docs(iam): record the shared floor size as 691 characters (PLAT-52)

The stated measurement, with the account id resolved, is 691 characters
and 4 statements for the shared boundary and for the dev floor copies.
Headroom is 5453.

Co-authored-by: Adam Moussa <amoussa1229@users.noreply.github.com>
This commit is contained in:
Cursor Agent 2026-09-28 17:43:42 +00:00
parent 47b4eb68d1
commit 131f952dbc
No known key found for this signature in database

View file

@ -134,8 +134,8 @@ Description: >-
# on the synthesized PolicyDocument with ${AWS::AccountId} resolved, and UPDATE
# THE NUMBERS in the same edit.
#
# Shared LambdaExecutionBoundary (floor only; do not widen): 708
# characters / 4 statements as of 2026-09-28 (PLAT-52). Headroom 5436.
# Shared LambdaExecutionBoundary (floor only; do not widen): 691
# characters / 4 statements as of 2026-09-28 (PLAT-52). Headroom 5453.
# Statements: CloudWatchLogsWrite, CloudWatchLogsDescribe, XRay, Ec2Eni.
# Packed IsProdAccount data-plane statements removed once
# PermissionsBoundaryUsageCount was 0 in prod and dev.
@ -149,7 +149,7 @@ Description: >-
# seahaven-lambda-execution-boundary-seahaven-site: 1159 / 6 statements
# seahaven-lambda-execution-boundary-seahaven-door-unlock-api: measure after deploy (PLAT-76)
# seahaven-lambda-execution-boundary-paychex-integrations: 3250 / 10 statements (PLAT-228)
# The same four floor statements measure 708 / 4 on the dev policies once
# The same four floor statements measure 691 / 4 on the dev policies once
# IsProdAccount drops the prod-only statements. meal-order-manager
# (PLAT-210) also keeps DynamoDB/S3/SSM/invoke plus the seahaven-dev
# slack-bot-token ARN. SNS, SQS (Paychex), and SES stay prod.