

# Actions, resources, and condition keys for AWS CodeCommit
<a name="list_awscodecommit"></a>

AWS CodeCommit (service prefix: `codecommit`) provides the following service-specific resources, actions, and condition context keys for use in IAM permission policies.

References:
+ Learn how to [configure this service](https://docs.aws.amazon.com/codecommit/latest/userguide/welcome.html).
+ View a list of the [API operations available for this service](https://docs.aws.amazon.com/codecommit/latest/APIReference/Welcome.html).
+ Learn how to secure this service and its resources by [using IAM](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html) permission policies.

**Topics**
+ [Actions defined by AWS CodeCommit](#awscodecommit-actions-as-permissions)
+ [Resource types defined by AWS CodeCommit](#awscodecommit-resources-for-iam-policies)
+ [Condition keys for AWS CodeCommit](#awscodecommit-policy-keys)

## Actions defined by AWS CodeCommit
<a name="awscodecommit-actions-as-permissions"></a>

You can specify the following actions in the `Action` element of an IAM policy statement. Use policies to grant permissions to perform an operation in AWS. When you use an action in a policy, you usually allow or deny access to the API operation or CLI command with the same name. However, in some cases, a single action controls access to more than one operation. Alternatively, some operations require several different actions.

The **Access level** column of the Actions table describes how the action is classified (List, Read, Permissions management, or Tagging). This classification can help you understand the level of access that an action grants when you use it in a policy. For more information about access levels, see [Access levels in policy summaries](https://docs.aws.amazon.com/IAM/latest/UserGuide/access_policies_understand-policy-summary-access-level-summaries.html).

The **Resource types** column of the Actions table indicates whether each action supports resource-level permissions. If there is no value for this column, you must specify all resources ("\*") to which the policy applies in the `Resource` element of your policy statement. If the column includes a resource type, then you can specify an ARN of that type in a statement with that action. If the action has one or more required resources, the caller must have permission to use the action with those resources. Required resources are indicated in the table with an asterisk (\*). If you limit resource access with the `Resource` element in an IAM policy, you must include an ARN or pattern for each required resource type. Some actions support multiple resource types. If the resource type is optional (not indicated as required), then you can choose to use one of the optional resource types.

The **Condition keys** column of the Actions table includes keys that you can specify in a policy statement's `Condition` element. For more information on the condition keys that are associated with resources for the service, see the **Condition keys** column of the Resource types table.

The **Dependent actions** column of the Actions table shows additional permissions that may be required to successfully call an action. These permissions may be needed in addition to the permission for the action itself. When an action specifies dependent actions, those dependencies may apply to additional resources defined for that action, not only the first resource listed in the table.

**Note**  
Resource condition keys are listed in the [Resource types](#awscodecommit-resources-for-iam-policies) table. You can find a link to the resource type that applies to an action in the **Resource types (\*required)** column of the Actions table. The resource type in the Resource types table includes the **Condition keys** column, which are the resource condition keys that apply to an action in the Actions table.

For details about the columns in the following table, see [Actions table](reference_policies_actions-resources-contextkeys.html#actions_table).


