{"slug":"iam-aws-lambda","cloud":"aws","service":"lambda","title":"AWS Lambda (IAM)","description":"AWS Lambda lets you run code without provisioning or managing servers, scaling automatically.","category":"compute","common_permissions":["lambda:CreateFunction","lambda:DeleteFunction","lambda:InvokeFunction","lambda:GetFunction","lambda:ListFunctions","lambda:UpdateFunctionCode","lambda:TagResource","lambda:UntagResource"],"least_privilege_example":"{\n  \"Version\": \"2012-10-17\",\n  \"Statement\": [\n    {\n      \"Effect\": \"Allow\",\n      \"Action\": [\n        \"lambda:CreateFunction\",\n        \"lambda:DeleteFunction\",\n        \"lambda:InvokeFunction\",\n        \"lambda:GetFunction\",\n        \"lambda:ListFunctions\",\n        \"lambda:UpdateFunctionCode\",\n        \"lambda:TagResource\",\n        \"lambda:UntagResource\"\n      ],\n      \"Resource\": \"*\"\n    }\n  ]\n}","warnings":["Avoid lambda:* — grants full control including deletion and modification of functions.","Avoid lambda:InvokeFunction without resource constraints — can lead to unintended invocations."],"docs":"https://servicereference.us-east-1.amazonaws.com/v1/lambda/lambda.json","tags":["iam","aws"],"last_verified":"2026-06-14T00:00:00.000Z","next_check":"2026-12-11T00:00:00.000Z","created_at":"2026-06-14T04:48:32.466Z","updated_at":"2026-06-14T04:48:32.466Z"}