CanDeleteData
Destructive impact; not escalation.
Identity, Compute
── CanDeleteData ──▸
Storage, Data
Source types
IdentityComputeTarget types
StorageDataStates
ACTIVE
CONDITIONAL
POTENTIAL
BLOCKED
UNKNOWN
Derivation
| nature | derived |
|---|
Rules that emit CanDeleteData 2
Principal with neptune-db:connect and neptune-db:DeleteDataViaQuery on the cluster resource ARN can execute delete queries and erase graph data.
awsderived
Principal with es:ESHttpDelete on the domain can delete documents and indices (destructive impact, not escalation).
awsderived