{"id":"dynamodb-full-access-iam-passrole-condition-restricted","text":"The `AmazonDynamoDBFullAccess` policy restricts `iam:PassRole` with the `iam:PassedToService` condition, allowing roles to be passed only to `application-autoscaling.amazonaws.com` and `dax.amazonaws.com`.","truth_value":"IN","source":"entries/2026/03/12/aws-managed-policy-latest-reference-AmazonDynamoDBFullAccesshtml.md","source_url":"","source_hash":"7c48bf475c8b783e","justifications":[],"dependents":[],"metadata":{},"explanation":{"steps":[{"node":"dynamodb-full-access-iam-passrole-condition-restricted","truth_value":"IN","reason":"premise"}]}}