Remove CloudTrail from monitoring (managed in org/)#15
Merged
Conversation
a0db058 to
6e3b275
Compare
Terraform PlanChanges detected — review required. Plan output |
LLM Plan ReviewRisk: 🔴 HIGH Risk: 🔴 HIGH Plan destroys CloudTrail audit logging infrastructure, eliminating audit trail and compliance capabilities for the Javabin AWS account.
|
Terraform PlanChanges detected — review required. Plan output |
LLM Plan ReviewRisk: 🔴 HIGH Risk: 🔴 HIGH Plan destroys CloudTrail audit logging infrastructure, eliminating compliance audit trail and security event tracking for the Javabin production environment.
|
The trail and S3 bucket are in terraform/org/cloudtrail.tf (human-applied). CI role's permission boundary blocks cloudtrail:DeleteTrail, causing apply failures.
6e3b275 to
208bff4
Compare
Terraform PlanNo changes — infrastructure is up to date. Plan output |
Alexanderamiri
added a commit
that referenced
this pull request
May 9, 2026
Fixes the apply failure from PR #13. CloudTrail resources are in terraform/org/ — the duplicate in monitoring caused a DeleteTrail error blocked by the permission boundary.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Fixes the apply failure from PR #13. CloudTrail resources are in terraform/org/ — the duplicate in monitoring caused a DeleteTrail error blocked by the permission boundary.