terraform-plan-gate-and-policy-as-code
Installation
SKILL.md
Terraform Plan Gate and Policy as Code
When to use
Invoke when establishing the pre-merge CI gate for a Terraform repository, adding policy-as-code, wiring drift detection, or auditing/hardening gate strictness and reviewer rules before the configuration manages production infrastructure.
Do not use for: repo/module structure (use terraform-module-and-repository-scaffold), state backend/secret handling (use terraform-state-and-secret-management), apply/promotion orchestration (use terraform-apply-and-promotion-mechanics), or module versioning/provenance (use terraform-module-reuse-and-supply-chain).
Inputs
Required:
- An existing repo/module scaffold and a configured remote state backend (from the scaffold and state skills).
- Approved
architecture/operationsdecisions on gate posture: required reviewers, change windows, and per-tier promotion-gate expectations. - Approved
architecture/securitydecisions on policy requirements: encryption, public-exposure prohibitions, prohibited resources/providers, and the policy engine posture.
Optional: