From 8ed1a95010fecdb37abab81617b2c1e59d720916 Mon Sep 17 00:00:00 2001 From: milldr <14060048+milldr@users.noreply.github.com> Date: Wed, 28 Jan 2026 16:35:26 +0000 Subject: [PATCH] (github actions) generated latest snippets --- .../.github/workflows/atmos-pro-terraform-apply.yaml | 4 ++-- .../stacks/workflows/quickstart/foundation/identity.yaml | 6 ++++-- 2 files changed, 6 insertions(+), 4 deletions(-) diff --git a/examples/snippets/.github/workflows/atmos-pro-terraform-apply.yaml b/examples/snippets/.github/workflows/atmos-pro-terraform-apply.yaml index f1bbe3920..148a5c2b7 100644 --- a/examples/snippets/.github/workflows/atmos-pro-terraform-apply.yaml +++ b/examples/snippets/.github/workflows/atmos-pro-terraform-apply.yaml @@ -33,7 +33,7 @@ permissions: id-token: write # This is required for requesting the JWT contents: read # This is required for actions/checkout -jobs: +jobs: atmos-apply: name: ${{ inputs.component }}-${{ inputs.stack }} @@ -52,7 +52,7 @@ jobs: - uses: unfor19/install-aws-cli-action@v1 - name: Apply Atmos Component - uses: cloudposse/github-action-atmos-terraform-apply@v7 + uses: cloudposse/github-action-atmos-terraform-apply@v6 env: ATMOS_PROFILE: "github-apply" with: diff --git a/examples/snippets/stacks/workflows/quickstart/foundation/identity.yaml b/examples/snippets/stacks/workflows/quickstart/foundation/identity.yaml index a702bb72b..322915dab 100644 --- a/examples/snippets/stacks/workflows/quickstart/foundation/identity.yaml +++ b/examples/snippets/stacks/workflows/quickstart/foundation/identity.yaml @@ -69,10 +69,12 @@ workflows: deploy/iam-role: description: | - Deploy iam-role/terraform and iam-role/planner to all accounts (except root). + Deploy iam-role/terraform and iam-role/planner roles. These roles are used by GitHub Actions for CI/CD. steps: - # Core accounts (except root) + # Only deploy the planner role in the root account + - command: terraform deploy iam-role/planner -s core-gbl-root + # Core accounts - command: terraform deploy iam-role/terraform -s core-gbl-artifacts - command: terraform deploy iam-role/planner -s core-gbl-artifacts - command: terraform deploy iam-role/terraform -s core-gbl-audit