S3 Vectors

eventNameDescriptionSampleRule
anyCatch-all entry for S3 Vectors rules that match the service but not a specific eventName.NN
CreateIndexCreates a vector index within a vector bucket. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateVectorBucketCreates a vector bucket in the Amazon Web Services Region that you want your bucket to be in. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteIndexDeletes a vector index. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteVectorBucketDeletes a vector bucket. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteVectorBucketPolicyDeletes a vector bucket policy. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteVectorsDeletes one or more vectors in a vector index. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetIndexReturns vector index attributes. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetVectorBucketReturns vector bucket attributes. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetVectorBucketPolicyGets details about a vector bucket policy. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetVectorsReturns vector attributes. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListIndexesReturns a list of all the vector indexes within the specified vector bucket. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListTagsForResourceLists all of the tags applied to a specified Amazon S3 Vectors resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListVectorBucketsReturns a list of all the vector buckets that are owned by the authenticated sender of the request. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListVectorsList vectors in the specified vector index. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
PutVectorBucketPolicyCreates a bucket policy for a vector bucket. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
PutVectorsAdds one or more vectors to a vector index. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
QueryVectorsPerforms an approximate nearest neighbor search query in a vector index using a query vector. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
TagResourceApplies one or more user-defined tags to an Amazon S3 Vectors resource or updates existing tags. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UntagResourceRemoves the specified user-defined tags from an Amazon S3 Vectors resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN

any: S3 Vectors (catch-all)

#
Service
s3vectors

Description

Catch-all entry for S3 Vectors rules that match the service but not a specific eventName.

CreateIndex

#
Service
s3vectors

Description

Creates a vector index within a vector bucket. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateVectorBucket

#
Service
s3vectors

Description

Creates a vector bucket in the Amazon Web Services Region that you want your bucket to be in. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteIndex

#
Service
s3vectors

Description

Deletes a vector index. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteVectorBucket

#
Service
s3vectors

Description

Deletes a vector bucket. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteVectorBucketPolicy

#
Service
s3vectors

Description

Deletes a vector bucket policy. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteVectors

#
Service
s3vectors

Description

Deletes one or more vectors in a vector index. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetIndex

#
Service
s3vectors

Description

Returns vector index attributes. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetVectorBucket

#
Service
s3vectors

Description

Returns vector bucket attributes. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "31f58a3a-1038-4016-8e14-f79f8cf982fc",
  "eventSource": "s3vectors.amazonaws.com",
  "eventName": "GetVectorBucket",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "apiVersion": "2025-07-15",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "119c9840-07b6-8853-97cd-4be01c57b686",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/s3vectors#1.6.5 m/E",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.api.aws"
  },
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::S3Vectors::VectorBucket",
      "ARN": "arn:aws:s3vectors:us-east-1:123456789012:bucket/EXAMPLE"
    }
  ]
}

GetVectorBucketPolicy

#
Service
s3vectors

Description

Gets details about a vector bucket policy. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "0df1770f-e03e-4a35-be9f-e0449d2effb4",
  "eventSource": "s3vectors.amazonaws.com",
  "eventName": "GetVectorBucketPolicy",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "apiVersion": "2025-07-15",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "11e7a6d7-759a-8cb1-baa1-de547861c0c4",
  "userAgent": "config.amazonaws.com",
  "errorCode": "NotFoundException",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::S3Vectors::VectorBucket",
      "ARN": "arn:aws:s3vectors:us-east-1:123456789012:bucket/EXAMPLE"
    }
  ]
}

GetVectors

#
Service
s3vectors

Description

Returns vector attributes. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListIndexes

#
Service
s3vectors

Description

Returns a list of all the vector indexes within the specified vector bucket. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListTagsForResource

#
Service
s3vectors

Description

Lists all of the tags applied to a specified Amazon S3 Vectors resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListVectorBuckets

#
Service
s3vectors

Description

Returns a list of all the vector buckets that are owned by the authenticated sender of the request. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "24498d80-5126-40c9-b46a-a993a92b1ca4",
  "eventSource": "s3vectors.amazonaws.com",
  "eventName": "ListVectorBuckets",
  "awsRegion": "us-east-2",
  "eventType": "AwsApiCall",
  "apiVersion": "2025-07-15",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "1f2b697d-6200-8de7-89a0-4ca5e461f258",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/s3vectors#1.6.5 m/C,E",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-2.api.aws"
  }
}

ListVectors

#
Service
s3vectors

Description

List vectors in the specified vector index. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

PutVectorBucketPolicy

#
Service
s3vectors

Description

Creates a bucket policy for a vector bucket. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

PutVectors

#
Service
s3vectors

Description

Adds one or more vectors to a vector index. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

QueryVectors

#
Service
s3vectors

Description

Performs an approximate nearest neighbor search query in a vector index using a query vector. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

TagResource

#
Service
s3vectors

Description

Applies one or more user-defined tags to an Amazon S3 Vectors resource or updates existing tags. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UntagResource

#
Service
s3vectors

Description

Removes the specified user-defined tags from an Amazon S3 Vectors resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.