Elastic Container Registry Public

eventNameDescriptionSampleRule
anyCatch-all entry for Elastic Container Registry Public rules that match the service but not a specific eventName.NN
BatchCheckLayerAvailabilityChecks the availability of one or more image layers that are within a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
BatchDeleteImageDeletes a list of specified images that are within a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
CompleteLayerUploadInforms Amazon ECR that the image layer upload is complete for a specified public registry, repository name, and upload ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
CreateRepositoryCreates a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
DeleteRepositoryDeletes a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
DeleteRepositoryPolicyDeletes the repository policy that's associated with the specified repository. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
DescribeImagesReturns metadata that's related to the images in a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
DescribeImageTagsReturns the image tag details for a repository in a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DescribeRegistriesReturns details for a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DescribeRepositoriesDescribes repositories that are in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
GetAuthorizationTokenRetrieves an authorization token. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
GetRegistryCatalogDataRetrieves catalog metadata for a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetRepositoryCatalogDataRetrieve catalog metadata for a repository in a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetRepositoryPolicyRetrieves the repository policy for the specified repository. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
InitiateLayerUploadNotifies Amazon ECR that you intend to upload an image layer. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
ListTagsForResourceList the tags for an Amazon ECR Public resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
PutImageCreates or updates the image manifest and tags that are associated with an image. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
PutRegistryCatalogDataCreate or update the catalog data for a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
PutRepositoryCatalogDataCreates or updates the catalog data for a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
SetRepositoryPolicyApplies a repository policy to the specified public repository to control access permissions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
TagResourceAssociates the specified tags to a resource with the specified resourceArn. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
UntagResourceDeletes specified tags from a resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN
UploadLayerPartUploads an image layer part to Amazon ECR. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.NN

any: Elastic Container Registry Public (catch-all)

#
Service
ecr-public

Description

Catch-all entry for Elastic Container Registry Public rules that match the service but not a specific eventName.

BatchCheckLayerAvailability

#
Service
ecr-public

Description

Checks the availability of one or more image layers that are within a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

BatchDeleteImage

#
Service
ecr-public

Description

Deletes a list of specified images that are within a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

CompleteLayerUpload

#
Service
ecr-public

Description

Informs Amazon ECR that the image layer upload is complete for a specified public registry, repository name, and upload ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

CreateRepository

#
Service
ecr-public

Description

Creates a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

DeleteRepository

#
Service
ecr-public

Description

Deletes a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

DeleteRepositoryPolicy

#
Service
ecr-public

Description

Deletes the repository policy that's associated with the specified repository. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

DescribeImages

#
Service
ecr-public

Description

Returns metadata that's related to the images in a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

DescribeImageTags

#
Service
ecr-public

Description

Returns the image tag details for a repository in a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "720ab84b-5e2e-48f6-86d7-589c5574c565",
  "eventSource": "ecr-public.amazonaws.com",
  "eventName": "DescribeImageTags",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "b776c642-6cc2-49e2-b0f5-7f873bfed15b",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
  },
  "resources": [
    {
      "accountId": "123456789012",
      "ARN": "arn:aws:ecr-public::123456789012:repository/EXAMPLE"
    }
  ]
}

DescribeRegistries

#
Service
ecr-public

Description

Returns details for a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "cbe8a5db-fa62-4628-820a-3d520bef5c30",
  "eventSource": "ecr-public.amazonaws.com",
  "eventName": "DescribeRegistries",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "65b6f8e6-05c2-492d-ad81-88330087c6cd",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/ecrpublic#1.33.3 m/E,i",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
  }
}

DescribeRepositories

#
Service
ecr-public

Description

Describes repositories that are in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

GetAuthorizationToken

#
Service
ecr-public

Description

Retrieves an authorization token. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

GetRegistryCatalogData

#
Service
ecr-public

Description

Retrieves catalog metadata for a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "f18001c7-fab4-418e-9b71-63bb840e3f73",
  "eventSource": "ecr-public.amazonaws.com",
  "eventName": "GetRegistryCatalogData",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "a535d4cf-84ea-4fe4-bc0b-c2ba6f71f56d",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
  }
}

GetRepositoryCatalogData

#
Service
ecr-public

Description

Retrieve catalog metadata for a repository in a public registry. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "c1f45adc-3b59-406c-9ab7-045507b57c3e",
  "eventSource": "ecr-public.amazonaws.com",
  "eventName": "GetRepositoryCatalogData",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "a428c28e-a07e-4a77-b4ba-bca3ba64c321",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
  }
}

GetRepositoryPolicy

#
Service
ecr-public

Description

Retrieves the repository policy for the specified repository. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

InitiateLayerUpload

#
Service
ecr-public

Description

Notifies Amazon ECR that you intend to upload an image layer. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

ListTagsForResource

#
Service
ecr-public

Description

List the tags for an Amazon ECR Public resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

PutImage

#
Service
ecr-public

Description

Creates or updates the image manifest and tags that are associated with an image. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

PutRegistryCatalogData

#
Service
ecr-public

Description

Create or update the catalog data for a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

PutRepositoryCatalogData

#
Service
ecr-public

Description

Creates or updates the catalog data for a repository in a public registry. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

SetRepositoryPolicy

#
Service
ecr-public

Description

Applies a repository policy to the specified public repository to control access permissions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

TagResource

#
Service
ecr-public

Description

Associates the specified tags to a resource with the specified resourceArn. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

UntagResource

#
Service
ecr-public

Description

Deletes specified tags from a resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.

UploadLayerPart

#
Service
ecr-public

Description

Uploads an image layer part to Amazon ECR. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is confirmed by observed CloudTrail records, but no sample confirms this eventName yet.