Missing Explicit Key Policies
AWS KMS keys created in Terraform without the policy parameter explicitly defined. Without key policies, KMS falls back to IAM-based permissions which may grant broader access than intended through existing IAM policies.