minimal IAM policy
{
"Version": "2012-10-17",
"Statement": [{
"Sid": "BucketLensAccess",
"Effect": "Allow",
"Action": [
"s3:ListAllMyBuckets",
"s3:ListBucket",
"s3:GetObject",
"s3:PutObject",
"s3:DeleteObject"
],
"Resource": [
"arn:aws:s3:::your-bucket-name",
"arn:aws:s3:::your-bucket-name/*"
]
}]
}
Replace your-bucket-name. Never use Resource: * in production.