Commit graph

2 commits

Author SHA1 Message Date
Adam Moussa
e50c8f0876
Attach permissions boundary to all Lambda roles (#7)
Some checks are pending
Deploy / deploy (push) Waiting to run
Adds the seahaven-lambda-execution-boundary policy as a
PermissionsBoundary on all auto-generated Lambda execution
roles via Globals.Function, enabling the cfn-execution-role
scope-down from INFRA-97 to safely allow iam:CreateRole.

No explicit AWS::IAM::Role resources exist in this stack;
the Globals entry covers both SlaMonitorFunction and
UserSyncFunction.

Refs: INFRA-103
2026-06-10 14:14:58 -04:00
Adam Moussa
899f07d09c Add unified Front integrations SAM stack
Consolidates front-sla-monitor (Python SAM) and google-user-sync
(JavaScript CDK) into a single Python SAM repo with two Lambdas:
front-sla-monitor and front-user-sync.
2026-05-12 11:24:41 -04:00