Amazon Elastic Container Registry events - Amazon EventBridge

Amazon Elastic Container Registry events

Amazon ECR sends service events directly to EventBridge, as well as via AWS CloudTrail.

Amazon ECR service events

Amazon ECR sends the following events directly to EventBridge:

  • ECR Artifact Action

  • ECR Scan Resource Change

  • ECR Pull Through Cache Action

Delivery type: Best effort

To match against all events from this service, create an event pattern that matches against the following event attribute:

  • source: aws.ecr

{ "source": ["aws.ecr"] }

To match against specific events, include a detail-type attribute specifying an array of event names to match. For example:

{ "source": ["aws.ecr"], "detail-type": ["ECR Artifact Action"] }

For more information, see Creating event patterns in the Amazon EventBridge User Guide.

Amazon ECR events delivered via AWS CloudTrail

AWS CloudTrail sends events originating from Amazon ECR to EventBridge. AWS services deliver events to CloudTrail on a best effort basis. For more information, see AWS service events delivered via AWS CloudTrail in the Amazon EventBridge User Guide.

To match events from this service delivered by AWS CloudTrail, create an event pattern that matches against the following event attributes:

  • source: aws.ecr

  • eventSource: ecr.amazonaws.com

{ "source": ["aws.ecr"], "detail-type": ["AWS API Call via CloudTrail"], "detail": { "eventSource": ["ecr.amazonaws.com"] } }

To match against a specific API calls from this service, include an eventName attribute specifying an array of API calls to match:

{ "source": ["aws.ecr"], "detail-type": ["AWS API Call via CloudTrail"], "detail": { "eventSource": ["ecr.amazonaws.com"], "eventName": ["api-action-name"] } }