chore(terraform): drop forgotten site exec-role state blocks (#73)

The PLAT-225 apply already removed these addresses from seahaven-site-prod. Point the README at seahaven-hcptf, which now owns the roles.
This commit is contained in:
Adam Moussa 2026-10-02 14:24:36 -04:00 • committed by GitHub
parent af51e425f6
commit 6cf47bd533
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
2 changed files with 1 additions and 68 deletions

View file

@ -15,7 +15,7 @@ A clean static website for Sea Haven Industries — authored as [Eleventy](https
## Infrastructure
HCP Terraform workspace `seahaven-site-prod` applies `terraform/` when `terraform/**` changes on `main`. Speculative plans run on pull requests. The workspace writes `/seahaven-site/deploy/bucket` and `/seahaven-site/deploy/distribution-id`. GitHub Environment `prod` holds `DEPLOY_ROLE_ARN`. Exec roles `hcptf-seahaven-site` and `hcptf-seahaven-site-plan` live in the `seahaven-site-hcptf` stack.
HCP Terraform workspace `seahaven-site-prod` applies `terraform/` when `terraform/**` changes on `main`. Speculative plans run on pull requests. The workspace writes `/seahaven-site/deploy/bucket` and `/seahaven-site/deploy/distribution-id`. GitHub Environment `prod` holds `DEPLOY_ROLE_ARN`. Exec roles `hcptf-seahaven-site` and `hcptf-seahaven-site-plan` live in the `seahaven-hcptf` stack.
## Develop
```bash

View file

@ -1,67 +0,0 @@
# hcptf-seahaven-site and hcptf-seahaven-site-plan moved to the
# seahaven-site-hcptf stack in seahaven-org-baseline (PLAT-225).
# Forget them here. Do not delete the live roles.
removed {
from = aws_iam_role.hcptf_apply
lifecycle {
destroy = false
}
}
removed {
from = aws_iam_role.hcptf_plan
lifecycle {
destroy = false
}
}
removed {
from = aws_iam_role_policy.hcptf_apply_services
lifecycle {
destroy = false
}
}
removed {
from = aws_iam_role_policy.hcptf_scoped_iam
lifecycle {
destroy = false
}
}
removed {
from = aws_iam_role_policy.hcptf_plan_refresh
lifecycle {
destroy = false
}
}
removed {
from = aws_iam_role_policy_attachment.hcptf_plan_viewonly
lifecycle {
destroy = false
}
}
removed {
from = aws_iam_role_policy_attachments_exclusive.hcptf_apply
lifecycle {
destroy = false
}
}
removed {
from = aws_iam_role_policy_attachments_exclusive.hcptf_plan
lifecycle {
destroy = false
}
}