****  


- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_AssociateApprovalRuleTemplateWithRepository.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_AssociateApprovalRuleTemplateWithRepository.html) **
  - **Description:** Grants permission to associate an approval rule template with a repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchAssociateApprovalRuleTemplateWithRepositories.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchAssociateApprovalRuleTemplateWithRepositories.html) **
  - **Description:** Grants permission to associate an approval rule template with multiple repositories in a single operation
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchDescribeMergeConflicts.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchDescribeMergeConflicts.html) **
  - **Description:** Grants permission to get information about multiple merge conflicts when attempting to merge two commits using either the three-way merge or the squash merge option
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchDisassociateApprovalRuleTemplateFromRepositories.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchDisassociateApprovalRuleTemplateFromRepositories.html) **
  - **Description:** Grants permission to remove the association between an approval rule template and multiple repositories in a single operation
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchGetCommits.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchGetCommits.html) **
  - **Description:** Grants permission to return information about one or more commits in an AWS CodeCommit repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-pr](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-pr) [permission only]**
  - **Description:** Grants permission to return information about one or more pull requests in an AWS CodeCommit repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchGetRepositories.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_BatchGetRepositories.html) **
  - **Description:** Grants permission to get information about multiple repositories
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-acp](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-acp) [permission only]**
  - **Description:** Grants permission to cancel the uploading of an archive to a pipeline in AWS CodePipeline
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateApprovalRuleTemplate.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateApprovalRuleTemplate.html) **
  - **Description:** Grants permission to create an approval rule template that will automatically create approval rules in pull requests that match the conditions defined in the template; does not grant permission to create approval rules for individual pull requests
  - **Access level:** Write
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateBranch.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateBranch.html) **
  - **Description:** Grants permission to create a branch in an AWS CodeCommit repository with this API; does not control Git create branch actions
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateCommit.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateCommit.html) **
  - **Description:** Grants permission to add, copy, move or update single or multiple files in a branch in an AWS CodeCommit repository, and generate a commit for the changes in the specified branch
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreatePullRequest.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreatePullRequest.html) **
  - **Description:** Grants permission to create a pull request in the specified repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreatePullRequestApprovalRule.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreatePullRequestApprovalRule.html) **
  - **Description:** Grants permission to create an approval rule specific to an individual pull request; does not grant permission to create approval rule templates
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateRepository.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateRepository.html) **
  - **Description:** Grants permission to create an AWS CodeCommit repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-aws_RequestTag___TagKey_](#awscodecommit-aws_RequestTag___TagKey_) <br /> [#awscodecommit-aws_TagKeys](#awscodecommit-aws_TagKeys)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateUnreferencedMergeCommit.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_CreateUnreferencedMergeCommit.html) **
  - **Description:** Grants permission to create an unreferenced commit that contains the result of merging two commits using either the three-way or the squash merge option; does not control Git merge actions
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteApprovalRuleTemplate.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteApprovalRuleTemplate.html) **
  - **Description:** Grants permission to delete an approval rule template
  - **Access level:** Write
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteBranch.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteBranch.html) **
  - **Description:** Grants permission to delete a branch in an AWS CodeCommit repository with this API; does not control Git delete branch actions
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteCommentContent.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteCommentContent.html) **
  - **Description:** Grants permission to delete the content of a comment made on a change, file, or commit in a repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteFile.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteFile.html) **
  - **Description:** Grants permission to delete a specified file from a specified branch
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeletePullRequestApprovalRule.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeletePullRequestApprovalRule.html) **
  - **Description:** Grants permission to delete approval rule created for a pull request if the rule was not created by an approval rule template
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteRepository.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DeleteRepository.html) **
  - **Description:** Grants permission to delete an AWS CodeCommit repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DescribeMergeConflicts.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DescribeMergeConflicts.html) **
  - **Description:** Grants permission to get information about specific merge conflicts when attempting to merge two commits using either the three-way or the squash merge option
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DescribePullRequestEvents.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DescribePullRequestEvents.html) **
  - **Description:** Grants permission to return information about one or more pull request events
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DisassociateApprovalRuleTemplateFromRepository.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_DisassociateApprovalRuleTemplateFromRepository.html) **
  - **Description:** Grants permission to remove the association between an approval rule template and a repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_EvaluatePullRequestApprovalRules.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_EvaluatePullRequestApprovalRules.html) **
  - **Description:** Grants permission to evaluate whether a pull request is mergable based on its current approval state and approval rule requirements
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetApprovalRuleTemplate.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetApprovalRuleTemplate.html) **
  - **Description:** Grants permission to return information about an approval rule template
  - **Access level:** Read
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetBlob.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetBlob.html) **
  - **Description:** Grants permission to view the encoded content of an individual file in an AWS CodeCommit repository from the AWS CodeCommit console
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetBranch.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetBranch.html) **
  - **Description:** Grants permission to get details about a branch in an AWS CodeCommit repository with this API; does not control Git branch actions
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetComment.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetComment.html) **
  - **Description:** Grants permission to get the content of a comment made on a change, file, or commit in a repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetCommentReactions.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetCommentReactions.html) **
