View a markdown version of this page

Using the Amazon Web Services account root user - Amazon Account Management
Services or capabilities described in Amazon Web Services documentation might vary by Region. To see the differences applicable to the China Regions, see Getting Started with Amazon Web Services in China (PDF).

Using the Amazon Web Services account root user

Depending on how you sign up for Amazon, you either have access to Amazon Web Services accounts or projects. Projects contain Amazon Web Services accounts and the settings for sharing with other collaborators. For more information, see Compare sign-up options. In this section, we explain how to use the root user in an Amazon Web Services account that you create using Sign up for Amazon (advanced).

When you create an Amazon Web Services account, you begin with one sign-in identity called the Amazon Web Services account root user that has complete access to all Amazon Web Services services and resources. We strongly recommend that you don't use the root user for everyday tasks. For tasks that require root user credentials, see Tasks that require root user credentials in the IAM User Guide.

Important

Anyone who has root user credentials for your Amazon Web Services account has unrestricted access to all the resources in your account, including billing information.

Important

In the Beijing and Ningxia Amazon Web Services Regions, there is no concept of a root user. All users are IAM users, including the user who created the Amazon Web Services account.

You can change, or reset the root user password, and create, or delete access keys (access key IDs and secret access keys) for your root user. For help signing in using your root user, see Sign in to the Amazon Web Services Management Console as the root user in the Amazon Sign-In User Guide.