mirror of
https://github.com/Sea-Haven-Industries/payments-dashboard.git
synced 2026-09-30 17:03:12 +00:00
API tokens and credentials must live in Secrets Manager per secrets-and-config.md, but the four original payment Lambdas still read 10 SecureString SSM params. Move them to three grouped secrets (slack-bot-token plaintext, boa-check-mgmt and boa-reporting as JSON), matching the pattern the expense Lambdas already use. IAM is scoped to secretsmanager:GetSecretValue per secret; the VPC Lambdas reach the public endpoint over the existing NAT path. Test/reissue scripts and the client-ssm dependency are updated/removed accordingly. Refs: #3 |
||
|---|---|---|
| .. | ||
| dryrun.cjs | ||
| reissue-checks.cjs | ||
| seed-bank-status.js | ||
| seed-from-csv.js | ||
| simulate-csv.cjs | ||
| stampli-uploader.sh | ||
| test-boa-prod.js | ||
| test-boa-sandbox.js | ||