{"_id":"@aws-sdk-extension/trusted-identity-propagation","_rev":"10-040b3ed7fae00ac4eb2539e99c699a30","name":"@aws-sdk-extension/trusted-identity-propagation","dist-tags":{"latest":"2.0.0"},"versions":{"0.0.1":{"name":"@aws-sdk-extension/trusted-identity-propagation","version":"0.0.1","keywords":[],"author":"","license":"ISC","_id":"@aws-sdk-extension/trusted-identity-propagation@0.0.1","maintainers":[{"name":"trivikr-aws","email":"trivikr@amazon.com"},{"name":"aws-sdk-bot","email":"aws-sdk-js-automation@amazon.com"}],"dist":{"shasum":"d3f1805d46cc25c561501b47d1f768b4ad9068fa","tarball":"https://registry.npmjs.org/@aws-sdk-extension/trusted-identity-propagation/-/trusted-identity-propagation-0.0.1.tgz","fileCount":2,"integrity":"sha512-yJVdGitSkEt0pTHxqPGSSu9WT46wNnNZ8joN0FladG+wTWpEfjd15yuKtEmnsoKpSDU/D2vzTB8fAiGvkEsYcg==","signatures":[{"sig":"MEYCIQCmAR5QLBqMLto+vBAJ6cQGNjwlJTZjsx5prv/bsg/RJwIhAPh0B3EVaDNDpvkcyy+go5zdYUZR9l9Z5sooLNFIptxa","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":365},"main":"index.js","scripts":{"test":"echo \"Error: no test specified\" && exit 1"},"_npmUser":{"name":"aws-sdk-bot","email":"aws-sdk-js-automation@amazon.com"},"_npmVersion":"10.8.2","description":"Trusted Identity Propagation extension for AWS SDK","directories":{},"_nodeVersion":"18.20.5","_hasShrinkwrap":false,"_npmOperationalInternal":{"tmp":"tmp/trusted-identity-propagation_0.0.1_1743110943897_0.5526684961639943","host":"s3://npm-registry-packages-npm-production"}},"1.0.0":{"name":"@aws-sdk-extension/trusted-identity-propagation","version":"1.0.0","keywords":["aws","credentials"],"author":{"url":"https://aws.amazon.com/iam/identity-center","name":"AWS IAM Identity Center Team"},"license":"Apache-2.0","_id":"@aws-sdk-extension/trusted-identity-propagation@1.0.0","maintainers":[{"name":"trivikr-aws","email":"trivikr@amazon.com"},{"name":"aws-sdk-bot","email":"aws-sdk-js-automation@amazon.com"},{"name":"arnellebalane","email":"arnellebalane@gmail.com"},{"name":"tapughose","email":"ghose.tapu@gmail.com"},{"name":"aws-idc-sdk-plugin-trustedidentitypropagation","email":"aws-idc-sdk-plugin-trustedidentitypropagation@amazon.com"}],"dist":{"shasum":"afcb1bc4c40e6c61b597049158644940509525ed","tarball":"https://registry.npmjs.org/@aws-sdk-extension/trusted-identity-propagation/-/trusted-identity-propagation-1.0.0.tgz","fileCount":24,"integrity":"sha512-7KqlT+0wt2AnnRszl4wNrTZ1Aw5+3pXoCHCUC3jD92VrCwpC53NRWvHt38Z770kXOD+KXeObAxVfSTjxCxgjVw==","signatures":[{"sig":"MEQCIEsI7/xLPXv3w+JdCwF6AxY8O7sLy0FkZI/KfNVukJcjAiApSEKJw8mD4yCWrQloFSee19gubBZtuHi1JNnAc3Lajw==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":38490},"main":"./dist-cjs/index.js","types":"./dist-types/index.d.ts","module":"./dist-es/index.js","engines":{"node":">=18"},"gitHead":"54beae61532a7dd013be1d2501d57841e7d24039","scripts":{"e2e":"vitest run e2e/*.spec.ts","lint":"biome lint --write","test":"vitest run src/*.spec.ts","build":"npm run build:cjs && npm run build:es && npm run build:types","clean":"node -e \"['dist-cjs','dist-es','dist-types'].forEach(dir => fs.rmSync(dir, { recursive: true, force: true }))\"","format":"biome format --write","build:es":"tsc -p tsconfig.es.json","build:cjs":"tsc -p tsconfig.cjs.json","build:types":"tsc -p tsconfig.types.json"},"_npmUser":{"name":"aws-idc-sdk-plugin-trustedidentitypropagation","email":"aws-idc-sdk-plugin-trustedidentitypropagation@amazon.com"},"_npmVersion":"10.9.2","description":"AWS credential provider that sources credentials that obtains