{"slug":"api-zfinia-com-x402-v1-iam-policy-evaluation-b90ae6","title":"Decide whether specific calls are permitted by a set of IAM policies, following ","host":"api.zfinia.com","method":"POST","resource":"https://api.zfinia.com/x402/v1/iam-policy-evaluation","category":"other","description":"Decide whether specific calls are permitted by a set of IAM policies, following IAM evaluation order: an explicit Deny wins over every Allow, and the absence of an Allow is a denial because there is no implicit allow. A request allowed or denied only under a Condition is reported as undetermined rat","price_listed":0.24,"price_asked":0.24,"state":"answering","state_label":"Answering","checks_7d":1,"answered_7d":1,"latency_ms_median":2393,"reported_calls_30d":1,"reported_payers_30d":1,"networks":["eip155:8453"],"badge":"unverified","paid_checks_7d":0,"paid_ok_7d":0,"example_input":{"body":{"policies":[{"name":"identity","policy":"{\n \"Version\": \"2012-10-17\",\n \"Statement\": [\n  {\n   \"Sid\": \"ReadExports\",\n   \"Effect\": \"Allow\",\n   \"Action\": [\n    \"s3:GetObject\"\n   ],\n   \"Resource\": [\n    \"arn:aws:s3:::exports/*\"\n   ]\n  },\n  {\n   \"Sid\": \"DenyProduction\",\n   \"Effect\": \"Deny\",\n   \"Action\": [\n    \"s3:DeleteObject\"\n   ],\n   \"Resource\": [\n    \"arn:aws:s3:::production/*\"\n   ]\n  }\n ]\n}"},{"name":"boundary","policy":"{\n \"Version\": \"2012-10-17\",\n \"Statement\": [\n  {\n   \"Sid\": \"AllowWriteFromOffice\",\n   \"Effect\": \"Allow\",\n   \"Action\": [\n    \"s3:PutObject\"\n   ],\n   \"Resource\": [\n    \"arn:aws:s3:::exports/*\"\n   ],\n   \"Condition\": {\n    \"IpAddress\": {\n     \"aws:SourceIp\": \"203.0.113.0/24\"\n    }\n   }\n  },\n  {\n   \"Sid\": \"DenyEverythingElse\",\n   \"Effect\": \"Deny\",\n   \"NotAction\": [\n    \"s3:GetObject\",\n    \"s3:PutObject\"\n   ],\n   \"Resource\": \"*\"\n  }\n ]\n}"}],"requests":[{"action":"s3:GetObject","resource":"arn:aws:s3:::exports/report.csv"},{"action":"s3:DeleteObject","resource":"arn:aws:s3:::production/report.csv"},{"action":"s3:PutObject","resource":"arn:aws:s3:::exports/new.csv"},{"action":"dynamodb:GetItem","resource":"arn:aws:dynamodb:us-east-1:123456789012:table/orders"}]},"bodyType":"json","method":"POST","type":"http"},"output_schema":{"$schema":"https://json-schema.org/draft/2020-12/schema","properties":{"input":{"additionalProperties":false,"properties":{"body":{"additionalProperties":false,"properties":{"policies":{"items":{"additionalProperties":false,"properties":{"name":{"maxLength":128,"type":"string"},"policy":{"maxLength":262144,"type":"string"}},"required":["policy"],"type":"object"},"maxItems":20,"minItems":1,"type":"array"},"requests":{"items":{"additionalProperties":false,"properties":{"action":{"maxLength":256,"type":"string"},"resource":{"maxLength":2048,"type":"string"}},"required":["action","resource"],"type":"object"},"maxItems":500,"minItems":1,"type":"array"}},"required":["policies","requests"],"type":"object"},"bodyType":{"enum":["json","form-data","text"],"type":"string"},"method":{"enum":["POST"],"type":"string"},"type":{"const":"http","type":"string"}},"required":["type","method","bodyType","body"],"type":"object"},"output":{"properties":{"example":{"type":"object"},"type":{"type":"string"}},"required":["type"],"type":"object"}},"required":["input"],"type":"object"},"history":[{"day":"2026-10-04","reachable":true,"status":402,"valid_402":true,"asked_usdc":0.24,"price_match":true,"latency_ms":2393,"error":null}],"description_full":"Decide whether specific calls are permitted by a set of IAM policies, following IAM evaluation order: an explicit Deny wins over every Allow, and the absence of an Allow is a denial because there is no implicit allow. A request allowed or denied only under a Condition is reported as undetermined rather than decided, because the condition depends on a request context that is not supplied. A NotAction or NotResource statement is named as not evaluated rather than silently skipped.","last_updated":"2026-10-04T08:28:30.877Z","schemes":["exact"]}