferencetopermissionset name: x-amz-target-swbexternalservice-attachcustomermanagedpolicyreferencetopermissio description: 'REST surface for #X-Amz-Target=SWBExternalService.AttachCustomerManagedPolicyReferenceToPermissio.' operations: - method: POST name: attachcustomermanagedpolicyreferencetopermissionset description: Amazon IAM Identity Center Attach Customer Managed Policy Reference to Permission Set call: sso-admin.attachcustomermanagedpolicyreferencetopermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-attachmanagedpolicytopermissionset name: x-amz-target-swbexternalservice-attachmanagedpolicytopermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.AttachManagedPolicyToPermissionSet.' operations: - method: POST name: attachmanagedpolicytopermissionset description: Amazon IAM Identity Center Attach Managed Policy to Permission Set call: sso-admin.attachmanagedpolicytopermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-createaccountassignment name: x-amz-target-swbexternalservice-createaccountassignment description: 'REST surface for #X-Amz-Target=SWBExternalService.CreateAccountAssignment.' operations: - method: POST name: createaccountassignment description: Amazon IAM Identity Center Create Account Assignment call: sso-admin.createaccountassignment with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-createinstanceaccesscontrolattributeconfiguration name: x-amz-target-swbexternalservice-createinstanceaccesscontrolattributeconfigurati description: 'REST surface for #X-Amz-Target=SWBExternalService.CreateInstanceAccessControlAttributeConfigurati.' operations: - method: POST name: createinstanceaccesscontrolattributeconfiguration description: Amazon IAM Identity Center Create Instance Access Control Attribute Configuration call: sso-admin.createinstanceaccesscontrolattributeconfiguration with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-createpermissionset name: x-amz-target-swbexternalservice-createpermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.CreatePermissionSet.' operations: - method: POST name: createpermissionset description: Amazon IAM Identity Center Create Permission Set call: sso-admin.createpermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-deleteaccountassignment name: x-amz-target-swbexternalservice-deleteaccountassignment description: 'REST surface for #X-Amz-Target=SWBExternalService.DeleteAccountAssignment.' operations: - method: POST name: deleteaccountassignment description: Amazon IAM Identity Center Delete Account Assignment call: sso-admin.deleteaccountassignment with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-deleteinlinepolicyfrompermissionset name: x-amz-target-swbexternalservice-deleteinlinepolicyfrompermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.DeleteInlinePolicyFromPermissionSet.' operations: - method: POST name: deleteinlinepolicyfrompermissionset description: Amazon IAM Identity Center Delete Inline Policy from Permission Set call: sso-admin.deleteinlinepolicyfrompermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-deleteinstanceaccesscontrolattributeconfiguration name: x-amz-target-swbexternalservice-deleteinstanceaccesscontrolattributeconfigurati description: 'REST surface for #X-Amz-Target=SWBExternalService.DeleteInstanceAccessControlAttributeConfigurati.' operations: - method: POST name: deleteinstanceaccesscontrolattributeconfiguration description: Amazon IAM Identity Center Delete Instance Access Control Attribute Configuration call: sso-admin.deleteinstanceaccesscontrolattributeconfiguration with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-deletepermissionset name: x-amz-target-swbexternalservice-deletepermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.DeletePermissionSet.' operations: - method: POST name: deletepermissionset description: Amazon IAM Identity Center Delete Permission Set call: sso-admin.deletepermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-deletepermissionsboundaryfrompermissionset name: x-amz-target-swbexternalservice-deletepermissionsboundaryfrompermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.DeletePermissionsBoundaryFromPermissionSet.' operations: - method: POST name: deletepermissionsboundaryfrompermissionset description: Amazon IAM Identity Center Delete Permissions Boundary from Permission Set call: sso-admin.deletepermissionsboundaryfrompermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-describeaccountassignmentcreationstatus name: x-amz-target-swbexternalservice-describeaccountassignmentcreationstatus description: 'REST surface for #X-Amz-Target=SWBExternalService.DescribeAccountAssignmentCreationStatus.' operations: - method: POST name: describeaccountassignmentcreationstatus description: Amazon IAM Identity Center Describe Account Assignment Creation Status call: sso-admin.describeaccountassignmentcreationstatus with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-describeaccountassignmentdeletionstatus name: x-amz-target-swbexternalservice-describeaccountassignmentdeletionstatus description: 'REST surface for #X-Amz-Target=SWBExternalService.DescribeAccountAssignmentDeletionStatus.' operations: - method: POST name: describeaccountassignmentdeletionstatus description: Amazon IAM Identity Center Describe Account Assignment Deletion Status call: sso-admin.describeaccountassignmentdeletionstatus with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-describeinstanceaccesscontrolattributeconfiguration name: x-amz-target-swbexternalservice-describeinstanceaccesscontrolattributeconfigura description: 'REST surface for #X-Amz-Target=SWBExternalService.DescribeInstanceAccessControlAttributeConfigura.' operations: - method: POST name: describeinstanceaccesscontrolattributeconfiguration description: Amazon IAM Identity Center Describe Instance Access Control Attribute Configuration call: sso-admin.describeinstanceaccesscontrolattributeconfiguration with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-describepermissionset name: x-amz-target-swbexternalservice-describepermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.DescribePermissionSet.' operations: - method: POST name: describepermissionset description: Amazon IAM Identity Center Describe Permission Set call: sso-admin.describepermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-describepermissionsetprovisioningstatus name: x-amz-target-swbexternalservice-describepermissionsetprovisioningstatus description: 'REST surface for #X-Amz-Target=SWBExternalService.DescribePermissionSetProvisioningStatus.' operations: - method: POST name: describepermissionsetprovisioningstatus description: Amazon IAM Identity Center Describe Permission Set Provisioning Status call: sso-admin.describepermissionsetprovisioningstatus with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-detachcustomermanagedpolicyreferencefrompermissionset name: x-amz-target-swbexternalservice-detachcustomermanagedpolicyreferencefrompermiss description: 'REST surface for #X-Amz-Target=SWBExternalService.DetachCustomerManagedPolicyReferenceFromPermiss.' operations: - method: POST name: detachcustomermanagedpolicyreferencefrompermissionset description: Amazon IAM Identity Center Detach Customer Managed Policy Reference from Permission Set call: sso-admin.detachcustomermanagedpolicyreferencefrompermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-detachmanagedpolicyfrompermissionset name: x-amz-target-swbexternalservice-detachmanagedpolicyfrompermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.DetachManagedPolicyFromPermissionSet.' operations: - method: POST name: detachmanagedpolicyfrompermissionset description: Amazon IAM Identity Center Detach Managed Policy from Permission Set call: sso-admin.detachmanagedpolicyfrompermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-getinlinepolicyforpermissionset name: x-amz-target-swbexternalservice-getinlinepolicyforpermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.GetInlinePolicyForPermissionSet.' operations: - method: POST name: getinlinepolicyforpermissionset description: Amazon IAM Identity Center Get Inline Policy for Permission Set call: sso-admin.getinlinepolicyforpermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-getpermissionsboundaryforpermissionset name: x-amz-target-swbexternalservice-getpermissionsboundaryforpermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.GetPermissionsBoundaryForPermissionSet.' operations: - method: POST name: getpermissionsboundaryforpermissionset description: Amazon IAM Identity Center Get Permissions Boundary for Permission Set call: sso-admin.getpermissionsboundaryforpermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listaccountassignmentcreationstatus name: x-amz-target-swbexternalservice-listaccountassignmentcreationstatus description: 'REST surface for #X-Amz-Target=SWBExternalService.ListAccountAssignmentCreationStatus.' operations: - method: POST name: listaccountassignmentcreationstatus description: Amazon IAM Identity Center List Account Assignment Creation Status call: sso-admin.listaccountassignmentcreationstatus with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listaccountassignmentdeletionstatus name: x-amz-target-swbexternalservice-listaccountassignmentdeletionstatus description: 'REST surface for #X-Amz-Target=SWBExternalService.ListAccountAssignmentDeletionStatus.' operations: - method: POST name: listaccountassignmentdeletionstatus description: Amazon IAM Identity Center List Account Assignment Deletion Status call: sso-admin.listaccountassignmentdeletionstatus with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listaccountassignments name: x-amz-target-swbexternalservice-listaccountassignments description: 'REST surface for #X-Amz-Target=SWBExternalService.ListAccountAssignments.' operations: - method: POST name: listaccountassignments description: Amazon IAM Identity Center List Account Assignments call: sso-admin.listaccountassignments with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listaccountsforprovisionedpermissionset name: x-amz-target-swbexternalservice-listaccountsforprovisionedpermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.ListAccountsForProvisionedPermissionSet.' operations: - method: POST name: listaccountsforprovisionedpermissionset description: Amazon IAM Identity Center List Accounts for Provisioned Permission Set call: sso-admin.listaccountsforprovisionedpermissionset with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listcustomermanagedpolicyreferencesinpermissionset name: x-amz-target-swbexternalservice-listcustomermanagedpolicyreferencesinpermission description: 'REST surface for #X-Amz-Target=SWBExternalService.ListCustomerManagedPolicyReferencesInPermission.' operations: - method: POST name: listcustomermanagedpolicyreferencesinpermissionset description: Amazon IAM Identity Center List Customer Managed Policy References in Permission Set call: sso-admin.listcustomermanagedpolicyreferencesinpermissionset with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listinstances name: x-amz-target-swbexternalservice-listinstances description: 'REST surface for #X-Amz-Target=SWBExternalService.ListInstances.' operations: - method: POST name: listinstances description: Amazon IAM Identity Center List Instances call: sso-admin.listinstances with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listmanagedpoliciesinpermissionset name: x-amz-target-swbexternalservice-listmanagedpoliciesinpermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.ListManagedPoliciesInPermissionSet.' operations: - method: POST name: listmanagedpoliciesinpermissionset description: Amazon IAM Identity Center List Managed Policies in Permission Set call: sso-admin.listmanagedpoliciesinpermissionset with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listpermissionsetprovisioningstatus name: x-amz-target-swbexternalservice-listpermissionsetprovisioningstatus description: 'REST surface for #X-Amz-Target=SWBExternalService.ListPermissionSetProvisioningStatus.' operations: - method: POST name: listpermissionsetprovisioningstatus description: Amazon IAM Identity Center List Permission Set Provisioning Status call: sso-admin.listpermissionsetprovisioningstatus with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listpermissionsets name: x-amz-target-swbexternalservice-listpermissionsets description: 'REST surface for #X-Amz-Target=SWBExternalService.ListPermissionSets.' operations: - method: POST name: listpermissionsets description: Amazon IAM Identity Center List Permission Sets call: sso-admin.listpermissionsets with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listpermissionsetsprovisionedtoaccount name: x-amz-target-swbexternalservice-listpermissionsetsprovisionedtoaccount description: 'REST surface for #X-Amz-Target=SWBExternalService.ListPermissionSetsProvisionedToAccount.' operations: - method: POST name: listpermissionsetsprovisionedtoaccount description: Amazon IAM Identity Center List Permission Sets Provisioned to Account call: sso-admin.listpermissionsetsprovisionedtoaccount with: MaxResults: rest.MaxResults NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-listtagsforresource name: x-amz-target-swbexternalservice-listtagsforresource description: 'REST surface for #X-Amz-Target=SWBExternalService.ListTagsForResource.' operations: - method: POST name: listtagsforresource description: Amazon IAM Identity Center List Tags for Resource call: sso-admin.listtagsforresource with: NextToken: rest.NextToken X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-provisionpermissionset name: x-amz-target-swbexternalservice-provisionpermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.ProvisionPermissionSet.' operations: - method: POST name: provisionpermissionset description: Amazon IAM Identity Center Provision Permission Set call: sso-admin.provisionpermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-putinlinepolicytopermissionset name: x-amz-target-swbexternalservice-putinlinepolicytopermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.PutInlinePolicyToPermissionSet.' operations: - method: POST name: putinlinepolicytopermissionset description: Amazon IAM Identity Center Put Inline Policy to Permission Set call: sso-admin.putinlinepolicytopermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-putpermissionsboundarytopermissionset name: x-amz-target-swbexternalservice-putpermissionsboundarytopermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.PutPermissionsBoundaryToPermissionSet.' operations: - method: POST name: putpermissionsboundarytopermissionset description: Amazon IAM Identity Center Put Permissions Boundary to Permission Set call: sso-admin.putpermissionsboundarytopermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-tagresource name: x-amz-target-swbexternalservice-tagresource description: 'REST surface for #X-Amz-Target=SWBExternalService.TagResource.' operations: - method: POST name: tagresource description: Amazon IAM Identity Center Tag Resource call: sso-admin.tagresource with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-untagresource name: x-amz-target-swbexternalservice-untagresource description: 'REST surface for #X-Amz-Target=SWBExternalService.UntagResource.' operations: - method: POST