New feature

Amazon Quick adds deny by default for custom permissions

Amazon Quick introduces a deny-by-default setting for custom permissions, allowing administrators to restrict AI capability categories in permission profiles and apply them to users, roles, or entire accounts

Amazon Quick custom permissions now include deny by default, a governance setting that automatically restricts new AI capabilities before they reach users. Previously, new AI capabilities were available to all users upon release, requiring administrators to react after the fact. With deny by default, administrators restrict the AI capability category in a custom permissions profile and assign it to users, roles, or the entire account. Quick then denies any new AI capability at launch for those users. Restricting a category also restricts existing capabilities within it. Administrators must explicitly allow each capability when ready. The restriction applies only to the profile configured. Configure deny by default in Manage account in Amazon Quick or through the AWS CLI. To learn more, see Custom permissions deny by default. Deny by default is available in all AWS Regions where Amazon Quick is available.

Read the original AWS announcement