payments-dashboard/src
Adam Moussa 90accf2f39 Migrate secrets from SSM to Secrets Manager
API tokens and credentials must live in Secrets Manager per
secrets-and-config.md, but the four original payment Lambdas still
read 10 SecureString SSM params. Move them to three grouped secrets
(slack-bot-token plaintext, boa-check-mgmt and boa-reporting as JSON),
matching the pattern the expense Lambdas already use. IAM is scoped to
secretsmanager:GetSecretValue per secret; the VPC Lambdas reach the
public endpoint over the existing NAT path. Test/reissue scripts and
the client-ssm dependency are updated/removed accordingly.

Refs: #3
2026-06-02 20:29:18 -04:00
..
expenseProcessor.js Merge expense-approval-bot into payments-dashboard (#28) 2026-05-12 13:08:42 -04:00
expenseReceiver.js Merge expense-approval-bot into payments-dashboard (#28) 2026-05-12 13:08:42 -04:00
fetchBoaTransactions.js Migrate secrets from SSM to Secrets Manager 2026-06-02 20:29:18 -04:00
processPaymentCsv.js Migrate secrets from SSM to Secrets Manager 2026-06-02 20:29:18 -04:00
processPayrollEmail.js Migrate secrets from SSM to Secrets Manager 2026-06-02 20:29:18 -04:00
slackAppHome.js Migrate secrets from SSM to Secrets Manager 2026-06-02 20:29:18 -04:00