Amazon IAM website screenshot

Amazon IAM

Amazon Identity and Access Management (IAM) enables you to manage access to AWS services and resources securely. Using IAM, you can create and manage AWS users, groups, roles, and policies, and use permissions to allow and deny their access to AWS resources. IAM is a feature of your AWS account offered at no additional charge.

Amazon IAM publishes 5 APIs on the APIs.io network, including Access Keys API, Groups API, Policies API, and 2 more. Tagged areas include Access Management, Authentication, Authorization, Identity, and Security.

The Amazon IAM catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.

Amazon IAM’s developer surface includes authentication, developer portal, documentation, support, engineering blog, developer console, signup flow, and 17 more developer resources.

65.8/100 strong ▬ flat Agent 31/100 agent aware Full breakdown ↓
scored 2026-07-28 · rubric v0.6
AccessFreemiumSelf serve⚡ Free to try
5 APIs 7 Features 5 Use Cases
Access ManagementAuthenticationAuthorizationIdentitySecurity

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-28 · rubric v0.6
Composite quality — 65.8/100 · strong
Contract Quality 17.8 / 25
Developer Ergonomics 9.1 / 20
Commercial Clarity 16.3 / 20
Operational Transparency 6.8 / 13
Governance 8.3 / 12
Discoverability 7.4 / 10
Agent readiness — 31/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/amazon-iam: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 5

Individual APIs this provider publishes, each with its own machine-readable definition.

Amazon IAM Access Keys API

Operations for managing IAM access keys

Amazon IAM Groups API

Operations for managing IAM groups

Amazon IAM Policies API

Operations for managing IAM policies

Amazon IAM Roles API

Operations for managing IAM roles

Amazon IAM Users API

Operations for managing IAM users

Postman Collections 5

Ready-to-run Postman collections for exercising this provider's APIs.

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

Amazon IAM API

OPEN COLLECTION

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Amazon Iam Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Features 7

Notable capabilities this provider offers.

User Management

Create, manage, and delete IAM users with fine-grained permissions.

Role-Based Access Control

Define IAM roles that can be assumed by users, services, or applications.

Policy Management

Create and attach identity-based and resource-based policies to control access.

Multi-Factor Authentication

Enable MFA for IAM users to add an extra layer of security.

Access Key Management

Programmatically manage AWS access keys for long-term credentials.

Permission Boundaries

Use permission boundaries to define the maximum permissions an entity can have.

Service Control Policies

Centrally control the maximum available permissions across AWS accounts.

Scroll for all 7

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

Amazon Iam Context

0 classes · 6 properties

JSON-LD

Spectral Rules 2

Spectral governance rulesets for linting and validating these APIs.

Amazon IAM API Rules

5 rules · 4 warnings 1 info

SPECTRAL

Amazon IAM API Rules

25 rules · 9 errors 13 warnings 3 info

SPECTRAL

JSON Schema 20

Standalone JSON Schema definitions for this provider's data models.

AccessKey

5 properties

JSON SCHEMA

CreateAccessKeyResponse

1 properties

JSON SCHEMA

CreateGroupResponse

1 properties

JSON SCHEMA

CreatePolicyResponse

1 properties

JSON SCHEMA

CreateRoleResponse

1 properties

JSON SCHEMA

CreateUserResponse

1 properties

JSON SCHEMA

GetGroupResponse

1 properties

JSON SCHEMA

GetPolicyResponse

1 properties

JSON SCHEMA

GetRoleResponse

1 properties

JSON SCHEMA

GetUserResponse

1 properties

JSON SCHEMA

Group

5 properties

JSON SCHEMA

ListAccessKeysResponse

1 properties

JSON SCHEMA

ListGroupsResponse

1 properties

JSON SCHEMA

ListPoliciesResponse

1 properties

JSON SCHEMA

ListRolesResponse

1 properties

JSON SCHEMA

ListUsersResponse

1 properties

JSON SCHEMA

Policy

10 properties

JSON SCHEMA

Role

9 properties

JSON SCHEMA

Tag

2 properties

JSON SCHEMA

AWS IAM User

8 properties

JSON SCHEMA

Scroll for all 20

JSON Structure 20

JSON Structure definitions describing this provider's data shapes.

