AWS Security ChangesHomeSearch

AWS tag-editor: Update IAM and STS documentation links

Service: tag-editor · 2026-08-19 · Documentation low

File: tag-editor/latest/userguide/security_iam_service-with-iam.md

Summary

Resolved URL formatting issues in references to IAM and STS documentation.

Security assessment

The update corrects hyperlinks for IAM and STS documentation. This is a non-functional maintenance change with no security implications.

Evidence

+With IAM identity-based policies, you can specify allowed or denied actions and resources in addition to the conditions under which actions are allowed or denied. Tag Editor supports specific actions, resources, and condition keys. To learn about all of the elements that you use in a JSON policy, see [IAM JSON policy elements reference](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements.html) in the _IAM User Guide_.

Diff

diff --git a/tag-editor/latest/userguide/security_iam_service-with-iam.md b/tag-editor/latest/userguide/security_iam_service-with-iam.md
index 2234db9b9..07e0f52c1 100644
--- a//tag-editor/latest/userguide/security_iam_service-with-iam.md
+++ b//tag-editor/latest/userguide/security_iam_service-with-iam.md
@@ -28 +28 @@ Before you use IAM to manage access to Tag Editor, you should understand what IA
-With IAM identity-based policies, you can specify allowed or denied actions and resources in addition to the conditions under which actions are allowed or denied. Tag Editor supports specific actions, resources, and condition keys. To learn about all of the elements that you use in a JSON policy, see [IAM JSON policy elements reference](https://docs.aws.amazon.com//IAM/latest/UserGuide/reference_policies_elements.html) in the _IAM User Guide_.
+With IAM identity-based policies, you can specify allowed or denied actions and resources in addition to the conditions under which actions are allowed or denied. Tag Editor supports specific actions, resources, and condition keys. To learn about all of the elements that you use in a JSON policy, see [IAM JSON policy elements reference](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements.html) in the _IAM User Guide_.
@@ -86 +86 @@ Authorization based on tags is part of the security strategy called attribute-ba
-To control access to a resource based on its tags, you provide tag information in the [condition element](https://docs.aws.amazon.com//IAM/latest/UserGuide/reference_policies_elements_condition.html) of a policy using the `aws:ResourceTag/`key-name``, `aws:RequestTag/`key-name``, or `aws:TagKeys` condition keys. You can apply tags to a resource when you are creating or updating the resource.
+To control access to a resource based on its tags, you provide tag information in the [condition element](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements_condition.html) of a policy using the `aws:ResourceTag/`key-name``, `aws:RequestTag/`key-name``, or `aws:TagKeys` condition keys. You can apply tags to a resource when you are creating or updating the resource.
@@ -92 +92 @@ To view an example identity-based policy for limiting access to a resource based
-An [IAM role](https://docs.aws.amazon.com//IAM/latest/UserGuide/id_roles.html) is an entity within your AWS account that has specific permissions. Tag Editor does not have or use service roles.
+An [IAM role](https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles.html) is an entity within your AWS account that has specific permissions. Tag Editor does not have or use service roles.
@@ -96 +96 @@ An [IAM role](https://docs.aws.amazon.com//IAM/latest/UserGuide/id_roles.html) i
-In Tag Editor, you can use temporary credentials to sign in with federation, assume an IAM role, or to assume a cross-account role. You obtain temporary security credentials by calling AWS STS API operations such as [AssumeRole](https://docs.aws.amazon.com//STS/latest/APIReference/API_AssumeRole.html) or [GetFederationToken](https://docs.aws.amazon.com//STS/latest/APIReference/API_GetFederationToken.html).
+In Tag Editor, you can use temporary credentials to sign in with federation, assume an IAM role, or to assume a cross-account role. You obtain temporary security credentials by calling AWS STS API operations such as [AssumeRole](https://docs.aws.amazon.com/STS/latest/APIReference/API_AssumeRole.html) or [GetFederationToken](https://docs.aws.amazon.com/STS/latest/APIReference/API_GetFederationToken.html).
@@ -100 +100 @@ In Tag Editor, you can use temporary credentials to sign in with federation, ass
-[Service-linked roles](https://docs.aws.amazon.com//IAM/latest/UserGuide/id_roles_terms-and-concepts.html#iam-term-service-linked-role) allow AWS services to access resources in other services to complete an action on your behalf.
+[Service-linked roles](https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles_terms-and-concepts.html#iam-term-service-linked-role) allow AWS services to access resources in other services to complete an action on your behalf.
@@ -106 +106 @@ Tag Editor does not have or use service-linked roles.
-This feature allows a service to assume a [service role](https://docs.aws.amazon.com//IAM/latest/UserGuide/id_roles_terms-and-concepts.html#iam-term-service-role) on your behalf.
+This feature allows a service to assume a [service role](https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles_terms-and-concepts.html#iam-term-service-role) on your behalf.