- Remove id-token write permission - Replace role-to-assume with aws-access-key-id and aws-secret-access-key - Remove role-session-name parameter 🤖 Generated with [Claude Code](https://claude.ai/code) Co-Authored-By: Claude <noreply@anthropic.com>