Settings
Read-only provider readiness and trust boundaries
Trust Boundaries
| Provider | Status | Required non-secret input | Credential boundary | Writes |
|---|---|---|---|---|
| GCP | config-confirmed / credential-check-blocked | Project thesoftworld-dev and region europe-west1 are selected. | Local ADC, workload identity, or equivalent Pulumi provider configuration still needs verification. | read-only |
| Cloudflare | blocked | Confirm dev.thesoftworld.com is an active zone or delegated into one. | CLOUDFLARE_API_TOKEN with zone read permission is required before live checks. | read-only |
| Neon | blocked | Confirm thesoftworld-platform-dev account/project path and preview branch support. | NEON_API_KEY or Pulumi secret config must be available before live checks. | read-only |
| AWS S3 | blocked | Confirm AWS account/IAM path for S3 bootstrap in eu-central-1. | Standard AWS provider chain with scoped S3 bootstrap permissions is required. | read-only |
| MongoDB Atlas | deferred-placeholder | No near-term workload requires Atlas yet. | No credential boundary is active for CP-08. | read-only |