  - **Description:** Grants permission to get the reactions on a comment
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetCommentsForComparedCommit.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetCommentsForComparedCommit.html) **
  - **Description:** Grants permission to get information about comments made on the comparison between two commits
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetCommentsForPullRequest.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetCommentsForPullRequest.html) **
  - **Description:** Grants permission to get comments made on a pull request
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetCommit.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetCommit.html) **
  - **Description:** Grants permission to return information about a commit, including commit message and committer information, with this API; does not control Git log actions
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-code](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-code) [permission only]**
  - **Description:** Grants permission to get information about the history of commits in a repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-pr](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-pr) [permission only]**
  - **Description:** Grants permission to get information about the difference between commits in the context of a potential merge
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetDifferences.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetDifferences.html) **
  - **Description:** Grants permission to view information about the differences between valid commit specifiers such as a branch, tag, HEAD, commit ID, or other fully qualified reference
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetFile.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetFile.html) **
  - **Description:** Grants permission to return the base-64 encoded contents of a specified file and its metadata
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetFolder.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetFolder.html) **
  - **Description:** Grants permission to return the contents of a specified folder in a repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetMergeCommit.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetMergeCommit.html) **
  - **Description:** Grants permission to get information about a merge commit created by one of the merge options for pull requests that creates merge commits. Not all merge options create merge commits. This permission does not control Git merge actions
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetMergeConflicts.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetMergeConflicts.html) **
  - **Description:** Grants permission to get information about merge conflicts between the before and after commit IDs for a pull request in a repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetMergeOptions.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetMergeOptions.html) **
  - **Description:** Grants permission to get information about merge options for pull requests that can be used to merge two commits; does not control Git merge actions
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-code](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-code) [permission only]**
  - **Description:** Grants permission to resolve blobs, trees, and commits to their identifier
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetPullRequest.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetPullRequest.html) **
  - **Description:** Grants permission to get information about a pull request in a specified repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetPullRequestApprovalStates.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetPullRequestApprovalStates.html) **
  - **Description:** Grants permission to retrieve the current approvals on an inputted pull request
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetPullRequestOverrideState.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetPullRequestOverrideState.html) **
  - **Description:** Grants permission to retrieve the current override state of a given pull request
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-code](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-code) [permission only]**
  - **Description:** Grants permission to get details about references in an AWS CodeCommit repository; does not control Git reference actions
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetRepository.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetRepository.html) **
  - **Description:** Grants permission to get information about an AWS CodeCommit repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetRepositoryTriggers.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_GetRepositoryTriggers.html) **
  - **Description:** Grants permission to get information about triggers configured for a repository
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-code](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-code) [permission only]**
  - **Description:** Grants permission to view the contents of a specified tree in an AWS CodeCommit repository from the AWS CodeCommit console
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-acp](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-acp) [permission only]**
  - **Description:** Grants permission to get status information about an archive upload to a pipeline in AWS CodePipeline
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-git](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-git) [permission only]**
  - **Description:** Grants permission to pull information from an AWS CodeCommit repository to a local repo
  - **Access level:** Read
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-git](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-git) [permission only]**
  - **Description:** Grants permission to push information from a local repo to an AWS CodeCommit repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListApprovalRuleTemplates.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListApprovalRuleTemplates.html) **
  - **Description:** Grants permission to list all approval rule templates in an AWS Region for the AWS account
  - **Access level:** List
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListAssociatedApprovalRuleTemplatesForRepository.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListAssociatedApprovalRuleTemplatesForRepository.html) **
  - **Description:** Grants permission to list approval rule templates that are associated with a repository
  - **Access level:** List
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListBranches.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListBranches.html) **
  - **Description:** Grants permission to list branches for an AWS CodeCommit repository with this API; does not control Git branch actions
  - **Access level:** List
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListFileCommitHistory.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListFileCommitHistory.html) **
  - **Description:** Grants permission to list commits and changes to a specified file
  - **Access level:** List
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListPullRequests.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListPullRequests.html) **
  - **Description:** Grants permission to list pull requests for a specified repository
  - **Access level:** List
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListRepositories.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListRepositories.html) **
  - **Description:** Grants permission to list information about AWS CodeCommit repositories in the current Region for your AWS account
  - **Access level:** List
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListRepositoriesForApprovalRuleTemplate.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListRepositoriesForApprovalRuleTemplate.html) **
  - **Description:** Grants permission to list repositories that are associated with an approval rule template
  - **Access level:** List
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListTagsForResource.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_ListTagsForResource.html) **
  - **Description:** Grants permission to list the resource attached to a CodeCommit resource ARN
  - **Access level:** List
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergeBranchesByFastForward.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergeBranchesByFastForward.html) **
  - **Description:** Grants permission to merge two commits into the specified destination branch using the fast-forward merge option
