Skip to content

Commit fb55271

Browse files
committed
explain limitation of the policy 3
1 parent 6227708 commit fb55271

File tree

1 file changed

+4
-1
lines changed

1 file changed

+4
-1
lines changed

governance/third-generation/cloud-agnostic/restrict-remote-state.sentinel

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,10 @@
1111
# could echo the remote state to outputs and see it in the log of their plan.
1212
# They could also use the external and http data sources (if not banned by
1313
# another Sentinel policy) to send the remote state data to and external API
14-
# endpoint. The Terraform Cloud team is working on enhancements to TFC's
14+
# endpoint. Another issue is that workspace admins can change the name of their
15+
# workspaces.
16+
17+
# The Terraform Cloud team is working on enhancements to TFC's
1518
# RBAC system that will better secure and control remote state access. So, please
1619
# only consider this policy a stop-gap until that enhancement is released.
1720

0 commit comments

Comments
 (0)