payments-dashboard/scripts
Adam Moussa 90accf2f39 Migrate secrets from SSM to Secrets Manager
API tokens and credentials must live in Secrets Manager per
secrets-and-config.md, but the four original payment Lambdas still
read 10 SecureString SSM params. Move them to three grouped secrets
(slack-bot-token plaintext, boa-check-mgmt and boa-reporting as JSON),
matching the pattern the expense Lambdas already use. IAM is scoped to
secretsmanager:GetSecretValue per secret; the VPC Lambdas reach the
public endpoint over the existing NAT path. Test/reissue scripts and
the client-ssm dependency are updated/removed accordingly.

Refs: #3
2026-06-02 20:29:18 -04:00
..
dryrun.cjs Fix BoA transaction matching, add status progression protection, enable daily schedule 2026-04-14 17:43:13 -04:00
reissue-checks.cjs Migrate secrets from SSM to Secrets Manager 2026-06-02 20:29:18 -04:00
seed-bank-status.js Add BoA CashPro sandbox test script and update seed script 2026-04-13 15:34:01 -04:00
seed-from-csv.js Add seed scripts from master (seed-from-csv, seed-bank-status) 2026-04-10 17:35:57 -04:00
simulate-csv.cjs Log BoA submissions to DDB and surface in Slack App Home 2026-04-20 17:40:55 -04:00
stampli-uploader.sh Log BoA submissions to DDB and surface in Slack App Home 2026-04-20 17:40:55 -04:00
test-boa-prod.js Migrate secrets from SSM to Secrets Manager 2026-06-02 20:29:18 -04:00
test-boa-sandbox.js Migrate secrets from SSM to Secrets Manager 2026-06-02 20:29:18 -04:00