aws v5.46.0 - Choose which AWS Organizations policy types are recorded in CMDB
Jun 08, 2026•GuardrailsMods
What's new?
- Added the AWS > Account > CMDB > Organization Policy Types and AWS > Organization Root > CMDB > Organization Policy Types policies, which let you choose exactly which AWS Organizations policy types (Service Control, Resource Control, Tag, Backup, AI Services Opt-out, Chatbot, Declarative EC2, Bedrock, and Security Hub) are recorded in the CMDB for each account and organization root.
- The AWS > Account > CMDB and AWS > Organization Root > CMDB controls now capture attached Amazon Bedrock organization policies (BEDROCK_POLICY) alongside the other AWS Organizations policy types, providing a more complete view of the policies attached to each account and organization root.
Policy Types
Added
- AWS > Account > CMDB > Organization Policy Types
- AWS > Organization Root > CMDB > Organization Policy Types
Bug fixes
- The AWS > Account > CMDB and AWS > Organization Root > CMDB controls could fail with AWS Organizations throttling errors (TooManyRequests) when many accounts in an organization were synchronized at the same time, such as during a large organization import. These controls now limit how many AWS Organizations policy lookups run concurrently and query only the organization policy types that are actually enabled for the organization, substantially reducing the number of AWS API calls made per account and the likelihood of throttling.