Skip to content

Secrets Manager  >  Operations  >  delete_resource_policy

delete_resource_policy

Operation

delete_resource_policy async

delete_resource_policy(input: DeleteResourcePolicyInput, plugins: list[Plugin] | None = None) -> DeleteResourcePolicyOutput

Deletes the resource-based permission policy attached to the secret. To attach a policy to a secret, use PutResourcePolicy.

Secrets Manager generates a CloudTrail log entry when you call this action. Do not include sensitive information in request parameters because it might be logged. For more information, see Logging Secrets Manager events with CloudTrail.

Required permissions: secretsmanager:DeleteResourcePolicy. For more information, see IAM policy actions for Secrets Manager and Authentication and access control in Secrets Manager.

Parameters:

Name Type Description Default
input DeleteResourcePolicyInput

An instance of DeleteResourcePolicyInput.

required
plugins list[Plugin] | None

A list of callables that modify the configuration dynamically. Changes made by these plugins only apply for the duration of the operation execution and will not affect any other operation invocations.

None

Returns:

Type Description
DeleteResourcePolicyOutput

An instance of DeleteResourcePolicyOutput.

Input

DeleteResourcePolicyInput dataclass

Dataclass for DeleteResourcePolicyInput structure.

Attributes

secret_id class-attribute instance-attribute
secret_id: str | None = None

The ARN or name of the secret to delete the attached resource-based policy for.

For an ARN, we recommend that you specify a complete ARN rather than a partial ARN. See Finding a secret from a partial ARN.

Output

DeleteResourcePolicyOutput dataclass

Dataclass for DeleteResourcePolicyOutput structure.

Attributes

arn class-attribute instance-attribute
arn: str | None = None

The ARN of the secret that the resource-based policy was deleted for.

name class-attribute instance-attribute
name: str | None = None

The name of the secret that the resource-based policy was deleted for.