> For the complete documentation index, see [llms.txt](https://awsnotes.dendron.so/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://awsnotes.dendron.so/security-identity-and-compliance/amazon-cognito/common/security.md).

# Security

{% hint style="info" %}
This page was generated from content adapted from the [AWS Developer Guide](https://github.com/awsdocs/amazon-cognito-developer-guide.git)
{% endhint %}

## Data protection

* **Note**\
  Amazon Cognito encrypts customer content internally and doesn't support customer provided keys.

## AWS managed policies

* **Note**\
  Because creating a new identity pool also requires creating IAM roles, any user you want to be able to create new identity pools with must have the admin policy applied as well.
