
from agent-toolkit-for-aws575
Verified guidance on AWS IAM edge-cases, pitfalls, and gotchas for agents working with roles, policies, STS, Organizations, and SAML/MFA.
This skill captures verified corrections and edge-case knowledge about AWS IAM, STS, Organizations, and SAML/MFA that agents commonly misunderstand. It steers agent answers toward official documentation for authoritative claims and lists concrete pitfalls, limits, and policy-evaluation nuances.
Use this skill when configuring or auditing IAM roles, policies, cross-account AssumeRole flows, STS sessions, or organization-level operations. Also useful when generating or validating trust policies, SAML assertions, or diagnosing privilege escalation risks.
Ideal for agents answering AWS architecture, security, or DevOps questions (e.g., agents integrated with AWS SDKs, developer or security-engineer personas).
This skill has not been reviewed by our automated audit pipeline yet.