Amazon Iam Access Key Structure

5 properties

JSON STRUCTURE

Amazon Iam Create Group Response Structure

1 properties

JSON STRUCTURE

Amazon Iam Create Role Response Structure

1 properties

JSON STRUCTURE

Amazon Iam Create User Response Structure

1 properties

JSON STRUCTURE

Amazon Iam Get Group Response Structure

1 properties

JSON STRUCTURE

Amazon Iam Get Policy Response Structure

1 properties

JSON STRUCTURE

Amazon Iam Get Role Response Structure

1 properties

JSON STRUCTURE

Amazon Iam Get User Response Structure

1 properties

JSON STRUCTURE

Amazon Iam Group Structure

5 properties

JSON STRUCTURE

Amazon Iam List Groups Response Structure

1 properties

JSON STRUCTURE

Amazon Iam List Roles Response Structure

1 properties

JSON STRUCTURE

Amazon Iam List Users Response Structure

1 properties

JSON STRUCTURE

Amazon Iam Policy Structure

10 properties

JSON STRUCTURE

Amazon Iam Role Structure

9 properties

JSON STRUCTURE

Amazon Iam Tag Structure

2 properties

JSON STRUCTURE

Amazon Iam User Structure

8 properties

JSON STRUCTURE

Scroll for all 20

Examples 20

Example request and response payloads for these APIs.

Amazon Iam Group Example

5 fields

EXAMPLE

Amazon Iam Policy Example

10 fields

EXAMPLE

Amazon Iam Role Example

9 fields

EXAMPLE

Amazon Iam Tag Example

2 fields

EXAMPLE

Amazon Iam User Example

8 fields

EXAMPLE

Scroll for all 20

Security Posture 4

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Amazon Iam Authentication

apiKey · 1 scheme

SECURITY

Amazon Iam Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Amazon Iam Vulnerability Disclosure

security.txt · contact published

SECURITY

Amazon Iam Trust Center

PCI DSS, HIPAA, FedRAMP, GDPR, FIPS 140

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Amazon Iam Agentic Access

25 operations

25 operations · 0 acting

AGENTIC

Use Cases 5

What developers build with this provider.

Least Privilege Access

Grant only the permissions required for specific tasks to reduce the attack surface.

Cross-Account Access

Enable users in one AWS account to assume roles in another account.

Service-to-Service Authorization

Allow AWS services to access other services on your behalf through service roles.

Temporary Credentials

Use STS to issue temporary security credentials for short-lived access.

Security Compliance

Audit IAM configurations to ensure compliance with security policies and regulations.

