aws-ssm-command-parameters-config

Run Command parameters retain plaintext commands and arguments, including any credentials passed inline.

awscritical service: aws:ssm emits ContainsCredential

Where it sits

locationListCommands.Commands[].Parameters
location kindcommand_argument
data kindscredential password api_key access_key secret_key connection_string
emits edgeContainsCredential
serviceSystems Manager (aws:ssm)

Collection recipe

access moderead_api
operationListCommands
response pathCommands[].Parameters.<value>
encodingmap
params{"CommandId": "\u003ccommand-id\u003e"}

Required permissions

ssm:ListCommands

References

move · open · esc close