ReadonlynameName identifying this selector on the trail.
Optional ReadonlyreadRead/write filter. If omitted, both read and write events are captured.
Optional ReadonlyresourceResource ARNs to scope the selector to. If omitted, all resources of the type are captured.
ReadonlyresourceThe CloudTrail resources.type whose data events will be captured.
Specifies a data event selector for any CloudTrail-supported resource type, rendered as an advanced event selector. Where AuditEventSelector is S3-specific and renders a basic event selector, this covers any
resources.typeCloudTrail supports (Lambda, DynamoDB, Bedrock AgentCore, and so on).CloudTrail accepts exactly one
resources.typeper selector, so capturing N resource types requires N selectors.