AWS Compute Optimizer

eventNameDescriptionSampleRule
anyCatch-all entry for AWS Compute Optimizer rules that match the service but not a specific eventName.NN
DeleteRecommendationPreferencesDeletes a recommendation preference, such as enhanced infrastructure metrics. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeRecommendationExportJobsDescribes recommendation export jobs created in the last seven days. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ExportAutoScalingGroupRecommendationsExports optimization recommendations for Auto Scaling groups. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ExportEBSVolumeRecommendationsExports optimization recommendations for Amazon EBS volumes. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ExportEC2InstanceRecommendationsExports optimization recommendations for Amazon EC2 instances. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ExportECSServiceRecommendationsExports optimization recommendations for Amazon ECS services on Fargate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ExportIdleRecommendationsExport optimization recommendations for your idle resources. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ExportLambdaFunctionRecommendationsExports optimization recommendations for Lambda functions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ExportLicenseRecommendationsExport optimization recommendations for your licenses. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ExportRDSDatabaseRecommendationsExport optimization recommendations for your Amazon Aurora and Amazon Relational Database Service (Amazon RDS) databases. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetAutoScalingGroupRecommendationsReturns Auto Scaling group recommendations. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetEBSVolumeRecommendationsReturns Amazon Elastic Block Store (Amazon EBS) volume recommendations. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetEC2InstanceRecommendationsReturns Amazon EC2 instance recommendations. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetEC2RecommendationProjectedMetricsReturns the projected utilization metrics of Amazon EC2 instance recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetECSServiceRecommendationProjectedMetricsReturns the projected metrics of Amazon ECS service recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetECSServiceRecommendationsReturns Amazon ECS service recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEffectiveRecommendationPreferencesReturns the recommendation preferences that are in effect for a given resource, such as enhanced infrastructure metrics. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEnrollmentStatusReturns the enrollment (opt in) status of an account to the Compute Optimizer service. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetEnrollmentStatusesForOrganizationReturns the Compute Optimizer enrollment (opt-in) status of organization member accounts, if your account is an organization management account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetIdleRecommendationsReturns idle resource recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetLambdaFunctionRecommendationsReturns Lambda function recommendations. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetLicenseRecommendationsReturns license recommendations for Amazon EC2 instances that run on a specific license. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetRDSDatabaseRecommendationProjectedMetricsReturns the projected metrics of Aurora and RDS database recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetRDSDatabaseRecommendationsReturns Amazon Aurora and RDS database recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetRecommendationPreferencesReturns existing recommendation preferences, such as enhanced infrastructure metrics. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetRecommendationSummariesReturns the optimization findings for an account. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
PutRecommendationPreferencesCreates a new recommendation preference or updates an existing recommendation preference, such as enhanced infrastructure metrics. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateEnrollmentStatusUpdates the enrollment (opt in and opt out) status of an account to the Compute Optimizer service. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN

any: AWS Compute Optimizer (catch-all)

#
Service
compute-optimizer

Description

Catch-all entry for AWS Compute Optimizer rules that match the service but not a specific eventName.

DeleteRecommendationPreferences

#
Service
compute-optimizer

Description

Deletes a recommendation preference, such as enhanced infrastructure metrics. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeRecommendationExportJobs

#
Service
compute-optimizer

Description

Describes recommendation export jobs created in the last seven days. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "3a47c364-f98c-44fe-a697-f8a55264be38",
  "eventSource": "compute-optimizer.amazonaws.com",
  "eventName": "DescribeRecommendationExportJobs",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "e96b0f64-5a0f-42db-bd75-4ffc20756f30",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.eu-west-1.amazonaws.com"
  }
}

ExportAutoScalingGroupRecommendations

#
Service
compute-optimizer

Description

Exports optimization recommendations for Auto Scaling groups. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ExportEBSVolumeRecommendations

#
Service
compute-optimizer

Description

Exports optimization recommendations for Amazon EBS volumes. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ExportEC2InstanceRecommendations

#
Service
compute-optimizer

Description

Exports optimization recommendations for Amazon EC2 instances. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ExportECSServiceRecommendations

#
Service
compute-optimizer

Description

Exports optimization recommendations for Amazon ECS services on Fargate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ExportIdleRecommendations

#
Service
compute-optimizer

Description

Export optimization recommendations for your idle resources. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ExportLambdaFunctionRecommendations

#
Service
compute-optimizer

Description

Exports optimization recommendations for Lambda functions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ExportLicenseRecommendations

#
Service
compute-optimizer

Description

Export optimization recommendations for your licenses. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ExportRDSDatabaseRecommendations

#
Service
compute-optimizer

Description

Export optimization recommendations for your Amazon Aurora and Amazon Relational Database Service (Amazon RDS) databases. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetAutoScalingGroupRecommendations

#
Service
compute-optimizer

Description

Returns Auto Scaling group recommendations. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "19bfb4ca-d76d-49d5-8f78-6dbf50b809f5",
  "eventSource": "compute-optimizer.amazonaws.com",
  "eventName": "GetAutoScalingGroupRecommendations",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "07a96bd5-c40b-4404-8f63-9298d1e0b8c3",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.eu-west-1.amazonaws.com"
  }
}

