Status: IN
The `AmazonDynamoDBFullAccess` policy restricts `iam:PassRole` with the `iam:PassedToService` condition, allowing roles to be passed only to `application-autoscaling.amazonaws.com` and `dax.amazonaws.com`.
Source: entries/2026/03/12/aws-managed-policy-latest-reference-AmazonDynamoDBFullAccesshtml.md