ResourceScope
class ResourceScope
A single resource scope entry within an AccessGrant. Associates a resource type with optional ARN patterns, tag conditions, and row-level filters.
Types
Properties
Link copied to clipboard
Specific resource ARNs or ARN patterns. When set, actions are limited to these resources. When absent, defaults to "*".
Link copied to clipboard
Resource type name (e.g., "DataSet", "OmniDashboard").
Link copied to clipboard
Row-level filters for this scope, as an OR of AND-groups: a row is visible when it matches every filter in any one group. Requires signalTypes. Row filters are additive across a principal's matching grants. A signal type with no matching group is unrestricted, and when rowScopeGroups is omitted all rows are visible for all signal types.
Link copied to clipboard
Signal types this scope's row filtering applies to. Required when rowScopeGroups is set.