Updated on 2026-09-23 GMT+08:00

Modifying or Deleting an Agency

You can modify or delete an agency or a trust agency as needed. Modifying or deleting outdated agencies in a timely manner improves your account security.

Agencies automatically created by IAM Identity Center (whose names start with SysReservedV3) cannot be deleted on the IAM console. To delete such an agency, you need to delete the corresponding permission set on the IAM Identity Center console. For details, see Deleting a Permission Set.

Modifying an Agency

To modify the permissions, validity period, and description of an agency, click Modify in the row containing the agency you want to modify.

Modifying the permissions of cloud service agencies may affect the usage of certain functions of cloud services. Exercise caution when performing this operation.

Figure 1 Modifying an agency

You can change the cloud service, validity period, description, and permissions of cloud service agencies, but you cannot change the agency name and type.

Deleting an Agency

To delete an agency, click Delete in the row containing the agency to be deleted and click OK. Deleted agencies will no longer be displayed in the agency list.

After you delete an agency, all permissions granted to the delegated account will be cancelled.

Figure 2 Deleting an agency

Batch Deleting Agencies

To delete multiple agencies, select the agencies to be deleted in the list and click Delete above the list. Deleted agencies will no longer be displayed in the agency list.

After you delete an agency, all permissions granted to the delegated account will be cancelled.

Figure 3 Batch deleting agencies