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergeBranchesBySquash.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergeBranchesBySquash.html) **
  - **Description:** Grants permission to merge two commits into the specified destination branch using the squash merge option
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergeBranchesByThreeWay.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergeBranchesByThreeWay.html) **
  - **Description:** Grants permission to merge two commits into the specified destination branch using the three-way merge option
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergePullRequestByFastForward.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergePullRequestByFastForward.html) **
  - **Description:** Grants permission to close a pull request and attempt to merge it into the specified destination branch for that pull request at the specified commit using the fast-forward merge option
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergePullRequestBySquash.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergePullRequestBySquash.html) **
  - **Description:** Grants permission to close a pull request and attempt to merge it into the specified destination branch for that pull request at the specified commit using the squash merge option
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergePullRequestByThreeWay.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_MergePullRequestByThreeWay.html) **
  - **Description:** Grants permission to close a pull request and attempt to merge it into the specified destination branch for that pull request at the specified commit using the three-way merge option
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_OverridePullRequestApprovalRules.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_OverridePullRequestApprovalRules.html) **
  - **Description:** Grants permission to override all approval rules for a pull request, including approval rules created by a template
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PostCommentForComparedCommit.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PostCommentForComparedCommit.html) **
  - **Description:** Grants permission to post a comment on the comparison between two commits
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PostCommentForPullRequest.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PostCommentForPullRequest.html) **
  - **Description:** Grants permission to post a comment on a pull request
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PostCommentReply.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PostCommentReply.html) **
  - **Description:** Grants permission to post a comment in reply to a comment on a comparison between commits or a pull request
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PutCommentReaction.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PutCommentReaction.html) **
  - **Description:** Grants permission to post a reaction on a comment
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PutFile.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PutFile.html) **
  - **Description:** Grants permission to add or update a file in a branch in an AWS CodeCommit repository, and generate a commit for the addition in the specified branch
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-codecommit_References](#awscodecommit-codecommit_References)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PutRepositoryTriggers.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_PutRepositoryTriggers.html) **
  - **Description:** Grants permission to create, update, or delete triggers for a repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_TagResource.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_TagResource.html) **
  - **Description:** Grants permission to attach resource tags to a CodeCommit resource ARN
  - **Access level:** Tagging
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-aws_ResourceTag___TagKey_](#awscodecommit-aws_ResourceTag___TagKey_) <br /> [#awscodecommit-aws_RequestTag___TagKey_](#awscodecommit-aws_RequestTag___TagKey_) <br /> [#awscodecommit-aws_TagKeys](#awscodecommit-aws_TagKeys)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_TestRepositoryTriggers.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_TestRepositoryTriggers.html) **
  - **Description:** Grants permission to test the functionality of repository triggers by sending information to the trigger target
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UntagResource.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UntagResource.html) **
  - **Description:** Grants permission to disassociate resource tags from a CodeCommit resource ARN
  - **Access level:** Tagging
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository)  / **Condition keys:**  / **Dependent actions:** 
  - **Resource types (\*required):**  / **Condition keys:**  [#awscodecommit-aws_TagKeys](#awscodecommit-aws_TagKeys) <br /> [#awscodecommit-aws_ResourceTag___TagKey_](#awscodecommit-aws_ResourceTag___TagKey_)  / **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateApprovalRuleTemplateContent.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateApprovalRuleTemplateContent.html) **
  - **Description:** Grants permission to update the content of approval rule templates; does not grant permission to update content of approval rules created specifically for pull requests
  - **Access level:** Write
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateApprovalRuleTemplateDescription.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateApprovalRuleTemplateDescription.html) **
  - **Description:** Grants permission to update the description of approval rule templates
  - **Access level:** Write
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateApprovalRuleTemplateName.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateApprovalRuleTemplateName.html) **
  - **Description:** Grants permission to update the name of approval rule templates
  - **Access level:** Write
  - **Resource types (\*required):** 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateComment.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateComment.html) **
  - **Description:** Grants permission to update the contents of a comment if the identity matches the identity used to create the comment
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateDefaultBranch.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateDefaultBranch.html) **
  - **Description:** Grants permission to change the default branch in an AWS CodeCommit repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestApprovalRuleContent.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestApprovalRuleContent.html) **
  - **Description:** Grants permission to update the content for approval rules created for a specific pull requests; does not grant permission to update approval rule content for rules created with an approval rule template
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestApprovalState.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestApprovalState.html) **
  - **Description:** Grants permission to update the approval state for pull requests
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestDescription.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestDescription.html) **
  - **Description:** Grants permission to update the description of a pull request
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestStatus.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestStatus.html) **
  - **Description:** Grants permission to update the status of a pull request
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestTitle.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdatePullRequestTitle.html) **
  - **Description:** Grants permission to update the title of a pull request
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateRepositoryDescription.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateRepositoryDescription.html) **
  - **Description:** Grants permission to change the description of an AWS CodeCommit repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateRepositoryEncryptionKey.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateRepositoryEncryptionKey.html) **
  - **Description:** Grants permission to change the AWS KMS encryption key used to encrypt and decrypt an AWS CodeCommit repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateRepositoryName.html](https://docs.aws.amazon.com/codecommit/latest/APIReference/API_UpdateRepositoryName.html) **
  - **Description:** Grants permission to change the name of an AWS CodeCommit repository
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 

