aws-cleanrooms

Diagnose AWS Clean Rooms permission and logging issues across IAM, S3, KMS, and Lake Formation.

2.3k|234|Updated Apr 23, 2026
One-click install
npx skills add https://github.com/aws/agent-toolkit-for-aws --skill aws-cleanrooms-aws
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: aws-cleanrooms
Source: https://github.com/aws/agent-toolkit-for-aws/tree/main/skills/specialized-skills/analytics-skills/aws-cleanrooms
Command: npx skills add https://github.com/aws/agent-toolkit-for-aws --skill aws-cleanrooms-aws

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

AWS Clean Rooms collaboration environments can fail due to misconfigured IAM roles, bucket and KMS policies, Lake Formation permissions, and CloudWatch log configuration. This skill helps teams diagnose and resolve permission and logging issues that block data collaboration and model training across Clean Rooms.

Core Features & Use Cases

  • Diagnose permission and access problems across IAM roles, S3 bucket policies, KMS keys, and Lake Formation settings for Clean Rooms collaborations.
  • Validate CloudWatch logging configuration and correct log publishing issues for ML model training and inference jobs.
  • Provide guided remediation steps and CLI commands to restore cross-account access and secure logging.

Quick Start

Run the diagnostic workflow to identify permission, logging, and trust issues in AWS Clean Rooms and apply the recommended fixes.

Frequently Asked Questions about aws-cleanrooms

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I troubleshoot AWS Clean Rooms collaboration permission errors?

Diagnose Clean Rooms access issues by validating IAM roles, inspecting S3 bucket policies, checking KMS key access, and verifying Lake Formation settings to restore cross-account data collaboration.

Why does my AWS Clean Rooms ML model training fail to publish CloudWatch logs?

CloudWatch log publishing for ML model training fails due to misconfigured IAM roles or missing logging permissions. Validate CloudWatch configuration and apply guided CLI remediation to correct log publishing issues.

Do I need AWS CLI access to fix Clean Rooms Lake Formation permission issues?

Yes, AWS CLI or SDK access is required to validate credentials, inspect trust policies, and run remediation commands for Lake Formation permissions and cross-account access issues in Clean Rooms.

How do I verify IAM trust policies for AWS Clean Rooms cross-account access?

Verify IAM trust policies by running credential validation and trust verification checks to ensure cross-account roles have the correct permissions for Clean Rooms collaborations and data access.

What is the best way to diagnose KMS key policy issues blocking Clean Rooms collaboration?

Diagnose KMS key policy issues by inspecting key policies and validating IAM role permissions to ensure authorized accounts can decrypt data required for Clean Rooms collaborations.