# New Feature: Automate IAM Policies for CloudQuery AWS Syncs

**URL:** <https://community.cloudquery.io/t/new-feature-automate-iam-policies-for-cloudquery-aws-syncs/1009>\
**Category:** Announcements\
**Created:** [February 4, 2025, 8:34pm UTC](https://community.cloudquery.io/t/new-feature-automate-iam-policies-for-cloudquery-aws-syncs/1009 "2025-02-04T20:34:41Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![JoeKarlsson](https://sea1.discourse-cdn.com/flex001/user_avatar/community.cloudquery.io/joekarlsson/32/37_2.png) [@JoeKarlsson](https://community.cloudquery.io/u/JoeKarlsson)\
**Post date:** [February 4, 2025, 8:34pm UTC](https://community.cloudquery.io/t/new-feature-automate-iam-policies-for-cloudquery-aws-syncs/1009/1 "2025-02-04T20:34:41Z")

</div>

Manually configuring IAM roles for CloudQuery AWS syncs used to be a tedious process—until now. We’ve launched a new **API endpoint** that automatically retrieves the exact permissions needed for any AWS table you sync.

🔹 **What this solves:**

✅ No more manual permission mapping  
✅ Ensures least-privilege access for better security  
✅ Saves time by automating policy creation

Simply call the API with your selected tables, extract the permissions\_needed, and generate a minimal IAM policy.

📖 **Learn more & see examples:** [Read the full post](https://www.cloudquery.io/blog/how-to-limit-cq-access-to-aws-accounts)

Try it out and let us know what you think! 🚀
