E.g.
Resource handler returned message: "User: ... is not authorized to perform: iam:DeleteOpenIDConnectProvider on resource: ... because no identity-based policy allows the iam:DeleteOpenIDConnectProvider action (Service: Iam, Status Code: 403, Request ID: ...)" (RequestToken: ..., HandlerErrorCode: AccessDenied)
The filter for permission errors needs to be a bit more flexible.