Skip to content

Commit f459e0c

Browse files
committed
Add permission to read Perplexity API key from Secrets Manager
1 parent 8262eec commit f459e0c

File tree

1 file changed

+11
-0
lines changed

1 file changed

+11
-0
lines changed

backend/src/iac/backend-stack.ts

Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -176,6 +176,17 @@ export class BackendStack extends cdk.Stack {
176176
}),
177177
);
178178

179+
// Add permission to read Perplexity API key from Secrets Manager
180+
taskRole.addToPolicy(
181+
new iam.PolicyStatement({
182+
effect: iam.Effect.ALLOW,
183+
actions: ['secretsmanager:GetSecretValue', 'secretsmanager:DescribeSecret'],
184+
resources: [
185+
`arn:aws:secretsmanager:${this.region}:${this.account}:secret:med-ai-perplexity-key`,
186+
],
187+
}),
188+
);
189+
179190
// Add Amazon Textract permissions for document analysis
180191
taskRole.addToPolicy(
181192
new iam.PolicyStatement({

0 commit comments

Comments
 (0)