Run scoped CodeBuild jobs and deploy verified artifacts through the trusted deployment role.
Personal workspace
Workspace settings
Connect the AWS account Colonize uses to build and deploy every project.
AWS connection
Choose how Colonize obtains temporary access
Cross-account role is recommended for a hosted installation. Environment credentials remain available for local or operator-managed hosting.
Account 695313592013 · ap-southeast-1 · recorded in workspace audit
Access check
Verified capabilities
The selected identity is tested against Colonize-managed outcomes.
AWS-owned controls
Costs, quotas, and log retention
Colonize does not impose limits or duplicate AWS administration controls.
Set optional spend thresholds and notifications in AWS Budgets.
Review and request Lambda, API Gateway, CodeBuild, and ACM quotas in AWS.
Choose CloudWatch retention and exports in AWS; Colonize only reads or downloads.
AWS beginner guideHow do I create the cross-account role?
- 1Open IAM in the customer account
Create a custom role and choose custom trust policy.
- 2Trust the Colonize account and external ID
Paste the generated external ID exactly; do not use a wildcard principal.
- 3Attach the Colonize deployment policy
Grant only the documented build and deployment resource actions.
- 4Return and verify
Colonize checks the account ID, Region, and required capabilities before saving.