identity-aware credentials for trusted identity propagation","directories":{},"_nodeVersion":"18.20.6","dependencies":{"@aws-sdk/client-sts":"^3.782.0","@aws-sdk/client-sso-oidc":"^3.782.0","@smithy/property-provider":"^4.0.1"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^3.1.1","typescript":"^5.7.3","@types/node":"^22.14.0","jsonwebtoken":"^9.0.2","@aws-sdk/types":"^3.0.0","@biomejs/biome":"1.9.4","@faker-js/faker":"^9.5.0","@tsconfig/node18":"^18.2.4"},"_npmOperationalInternal":{"tmp":"tmp/trusted-identity-propagation_1.0.0_1744304877326_0.755597348678805","host":"s3://npm-registry-packages-npm-production"}},"2.0.0":{"name":"@aws-sdk-extension/trusted-identity-propagation","version":"2.0.0","description":"AWS credential provider that sources credentials that obtains identity-aware credentials for trusted identity propagation","main":"./dist-cjs/index.js","module":"./dist-es/index.js","types":"./dist-types/index.d.ts","scripts":{"build":"npm run build:cjs && npm run build:es && npm run build:types","build:cjs":"tsc -p tsconfig.cjs.json","build:es":"tsc -p tsconfig.es.json","build:types":"tsc -p tsconfig.types.json","clean":"node -e \"['dist-cjs','dist-es','dist-types'].forEach(dir => fs.rmSync(dir, { recursive: true, force: true }))\"","lint":"biome lint --write","format":"biome format --write","test":"vitest run src/*.spec.ts","e2e":"vitest run e2e/*.spec.ts"},"keywords":["aws","credentials"],"author":{"name":"AWS IAM Identity Center Team","url":"https://aws.amazon.com/iam/identity-center"},"license":"Apache-2.0","engines":{"node":">=18"},"dependencies":{"@aws-sdk/client-sso-oidc":"^3.782.0","@aws-sdk/client-sts":"^3.782.0","@smithy/property-provider":"^4.0.1"},"devDependencies":{"@aws-sdk/types":"^3.0.0","@biomejs/biome":"1.9.4","@faker-js/faker":"^9.5.0","@tsconfig/node18":"^18.2.4","@types/node":"^22.14.0","jsonwebtoken":"^9.0.2","typescript":"^5.7.3","vitest":"^3.1.1"},"_id":"@aws-sdk-extension/trusted-identity-propagation@2.0.0","gitHead":"1fe2f23483f2deb59fb49099b26d2c95f47f920f","_nodeVersion":"18.20.8","_npmVersion":"11.4.2","dist":{"integrity":"sha512-qVxYNKMfrsU95ERy1y+Q7vRxtuZsFpkwpAtOtIvRuC8SP4Z6OwNnPCIvHrV2Me6wPASgtnjBaMCNi0lzcoHFvA==","shasum":"1d327d71133c5e59163467a4543a441b313b6a48","tarball":"https://registry.npmjs.org/@aws-sdk-extension/trusted-identity-propagation/-/trusted-identity-propagation-2.0.0.tgz","fileCount":24,"unpackedSize":40305,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEQCIC+qKxLZ+J+ojrFqE4bHwJaCwDS9KYM+DuVMFR1qcHFNAiA1nwn/eIy/PUYTT7vmpBX39xJqRq9JBtyS25Cs0+x6Jw=="}]},"_npmUser":{"name":"aws-idc-sdk-plugin-trustedidentitypropagation","email":"aws-idc-sdk-plugin-trustedidentitypropagation@amazon.com"},"directories":{},"maintainers":[{"name":"aws-sdk-bot","email":"aws-sdk-js-automation@amazon.com"},{"name":"amzn-oss","email":"osa-3p@amazon.com"},{"name":"aws-idc-sdk-plugin-trustedidentitypropagation","email":"aws-idc-sdk-plugin-trustedidentitypropagation@amazon.com"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/trusted-identity-propagation_2.0.0_1759515280684_0.037572854051197924"},"_hasShrinkwrap":false}},"time":{"created":"2025-03-27T21:29:03.836Z","modified":"2025-10-03T18:14:41.187Z","0.0.1":"2025-03-27T21:29:04.073Z","1.0.0":"2025-04-10T17:07:57.553Z","2.0.0":"2025-10-03T18:14:40.930Z"},"author":{"name":"AWS IAM Identity Center Team","url":"https://aws.amazon.com/iam/identity-center"},"license":"Apache-2.0","keywords":["aws","credentials"],"description":"AWS credential provider that sources credentials