- Identity Store APIs now accept ARNs for users, groups, memberships, and identity stores alongside IDs
- Allows direct ARN usage, simplifying code and eliminating parsing errors while responses still return IDs
- Invalid or mismatched ARNs result in ValidationException; feature is additive and incurs no extra cost