Elastic Container Registry Public
| eventName | Description | Sample | Rule |
|---|---|---|---|
| any | Catch-all entry for Elastic Container Registry Public rules that match the service but not a specific eventName. | N | N |
| Batch | Checks the availability of one or more image layers that are within a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Batch | Deletes a list of specified images that are within a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Complete | Informs Amazon ECR that the image layer upload is complete for a specified public registry, repository name, and upload ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Create | Creates a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Delete | Deletes a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Delete | Deletes the repository policy that's associated with the specified repository. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Describe | Returns metadata that's related to the images in a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Describe | Returns the image tag details for a repository in a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record. | N | N |
| Describe | Returns details for a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record. | N | N |
| Describe | Describes repositories that are in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Get | Retrieves an authorization token. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Get | Retrieves catalog metadata for a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record. | N | N |
| Get | Retrieve catalog metadata for a repository in a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record. | N | N |
| Get | Retrieves the repository policy for the specified repository. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Initiate | Notifies Amazon ECR that you intend to upload an image layer. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| List | List the tags for an Amazon ECR Public resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Put | Creates or updates the image manifest and tags that are associated with an image. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Put | Create or update the catalog data for a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Put | Creates or updates the catalog data for a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Set | Applies a repository policy to the specified public repository to control access permissions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Tag | Associates the specified tags to a resource with the specified resourceArn. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Untag | Deletes specified tags from a resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
| Upload | Uploads an image layer part to Amazon ECR. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet. | N | N |
any: Elastic Container Registry Public (catch-all)
#Description
Catch-all entry for Elastic Container Registry Public rules that match the service but not a specific eventName.
BatchCheckLayerAvailability
#Description
Checks the availability of one or more image layers that are within a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
BatchDeleteImage
#Description
Deletes a list of specified images that are within a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
CompleteLayerUpload
#Description
Informs Amazon ECR that the image layer upload is complete for a specified public registry, repository name, and upload ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
CreateRepository
#Description
Creates a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
DeleteRepository
#Description
Deletes a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
DeleteRepositoryPolicy
#Description
Deletes the repository policy that's associated with the specified repository. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
DescribeImages
#Description
Returns metadata that's related to the images in a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
DescribeRegistries
#Description
Returns details for a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.
Example CloudTrail Event #
This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.
{
"eventVersion": "1.11",
"eventID": "cbe8a5db-fa62-4628-820a-3d520bef5c30",
"eventSource": "ecr-public.amazonaws.com",
"eventName": "DescribeRegistries",
"awsRegion": "us-east-1",
"eventType": "AwsApiCall",
"readOnly": true,
"managementEvent": true,
"requestID": "65b6f8e6-05c2-492d-ad81-88330087c6cd",
"userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/ecrpublic#1.33.3 m/E,i",
"tlsDetails": {
"tlsVersion": "TLSv1.3",
"cipherSuite": "TLS_AES_128_GCM_SHA256",
"clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
}
}
DescribeRepositories
#Description
Describes repositories that are in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
GetRegistryCatalogData
#Description
Retrieves catalog metadata for a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.
Example CloudTrail Event #
This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.
{
"eventVersion": "1.11",
"eventID": "f18001c7-fab4-418e-9b71-63bb840e3f73",
"eventSource": "ecr-public.amazonaws.com",
"eventName": "GetRegistryCatalogData",
"awsRegion": "us-east-1",
"eventType": "AwsApiCall",
"readOnly": true,
"managementEvent": true,
"requestID": "a535d4cf-84ea-4fe4-bc0b-c2ba6f71f56d",
"userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
"tlsDetails": {
"tlsVersion": "TLSv1.3",
"cipherSuite": "TLS_AES_128_GCM_SHA256",
"clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
}
}
GetRepositoryCatalogData
#Description
Retrieve catalog metadata for a repository in a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.
Example CloudTrail Event #
This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.
{
"eventVersion": "1.11",
"eventID": "c1f45adc-3b59-406c-9ab7-045507b57c3e",
"eventSource": "ecr-public.amazonaws.com",
"eventName": "GetRepositoryCatalogData",
"awsRegion": "us-east-1",
"eventType": "AwsApiCall",
"readOnly": true,
"managementEvent": true,
"requestID": "a428c28e-a07e-4a77-b4ba-bca3ba64c321",
"userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
"tlsDetails": {
"tlsVersion": "TLSv1.3",
"cipherSuite": "TLS_AES_128_GCM_SHA256",
"clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
}
}
GetRepositoryPolicy
#Description
Retrieves the repository policy for the specified repository. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
InitiateLayerUpload
#Description
Notifies Amazon ECR that you intend to upload an image layer. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
PutImage
#Description
Creates or updates the image manifest and tags that are associated with an image. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
PutRegistryCatalogData
#Description
Create or update the catalog data for a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
PutRepositoryCatalogData
#Description
Creates or updates the catalog data for a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
SetRepositoryPolicy
#Description
Applies a repository policy to the specified public repository to control access permissions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
TagResource
#Description
Associates the specified tags to a resource with the specified resourceArn. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
UntagResource
#Description
Deletes specified tags from a resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.
UploadLayerPart
#Description
Uploads an image layer part to Amazon ECR. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.