- **  [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-acp](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control-permissions-reference.html#aa-acp) [permission only]**
  - **Description:** Grants permission to the service role for AWS CodePipeline to upload repository changes into a pipeline
  - **Access level:** Write
  - **Resource types (\*required):**  [#awscodecommit-repository](#awscodecommit-repository) 
  - **Condition keys:** 
  - **Dependent actions:** 



## Resource types defined by AWS CodeCommit
<a name="awscodecommit-resources-for-iam-policies"></a>

The following resource types are defined by this service and can be used in the `Resource` element of IAM permission policy statements. Each action in the [Actions table](#awscodecommit-actions-as-permissions) identifies the resource types that can be specified with that action. A resource type can also define which condition keys you can include in a policy. These keys are displayed in the last column of the Resource types table. For details about the columns in the following table, see [Resource types table](reference_policies_actions-resources-contextkeys.html#resources_table).


****  

| Resource types | ARN | Condition keys | 
| --- | --- | --- | 
|   [https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control.html#arn-formats](https://docs.aws.amazon.com/codecommit/latest/userguide/auth-and-access-control.html#arn-formats)  |  arn:${Partition}:codecommit:${Region}:${Account}:${RepositoryName}  |  [#awscodecommit-aws_ResourceTag___TagKey_](#awscodecommit-aws_ResourceTag___TagKey_)  | 

## Condition keys for AWS CodeCommit
<a name="awscodecommit-policy-keys"></a>

AWS CodeCommit defines the following condition keys that can be used in the `Condition` element of an IAM policy. You can use these keys to further refine the conditions under which the policy statement applies. For details about the columns in the following table, see [Condition keys table](reference_policies_actions-resources-contextkeys.html#context_keys_table).

To view the global condition keys that are available to all services, see [AWS global condition context keys](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html).


****  

| Condition keys | Description | Type | 
| --- | --- | --- | 
|   [https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-requesttag](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-requesttag)  | Filters access by the presence of tag key-value pairs in the request | String | 
|   [https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-resourcetag](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-resourcetag)  | Filters access by tag key-value pairs attached to the resource | String | 
|   [https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-tagkeys](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-tagkeys)  | Filters access by the presence of tag keys in the request | ArrayOfString | 
|   [https://docs.aws.amazon.com/codecommit/latest/userguide/how-to-conditional-branch.html](https://docs.aws.amazon.com/codecommit/latest/userguide/how-to-conditional-branch.html)  | Filters access by Git reference to specified AWS CodeCommit actions | String | 