IAM: Access the policy simulator console
This example shows how you might create an identity-based policy that allows using the policy simulator console for policies attached to a user, group, or role in the current Amazon Web Services account. This policy grants the permissions necessary to complete this action programmatically from the Amazon API or Amazon CLI.
You can access the IAM Policy Simulator console at: https://policysim.amazonaws.cn/
{ "Version": "2012-10-17", "Statement": [ { "Action": [ "iam:GetGroup", "iam:GetGroupPolicy", "iam:GetPolicy", "iam:GetPolicyVersion", "iam:GetRole", "iam:GetRolePolicy", "iam:GetUser", "iam:GetUserPolicy", "iam:ListAttachedGroupPolicies", "iam:ListAttachedRolePolicies", "iam:ListAttachedUserPolicies", "iam:ListGroups", "iam:ListGroupPolicies", "iam:ListGroupsForUser", "iam:ListRolePolicies", "iam:ListRoles", "iam:ListUserPolicies", "iam:ListUsers" ], "Effect": "Allow", "Resource": "*" } ] }