AWS BillExplained
← Services

Security & identity

Amazon Verified Permissions

  • Timenot billed
  • Bytesnot billed
  • Unitsbilled

In one line

Every authorization decision is a billed API request, and policy reads and writes bill too.

What gets missed

A BatchIsAuthorized call meters as one request however many decisions it carries, but costs thirty times a lone IsAuthorized, so batching only pays off once you pack it full. ListPolicies bills as well.

Find it on your bill

Filter Cost Explorer or your Cost and Usage Report by these usage types. A usage type with no region prefix means us-east-1.

  • USE1-SingleAuthorizationRequest-API-Requests
  • USE1-AuthorizationRequest-API-Requests
  • USE1-ListPolicies-API-Requests

Bills the same way

These services turn exactly the same meters, so what you learn here transfers.