AppSync has a built-in security model that allows you to define fine-grained access control rules for your GraphQL APIs.

You can use the Amplify Transform @auth directive in your schema definitions to easily create authorization rules and add additional authorization modes.