Resources

Get Started 4

Portal, sign-up, and the first successful call

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 3

Pagination, idempotency, versioning, errors, and events

Build 2

SDKs, sample code, and the tooling you integrate with

Access & Security 4

Authentication, authorization, and security posture

Learn 1

Tutorials, courses, talks, and written guidance

Operate 4

Status, limits, changes, and where to get help

Commercial 2

Pricing, plans, and the legal terms of use

Company 2

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: amazon-iam
name: Amazon IAM
description: Amazon Identity and Access Management (IAM) enables you to manage access to AWS services and resources securely.
  Using IAM, you can create and manage AWS users, groups, roles, and policies, and use permissions to allow and deny their
  access to AWS resources. IAM is a feature of your AWS account offered at no additional charge.
type: Index
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/amazon-iam.png
url: https://raw.githubusercontent.com/api-evangelist/amazon-iam/refs/heads/main/apis.yml
baseURL: https://iam.amazonaws.com
tags:
- Access Management
- Authentication
- Authorization
- AWS
- Identity
- Security
created: '2026-03-16'
modified: '2026-05-19'
specificationVersion: '0.19'
apis:
- aid: amazon-iam:amazon-iam-access-keys-api
  name: Amazon IAM Access Keys API
  description: Operations for managing IAM access keys
  humanURL: https://aws.amazon.com/iam/
  baseURL: https://iam.amazonaws.com
  tags:
  - Access Keys
  properties:
  - type: OpenAPI
    url: openapi/amazon-iam-access-keys-api-openapi.yml
  - type: Documentation
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: APIReference
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: GettingStarted
    url: https://docs.aws.amazon.com/IAM/latest/UserGuide/getting-started.html
  - type: Pricing
    url: https://aws.amazon.com/iam/pricing/
  - type: FAQ
    url: https://aws.amazon.com/iam/faqs/
  - type: JSONSchema
    url: json-schema/amazon-iam-user-schema.json
  - type: JSONStructure
    url: json-structure/amazon-iam-user-structure.json
  - type: Examples
    url: examples/amazon-iam-user-example.json
- aid: amazon-iam:amazon-iam-groups-api
  name: Amazon IAM Groups API
  description: Operations for managing IAM groups
  humanURL: https://aws.amazon.com/iam/
  baseURL: https://iam.amazonaws.com
  tags:
  - Groups
  properties:
  - type: OpenAPI
    url: openapi/amazon-iam-groups-api-openapi.yml
  - type: Documentation
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: APIReference
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: GettingStarted
    url: https://docs.aws.amazon.com/IAM/latest/UserGuide/getting-started.html
  - type: Pricing
    url: https://aws.amazon.com/iam/pricing/
  - type: FAQ
    url: https://aws.amazon.com/iam/faqs/
  - type: JSONSchema
    url: json-schema/amazon-iam-user-schema.json
  - type: JSONStructure
    url: json-structure/amazon-iam-user-structure.json
  - type: Examples
    url: examples/amazon-iam-user-example.json
- aid: amazon-iam:amazon-iam-policies-api
  name: Amazon IAM Policies API
  description: Operations for managing IAM policies
  humanURL: https://aws.amazon.com/iam/
  baseURL: https://iam.amazonaws.com
  tags:
  - Policies
  properties:
  - type: OpenAPI
    url: openapi/amazon-iam-policies-api-openapi.yml
  - type: Documentation
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: APIReference
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: GettingStarted
    url: https://docs.aws.amazon.com/IAM/latest/UserGuide/getting-started.html
  - type: Pricing
    url: https://aws.amazon.com/iam/pricing/
  - type: FAQ
    url: https://aws.amazon.com/iam/faqs/
  - type: JSONSchema
    url: json-schema/amazon-iam-user-schema.json
  - type: JSONStructure
    url: json-structure/amazon-iam-user-structure.json
  - type: Examples
    url: examples/amazon-iam-user-example.json
- aid: amazon-iam:amazon-iam-roles-api
  name: Amazon IAM Roles API
  description: Operations for managing IAM roles
  humanURL: https://aws.amazon.com/iam/
  baseURL: https://iam.amazonaws.com
  tags:
  - Roles
  properties:
  - type: OpenAPI
    url: openapi/amazon-iam-roles-api-openapi.yml
  - type: Documentation
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: APIReference
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: GettingStarted
    url: https://docs.aws.amazon.com/IAM/latest/UserGuide/getting-started.html
  - type: Pricing
    url: https://aws.amazon.com/iam/pricing/
  - type: FAQ
    url: https://aws.amazon.com/iam/faqs/
  - type: JSONSchema
    url: json-schema/amazon-iam-user-schema.json
  - type: JSONStructure
    url: json-structure/amazon-iam-user-structure.json
  - type: Examples
    url: examples/amazon-iam-user-example.json
- aid: amazon-iam:amazon-iam-users-api
  name: Amazon IAM Users API