name: untagresource description: Amazon IAM Identity Center Untag Resource call: sso-admin.untagresource with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-updateinstanceaccesscontrolattributeconfiguration name: x-amz-target-swbexternalservice-updateinstanceaccesscontrolattributeconfigurati description: 'REST surface for #X-Amz-Target=SWBExternalService.UpdateInstanceAccessControlAttributeConfigurati.' operations: - method: POST name: updateinstanceaccesscontrolattributeconfiguration description: Amazon IAM Identity Center Update Instance Access Control Attribute Configuration call: sso-admin.updateinstanceaccesscontrolattributeconfiguration with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - path: /v1/x-amz-target-swbexternalservice-updatepermissionset name: x-amz-target-swbexternalservice-updatepermissionset description: 'REST surface for #X-Amz-Target=SWBExternalService.UpdatePermissionSet.' operations: - method: POST name: updatepermissionset description: Amazon IAM Identity Center Update Permission Set call: sso-admin.updatepermissionset with: X-Amz-Target: rest.X-Amz-Target body: rest.body outputParameters: - type: object mapping: $. - type: mcp namespace: sso-admin-mcp port: 9090 transport: http description: MCP adapter for AWS Single Sign-On Admin. One tool per consumed operation, routed inline through this capability's consumes block. tools: - name: amazon-iam-identity-center-attach description: Amazon IAM Identity Center Attach Customer Managed Policy Reference to Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.attachcustomermanagedpolicyreferencetopermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-attach-2 description: Amazon IAM Identity Center Attach Managed Policy to Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.attachmanagedpolicytopermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-create description: Amazon IAM Identity Center Create Account Assignment hints: readOnly: false destructive: false idempotent: false call: sso-admin.createaccountassignment with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-create-2 description: Amazon IAM Identity Center Create Instance Access Control Attribute Configuration hints: readOnly: false destructive: false idempotent: false call: sso-admin.createinstanceaccesscontrolattributeconfiguration with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-create-3 description: Amazon IAM Identity Center Create Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.createpermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-delete description: Amazon IAM Identity Center Delete Account Assignment hints: readOnly: false destructive: false idempotent: false call: sso-admin.deleteaccountassignment with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-delete-2 description: Amazon IAM Identity Center Delete Inline Policy from Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.deleteinlinepolicyfrompermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-delete-3 description: Amazon IAM Identity Center Delete Instance Access Control Attribute Configuration hints: readOnly: false destructive: false idempotent: false call: sso-admin.deleteinstanceaccesscontrolattributeconfiguration with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-delete-4 description: Amazon IAM Identity Center Delete Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.deletepermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-delete-5 description: Amazon IAM Identity Center Delete Permissions Boundary from Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.deletepermissionsboundaryfrompermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-describe description: Amazon IAM Identity Center Describe Account Assignment Creation Status hints: readOnly: false destructive: false idempotent: false call: sso-admin.describeaccountassignmentcreationstatus with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-describe-2 description: Amazon IAM Identity Center Describe Account Assignment Deletion Status hints: readOnly: false destructive: false idempotent: false call: sso-admin.describeaccountassignmentdeletionstatus with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-describe-3 description: Amazon IAM Identity Center Describe Instance Access Control Attribute Configuration hints: readOnly: false destructive: false idempotent: false call: sso-admin.describeinstanceaccesscontrolattributeconfiguration with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-describe-4 description: Amazon IAM Identity Center Describe Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.describepermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-describe-5 description: Amazon IAM Identity Center Describe Permission Set Provisioning Status hints: readOnly: false destructive: false idempotent: false call: sso-admin.describepermissionsetprovisioningstatus with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-detach description: Amazon IAM Identity Center Detach Customer Managed Policy Reference from Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.detachcustomermanagedpolicyreferencefrompermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-detach-2 description: Amazon IAM Identity Center Detach Managed Policy from Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.detachmanagedpolicyfrompermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-get description: Amazon IAM Identity Center Get Inline Policy for Permission Set hints: readOnly: true destructive: false idempotent: false call: sso-admin.getinlinepolicyforpermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-get-2 description: Amazon IAM Identity Center Get Permissions Boundary for Permission Set hints: readOnly: true destructive: false idempotent: false call: sso-admin.getpermissionsboundaryforpermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list description: Amazon IAM Identity Center List Account Assignment Creation Status hints: readOnly: true destructive: false idempotent: false call: sso-admin.listaccountassignmentcreationstatus with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-2 description: Amazon IAM Identity Center List Account Assignment Deletion Status hints: readOnly: true destructive: false idempotent: false call: sso-admin.listaccountassignmentdeletionstatus with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-3 description: Amazon IAM Identity Center List Account Assignments hints: readOnly: true destructive: false idempotent: false call: sso-admin.listaccountassignments with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-4 description: Amazon IAM Identity Center List Accounts for Provisioned Permission Set hints: readOnly: true destructive: false idempotent: false call: sso-admin.listaccountsforprovisionedpermissionset with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-5 description: Amazon IAM Identity Center List Customer Managed Policy References in Permission Set hints: readOnly: true destructive: false idempotent: false call: sso-admin.listcustomermanagedpolicyreferencesinpermissionset with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-6 description: Amazon IAM Identity Center List Instances hints: readOnly: true destructive: false idempotent: false call: sso-admin.listinstances with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-7 description: Amazon IAM Identity Center List Managed Policies in Permission Set hints: readOnly: true destructive: false idempotent: false call: sso-admin.listmanagedpoliciesinpermissionset with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-8 description: Amazon IAM Identity Center List Permission Set Provisioning Status hints: readOnly: true destructive: false idempotent: false call: sso-admin.listpermissionsetprovisioningstatus with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-9 description: Amazon IAM Identity Center List Permission Sets hints: readOnly: true destructive: false idempotent: false call: sso-admin.listpermissionsets with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-10 description: Amazon IAM Identity Center List Permission Sets Provisioned to Account hints: readOnly: true destructive: false idempotent: false call: sso-admin.listpermissionsetsprovisionedtoaccount with: MaxResults: tools.MaxResults NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-list-11 description: Amazon IAM Identity Center List Tags for Resource hints: readOnly: true destructive: false idempotent: false call: sso-admin.listtagsforresource with: NextToken: tools.NextToken X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-provision description: Amazon IAM Identity Center Provision Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.provisionpermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-put description: Amazon IAM Identity Center Put Inline Policy to Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.putinlinepolicytopermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-put-2 description: Amazon IAM Identity Center Put Permissions Boundary to Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.putpermissionsboundarytopermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-tag description: Amazon IAM Identity Center Tag Resource hints: readOnly: false destructive: false idempotent: false call: sso-admin.tagresource with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-untag description: Amazon IAM Identity Center Untag Resource hints: readOnly: false destructive: false idempotent: false call: sso-admin.untagresource with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-update description: Amazon IAM Identity Center Update Instance Access Control Attribute Configuration hints: readOnly: false destructive: false idempotent: false call: sso-admin.updateinstanceaccesscontrolattributeconfiguration with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $. - name: amazon-iam-identity-center-update-2 description: Amazon IAM Identity Center Update Permission Set hints: readOnly: false destructive: false idempotent: false call: sso-admin.updatepermissionset with: X-Amz-Target: tools.X-Amz-Target body: tools.body outputParameters: - type: object mapping: $.