/** * sh-mcp-finance — synth-only CDK app (build-plan §6). * * Exists ONLY so the CI `cdk synth` gate has a valid app to synthesize. Defines * NO real IAM/Cognito/API-Gateway/WAF resources (those need the mandatory human * IAM cross-review). The real stack — including the finance least-privilege role * and audit wiring (design.md §2.5) — is a later phase. * * TODO(phase-2): real stack — gated on Cognito + IAM cross-review (design.md §8). */ import { App, Stack, CfnOutput, type StackProps } from 'aws-cdk-lib'; import type { Construct } from 'constructs'; class ShMcpFinanceStack extends Stack { constructor(scope: Construct, id: string, props?: StackProps) { super(scope, id, props); new CfnOutput(this, 'PlatformTier', { value: 'finance', description: 'sh-mcp-finance trust tier (synth-only placeholder; design.md §3).', }); } } const app = new App(); new ShMcpFinanceStack(app, 'sh-mcp-finance', { description: 'Sea Haven MCP finance-tier server (synth-only stub — no real infra yet).', }); app.synth();