|
|
058db53acd
|
fix(iam): allow ListPolicyTags on scoped IAM policy (PLAT-146)
tagged managed scoped IAM is refreshed with ListPolicyTags; apply IamReadOnly and plan-refresh omitted it.
|
2026-09-02 18:01:10 -04:00 |
|
|
|
6dd878e7f5
|
fix(iam): add apply-role IAM list permissions (PLAT-146)
IamReadOnly omitted ListRoleTags and ListInstanceProfilesForRole needed after detaching the substrate guardrail.
|
2026-09-02 17:39:00 -04:00 |
|
|
|
fa6bcc90cc
|
fix(iam): attach scoped IAM as a managed policy (PLAT-146)
The apply role's services inline already uses 6894 of 10240 bytes, so a second inline policy cannot hold scoped IAM.
|
2026-09-02 15:06:03 -04:00 |
|
|
|
e72873409e
|
feat(iam): import hcptf roles into app Terraform (PLAT-146)
Move the existing hcptf pair into this repo so app Terraform owns prod IAM after the substrate handoff.
|
2026-09-02 14:49:07 -04:00 |
|