GetEBSVolumeRecommendations

#
Service
compute-optimizer

Description

Returns Amazon Elastic Block Store (Amazon EBS) volume recommendations. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "a755df1f-6744-4829-9ec7-7f5b6e9be3c8",
  "eventSource": "compute-optimizer.amazonaws.com",
  "eventName": "GetEBSVolumeRecommendations",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "37a4a3c4-eaaa-43a4-827a-4b1b5a4670e5",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.eu-west-1.amazonaws.com"
  }
}

GetEC2InstanceRecommendations

#
Service
compute-optimizer

Description

Returns Amazon EC2 instance recommendations. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "499e17a5-eac5-401c-a260-05ebbc21a176",
  "eventSource": "compute-optimizer.amazonaws.com",
  "eventName": "GetEC2InstanceRecommendations",
  "awsRegion": "us-east-2",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "f42ae50e-abc4-4094-a21c-777597220e2c",
  "userAgent": "Boto3/1.43.22 md/Botocore#1.43.22 ua/2.1 os/linux#6.1.175-219.359.amzn2023.x86_64 md/arch#x86_64 lang/python#3.14.5 md/pyimpl#CPython m/b,D,Z cfg/retry-mode#legacy Botocore/1.43.22",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-2.amazonaws.com"
  }
}

GetEC2RecommendationProjectedMetrics

#
Service
compute-optimizer

Description

Returns the projected utilization metrics of Amazon EC2 instance recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetECSServiceRecommendationProjectedMetrics

#
Service
compute-optimizer

Description

Returns the projected metrics of Amazon ECS service recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetECSServiceRecommendations

#
Service
compute-optimizer

Description

Returns Amazon ECS service recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEffectiveRecommendationPreferences

#
Service
compute-optimizer

Description

Returns the recommendation preferences that are in effect for a given resource, such as enhanced infrastructure metrics. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEnrollmentStatus

#
Service
compute-optimizer

Description

Returns the enrollment (opt in) status of an account to the Compute Optimizer service. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "a6f057c3-cab5-4e5d-b123-1e31c5d3b6aa",
  "eventSource": "compute-optimizer.amazonaws.com",
  "eventName": "GetEnrollmentStatus",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "6d829bb7-5a7f-470e-b09d-b00559bd602f",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.eu-west-1.amazonaws.com"
  }
}

GetEnrollmentStatusesForOrganization

#
Service
compute-optimizer

Description

Returns the Compute Optimizer enrollment (opt-in) status of organization member accounts, if your account is an organization management account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetIdleRecommendations

#
Service
compute-optimizer

Description

Returns idle resource recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetLambdaFunctionRecommendations

#
Service
compute-optimizer

Description

Returns Lambda function recommendations. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "3ab4a52e-8e20-43bc-8351-cad64050ccab",
  "eventSource": "compute-optimizer.amazonaws.com",
  "eventName": "GetLambdaFunctionRecommendations",
  "awsRegion": "ap-northeast-3",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "66235e54-59ec-4db1-88dc-3f2711b89abe",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.ap-northeast-3.amazonaws.com"
  }
}

GetLicenseRecommendations

#
Service
compute-optimizer

Description

Returns license recommendations for Amazon EC2 instances that run on a specific license. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetRDSDatabaseRecommendationProjectedMetrics

#
Service
compute-optimizer

Description

Returns the projected metrics of Aurora and RDS database recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetRDSDatabaseRecommendations

#
Service
compute-optimizer

Description

Returns Amazon Aurora and RDS database recommendations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetRecommendationPreferences

#
Service
compute-optimizer

Description

Returns existing recommendation preferences, such as enhanced infrastructure metrics. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "687681d7-fcea-4019-90cb-b87db3ae5727",
  "eventSource": "compute-optimizer.amazonaws.com",
  "eventName": "GetRecommendationPreferences",
  "awsRegion": "sa-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "4e48effa-a9e4-4276-a2ab-37fa0d7a80ea",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.sa-east-1.amazonaws.com"
  }
}

GetRecommendationSummaries

#
Service
compute-optimizer

Description

Returns the optimization findings for an account. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "f9e84bf5-34d7-4312-ab30-64c07e9ccb06",
  "eventSource": "compute-optimizer.amazonaws.com",
  "eventName": "GetRecommendationSummaries",
  "awsRegion": "ap-northeast-3",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "13f10b7a-a09a-47df-942a-175fafe653cc",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.ap-northeast-3.amazonaws.com"
  }
}

PutRecommendationPreferences

#
Service
compute-optimizer

Description

Creates a new recommendation preference or updates an existing recommendation preference, such as enhanced infrastructure metrics. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateEnrollmentStatus

#
Service
compute-optimizer

Description

Updates the enrollment (opt in and opt out) status of an account to the Compute Optimizer service. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.