aws-iam-user-tags-value-config
IAM user tag values are customer-controlled plaintext and are readable by IAM APIs.
Where it sits
| location | ListUserTags.Tags[].Value |
|---|---|
| location kind | tag |
| data kinds | credential sensitive_data pii |
| emits edge | ContainsSecret |
| service | IAM (aws:iam) |
Collection recipe
| access mode | read_api |
|---|---|
| operation | ListUserTags |
| response path | Tags[].Value |
| encoding | string |
| params | {"UserName": "\u003cuser-name\u003e"} |
Required permissions
iam:ListUserTags