that obtains identity-aware credentials for trusted identity propagation","maintainers":[{"name":"aws-sdk-bot","email":"aws-sdk-js-automation@amazon.com"},{"name":"amzn-oss","email":"osa-3p@amazon.com"},{"name":"aws-idc-sdk-plugin-trustedidentitypropagation","email":"aws-idc-sdk-plugin-trustedidentitypropagation@amazon.com"}],"readme":"## Trusted Identity Propagation Plugin for AWS SDK for JavaScript v3\n\nTrusted identity propagation enables AWS services to grant permissions based on user attributes such as group associations, add context to an IAM role identifying the user requesting access to AWS resources, and propagate this context to other AWS services.\n\nThis plugin provides the functionality to exchange an Id token issued by a trusted token issuer for an IAM Identity Center token and pass it to AWS services (e.g., AWS S3, Amazon Q) that use it to make authorization decisions.\n\n## Installation\n\nIn your project, add `@aws-sdk-extension/trusted-identity-propagation` to your dependencies.\n\n```bash\nnpm install @aws-sdk-extension/trusted-identity-propagation\n```\n\n## Usage\n\nInitialize the plugin and provide it as an extension to the SDK that you want to use trusted identity propagation with.\n\n```js\nimport { SSOAdminClient } from '@aws-sdk/client-sso-admin';\nimport { TrustedIdentityPropagationExtension } from '@aws-sdk-extension/trusted-identity-propagation';\n\n// Plugin configurations, please refer to the documentation on each of these fields.\nconst applicationRoleArn = 'YOUR_APPLICATION_ROLE_ARN';\nconst accessRoleArn = 'YOUR_ACCESS_ROLE_ARN';\nconst applicationArn = 'YOUR_APPLICATION_ARN';\n\nconst ssoAdminClient = new SSOAdminClient({\n    region: 'us-east-1',\n    extensions: [\n        TrustedIdentityPropagationExtension.create({\n            webTokenProvider: async () => {\n                return 'ID_TOKEN_FROM_YOUR_IDENTITY_PROVIDER';\n            },\n            applicationRoleArn,\n            accessRoleArn,\n            applicationArn,\n        }),\n    ],\n});\n```\n\nPlease refer to the [TIP Plugin documentation](https://docs.aws.amazon.com/sdkref/latest/guide/access-tip.html) for input parameters details.\n\n## Install from source\n\nThe plugin has been published to NPM and can be installed as described above. If you want to play with the latest version, you can build from source as follows.\n\n1. Clone this repository locally\n```bash\ngit clone https://github.com/aws-sdk-plugin/trusted-identity-propagation-js.git\n```\n\n2. Install dependencies and build the plugin\n```bash\nnpm ci\nnpm run build\n```\n\n3. Pack the plugin\n```bash\nnpm pack\n```\n\nThis will create an archive file named something like `aws-sdk-extension-trusted-identity-propagation-1.0.0.tgz`. The version number at the end changes based on the current version of the plugin.\n\n4. Change directory to the project you are working on and move the archive file to the location to store the vendor packages\n```bash\nmv path/to/trusted-identity-propagation-js/aws-sdk-extension-trusted-identity-propagation-1.0.0.tgz ./path/to/vendors/folder\n```\n\n5. Install the package to your project\n```bash\nnpm install ./path/to/vendors/folder/aws-sdk-extension-trusted-identity-propagation-1.0.0.tgz\n```\n\n## Node.js versions\n\nThis plugin supports Node.js >= 18.\n\n## Security\n\nSee [CONTRIBUTING](CONTRIBUTING.md#security-issue-notifications) for more information.\n\n## License\n\nThis project is licensed under the Apache-2.0 License.\n","readmeFilename":"README.md"}