{"product_id":"ai-access-diagnostics-skill-for-claude-codex-permissions","title":"AI Access Diagnostics Skill for Claude \u0026 Codex Permissions","description":"\u003ch3\u003eAI Access Diagnostics Skill for Claude \u0026amp; Codex Permissions\u003c\/h3\u003e\n\u003cp\u003e\nThe AI Access Diagnostics Skill assists developers in diagnosing IAM and access failures related to AWS Bedrock and SageMaker. By tracing the authorization chain, it identifies the specific point of denial and proposes a scoped IAM policy for review, ensuring a comprehensive understanding of access issues without modifying any permissions.\n\u003c\/p\u003e\n\n\u003ch3\u003eWhat this skill does\u003c\/h3\u003e\n\u003cul\u003e\n    \u003cli\u003eClassifies the request by confirming that the service in question is either Bedrock or SageMaker, and verifies the existence of an observed failure.\u003c\/li\u003e\n    \u003cli\u003eTraces the authorization chain, including caller identity, \u003ccode\u003eiam:PassRole\u003c\/code\u003e, trust policies, role permissions, resource policies, and SCPs.\u003c\/li\u003e\n    \u003cli\u003eIdentifies the denying hop in the authorization chain when a permission-related failure occurs.\u003c\/li\u003e\n    \u003cli\u003eProposes a scoped IAM policy for human review, facilitating potential resolutions.\u003c\/li\u003e\n    \u003cli\u003eAddresses access denial errors such as \u003ccode\u003eInvokeModel\u003c\/code\u003e or \u003ccode\u003eConverse AccessDeniedException\u003c\/code\u003e, and issues related to execution roles accessing S3, ECR, or KMS.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eWho it is for\u003c\/h3\u003e\n\u003cul\u003e\n    \u003cli\u003eDevelopers and technical teams using Claude Code, Cursor, or Codex who work with AI\/ML services on AWS and encounter IAM-related access issues.\u003c\/li\u003e\n    \u003cli\u003eSystem administrators managing complex IAM configurations within AI\/ML workflows.\u003c\/li\u003e\n    \u003cli\u003eTeams responsible for debugging and resolving authorization failures in AI\/ML applications.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eUse cases\u003c\/h3\u003e\n\u003cul\u003e\n    \u003cli\u003eInvestigating and resolving access denials when a Bedrock or SageMaker service call fails.\u003c\/li\u003e\n    \u003cli\u003eIdentifying and understanding the root cause of an \"is not authorized to perform\" error message.\u003c\/li\u003e\n    \u003cli\u003eDiagnosing execution role failures in accessing resources like S3, ECR, or KMS.\u003c\/li\u003e\n    \u003cli\u003eAnalyzing Marketplace and model-subscription denials that are not directly attributed to IAM gaps.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eTechnical details\u003c\/h3\u003e\n\u003cul\u003e\n    \u003cli\u003eWorks with Claude Code, Cursor, and Codex to facilitate AI\/ML access diagnostics.\u003c\/li\u003e\n    \u003cli\u003eUtilizes existing IAM configurations to trace the complete authorization process for AI\/ML services.\u003c\/li\u003e\n    \u003cli\u003eProvides read-only insights to ensure no changes to configurations are made automatically.\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003c!-- mcpcart:static-blocks:start --\u003e\n\u003chr\u003e\n\u003ch3\u003eSource \u0026amp; Licence\u003c\/h3\u003e\n\u003cp\u003eThis package is built on open-source work published by \u003cstrong\u003eaws\u003c\/strong\u003e (\u003ca href=\"https:\/\/github.com\/aws\/tools-for-devops-agent\" rel=\"nofollow noopener\" target=\"_blank\"\u003eaws\/tools-for-devops-agent\u003c\/a\u003e) and distributed under \u003cstrong\u003eApache-2.0\u003c\/strong\u003e. The original licence text and copyright notice are included in your download.\u003c\/p\u003e\n\u003cp\u003ePersonal and commercial use, modification and redistribution are permitted under the Apache License 2.0, which also includes an express patent grant. Attribution and any NOTICE file must be retained.\u003c\/p\u003e\n\u003cp\u003eYour purchase covers curation, licence verification, packaging, documentation and instant delivery. It does not grant exclusive rights to the underlying open-source code, which remains available under its original licence.\u003c\/p\u003e\n\u003ch3\u003eDelivery \u0026amp; Support\u003c\/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cstrong\u003eDelivery:\u003c\/strong\u003e instant — a secure download link is emailed to you as soon as payment is confirmed.\u003c\/li\u003e\n\u003cli\u003e\n\u003cstrong\u003eFormat:\u003c\/strong\u003e ZIP archive containing the skill files, documentation and the original licence.\u003c\/li\u003e\n\u003cli\u003e\n\u003cstrong\u003eSupport:\u003c\/strong\u003e \u003ca href=\"mailto:support@mcpcart.com\"\u003esupport@mcpcart.com\u003c\/a\u003e — we aim to reply within 2 business days.\u003c\/li\u003e\n\u003cli\u003e\n\u003cstrong\u003eUpdates:\u003c\/strong\u003e updates are included only where stated on this page.\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003ch3\u003eRefunds\u003c\/h3\u003e\n\u003cp\u003eThis is a digital product delivered immediately after purchase. By completing your order you request immediate delivery and acknowledge that, once the download has been accessed, the statutory right to cancel no longer applies to the extent permitted by law. Refund requests are handled in accordance with our published Refund Policy.\u003c\/p\u003e\n\u003cp style=\"font-size:0.85em;color:#666;\"\u003eClaude, Codex, Gemini and Cursor are trademarks of their respective owners. MCP Cart is an independent marketplace and is not affiliated with, endorsed by, or sponsored by any of them. Compatibility references describe interoperability only.\u003c\/p\u003e\n\u003c!-- mcpcart:static-blocks:end --\u003e","brand":"MCP Cart","offers":[{"title":"Default Title","offer_id":53042721947959,"sku":"MCP-AWS-TOOLS-FOR-DEVOPS-AGENT-AIML-ACCESS-DIAGNOSTICS","price":46.99,"currency_code":"GBP","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0981\/3950\/4951\/files\/VyYIkKk53Vw6sJQeRp2Hi_a54351fba62340ccb6b094618e0a603d.jpg?v=1790254997","url":"https:\/\/mcpcart.com\/products\/ai-access-diagnostics-skill-for-claude-codex-permissions","provider":"SPF PRO","version":"1.0","type":"link"}