1diff --git a/plugins/aws/README.md b/plugins/aws/README.md
2index 9e1e055b8e2f0b0962726de3fb1c474481b66ade..4850e223eaeb4e046c6ee077568706ea52419cd8 100644
3--- a/plugins/aws/README.md
4+++ b/plugins/aws/README.md
5@@ -16,6 +16,7 @@ plugins=(... aws)
6 It also sets `$AWS_EB_PROFILE` to `<profile>` for the Elastic Beanstalk CLI. It sets `$AWS_PROFILE_REGION` for display in `aws_prompt_info`.
7 Run `asp` without arguments to clear the profile.
8 * `asp [<profile>] login`: If AWS SSO has been configured in your aws profile, it will run the `aws sso login` command following profile selection.
9+* `asp [<profile>] logout`: If AWS SSO has been configured in your aws profile, it will run the `aws sso logout` command following profile selection.
1011 * `asr [<region>]`: sets `$AWS_REGION` and `$AWS_DEFAULT_REGION` (legacy) to `<region>`.
12 Run `asr` without arguments to clear the profile.
13diff --git a/plugins/aws/aws.plugin.zsh b/plugins/aws/aws.plugin.zsh
14index c946515be549836dc43b13182095382f7183abf0..0d7040f9275a82290131b9d4be2f825316f60d86 100644
15--- a/plugins/aws/aws.plugin.zsh
16+++ b/plugins/aws/aws.plugin.zsh
17@@ -30,6 +30,8 @@ function asp() {
1819 if [[ "$2" == "login" ]]; then
20 aws sso login
21+ elif [[ "$2" == "logout" ]]; then
22+ aws sso logout
23 fi
24 }
25