AWS FinOps Agent is in preview release and is subject to change.
AWS managed policies for AWS FinOps Agent
AWS managed policies are standalone identity-based policies that AWS creates and maintains. AWS FinOps Agent uses the following managed policies for the roles it assumes. If you configure roles manually, see the IAM setup guide.
AWS managed policy: FinOpsAgentAgentPolicy
Attach FinOpsAgentAgentPolicy to the agent role. AWS FinOps Agent assumes this role when it reads the cost, optimization, and infrastructure data that supports agent workflows.
For instructions on setting up the agent role, see Agent permissions policy.
For more information about the current policy document, see FinOpsAgentAgentPolicy in the AWS Managed Policy Reference.
AWS managed policy: FinOpsAgentOperatorPolicy
Attach FinOpsAgentOperatorPolicy to the operator role. AWS FinOps Agent assumes this role to perform web application operations, including conversations, tasks, automations, context files, and reports.
For instructions on setting up the operator role, see Operator permissions policy.
For more information about the current policy document, see FinOpsAgentOperatorPolicy in the AWS Managed Policy Reference.