  description: Operations for managing IAM users
  humanURL: https://aws.amazon.com/iam/
  baseURL: https://iam.amazonaws.com
  tags:
  - Users
  properties:
  - type: OpenAPI
    url: openapi/amazon-iam-users-api-openapi.yml
  - type: Documentation
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: APIReference
    url: https://docs.aws.amazon.com/IAM/latest/APIReference/
  - type: GettingStarted
    url: https://docs.aws.amazon.com/IAM/latest/UserGuide/getting-started.html
  - type: Pricing
    url: https://aws.amazon.com/iam/pricing/
  - type: FAQ
    url: https://aws.amazon.com/iam/faqs/
  - type: JSONSchema
    url: json-schema/amazon-iam-user-schema.json
  - type: JSONStructure
    url: json-structure/amazon-iam-user-structure.json
  - type: Examples
    url: examples/amazon-iam-user-example.json
common:
- type: PostmanWorkspace
  url: https://www.postman.com/kinlaneapi/amazon-iam/overview
- type: AgenticAccess
  url: agentic-access/amazon-iam-agentic-access.yml
- type: TrustCenter
  url: security/amazon-iam-trust-center.yml
- type: VulnerabilityDisclosure
  url: security/amazon-iam-vulnerability-disclosure.yml
- type: DomainSecurity
  url: security/amazon-iam-domain-security.yml
- type: Authentication
  url: authentication/amazon-iam-authentication.yml
- type: Portal
  url: https://aws.amazon.com/iam/
- type: Website
  url: https://aws.amazon.com/iam/
- type: Documentation
  url: https://docs.aws.amazon.com/IAM/latest/UserGuide/
- type: TermsOfService
  url: https://aws.amazon.com/service-terms/
- type: PrivacyPolicy
  url: https://aws.amazon.com/privacy/
- type: Support
  url: https://aws.amazon.com/support/
- type: Blog
  url: https://aws.amazon.com/blogs/security/
- type: GitHubOrganization
  url: https://github.com/aws
- type: Console
  url: https://console.aws.amazon.com/iam/
- type: Signup
  url: https://portal.aws.amazon.com/billing/signup
- type: Login
  url: https://signin.aws.amazon.com/
- type: StatusPage
  url: https://health.aws.amazon.com/health/status
- type: YouTube
  url: https://www.youtube.com/user/AmazonWebServices
- type: StackOverflow
  url: https://stackoverflow.com/questions/tagged/amazon-iam
- type: Contact
  url: https://aws.amazon.com/contact-us/
- type: JSONLD
  url: json-ld/amazon-iam-context.jsonld
- type: SpectralRules
  url: rules/amazon-iam-spectral-rules.yml
- type: Vocabulary
  url: vocabulary/amazon-iam-vocabulary.yaml
- type: Features
  data:
  - name: User Management
    description: Create, manage, and delete IAM users with fine-grained permissions.
  - name: Role-Based Access Control
    description: Define IAM roles that can be assumed by users, services, or applications.
  - name: Policy Management
    description: Create and attach identity-based and resource-based policies to control access.
  - name: Multi-Factor Authentication
    description: Enable MFA for IAM users to add an extra layer of security.
  - name: Access Key Management
    description: Programmatically manage AWS access keys for long-term credentials.
  - name: Permission Boundaries
    description: Use permission boundaries to define the maximum permissions an entity can have.
  - name: Service Control Policies
    description: Centrally control the maximum available permissions across AWS accounts.
- type: UseCases
  data:
  - name: Least Privilege Access
    description: Grant only the permissions required for specific tasks to reduce the attack surface.
  - name: Cross-Account Access
    description: Enable users in one AWS account to assume roles in another account.
  - name: Service-to-Service Authorization
    description: Allow AWS services to access other services on your behalf through service roles.
  - name: Temporary Credentials
    description: Use STS to issue temporary security credentials for short-lived access.
  - name: Security Compliance
    description: Audit IAM configurations to ensure compliance with security policies and regulations.
- type: Integrations
  data:
  - name: AWS Organizations
    description: Apply Service Control Policies across multiple AWS accounts in an organization.
  - name: AWS CloudTrail
    description: Log all IAM API calls for auditing and compliance tracking.
  - name: AWS Config
    description: Monitor IAM configuration changes and evaluate compliance with rules.
  - name: AWS Security Hub
    description: Centralize IAM security findings with other AWS security services.
  - name: Amazon Cognito
    description: Federate Cognito user pool identities with IAM roles for application access.
- type: Integrations
  url: https://aws.amazon.com/marketplace
integrations:
- name: Sign in
- name: Agent Mode
- name: Why AWS Marketplace?
- name: Get started in AWS Marketplace
- name: Industry
- name: Resources
- name: Become a Channel Partner
- name: Sell in AWS Marketplace
- name: Manage Your Account
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com