To access a shared report group, a consumer's IAM role requires the
BatchGetReportGroups
permission. You can attach the following policy to their IAM role:
{
"Effect": "Allow",
"Resource": [
"*"
],
"Action": [
"codebuild:BatchGetReportGroups"
]
}
For more information, see Using identity-based policies for AWS CodeBuild.