aws-cloudfront-resource-tags-value-config
CloudFront distribution and function tag values are plaintext metadata.
Where it sits
| location | ListTagsForResource.Tags.Items[].Value |
| location kind | tag |
| data kinds | credential sensitive_data |
| emits edge | ContainsSecret |
| service | CloudFront (aws:cloudfront) |
Collection recipe
| access mode | read_api |
| operation | ListTagsForResource |
| response path | Tags.Items[].Value |
| encoding | string |
| params | {"Resource": "\u003cresource-arn\u003e"} |
Required permissions
cloudfront:ListTagsForResource
References