aws-opensearch-serverless-collection-document-data
Serverless collection documents may contain plaintext credentials and sensitive application or log data.
Where it sits
| location | OpenSearch Serverless _search response _source fields |
| location kind | data_record |
| data kinds | credential password api_key customer_data pii |
| emits edge | CanReadData |
| service | OpenSearch (aws:opensearch) |
Collection recipe
| access mode | data_plane |
| operation | OpenSearch Serverless HTTP _search |
| response path | hits.hits[]._source |
| encoding | json |
| params | {"CollectionEndpoint": "\u003cendpoint\u003e", "Index": "\u003cindex\u003e"} |
Required permissions
aoss:APIAccessAll
aoss:DashboardsAccessAll
References