[
    {
        "type": "api-change",
        "category": "CognitoIdentityProvider",
        "description": "Add a new exception type, ForbiddenException, that is returned when request is not allowed"
    },
    {
        "type": "api-change",
        "category": "WAFV2",
        "description": "You can now associate an AWS WAF web ACL with an Amazon Cognito user pool."
    }
]
