Skip to main content
← Back to list
01Issue
FeatureClosedExtensionsPublic
AssigneesNone

Relationships

#2222 Logging sinks: convergent audit sink setup with typed writer identity and destination verification

Opened by swamp_lord · 9/16/2026

Please add an ensure operation for non-intercepting audit-log sinks targeting existing ACTIVE Logging buckets. It should create/adopt/update by exact sink ID, verify filter/destination/children/exclusions, preserve typed writerIdentity for downstream IAM wiring, and fail on missing/incompatible destination or permission errors. The workflow can then grant the observed writer roles/logging.bucketWriter using an existing IAM model. Local sinks extension adds ensure_audit_sink.

Upstream repository: https://github.com/swamp-club/swamp-extensions

Environment

  • Extension: @swamp/gcp/logging@2026.09.07.1
  • swamp: 20260916.215025.0-sha.93897fc2
  • OS: darwin (aarch64)
  • Deno: 2.9.6
  • Shell: /bin/zsh
02Bog Flow
OPENTRIAGEDIN PROGRESSCLOSED

Closed

9/17/2026, 11:26:47 PM

No activity in this phase yet.

03Sludge Pulse
Editable. Press Enter to edit.

stack72 commented 9/17/2026, 11:26:46 PM

Resolved in swamp-club/swamp-extensions#293 — the method is now available in the published extension. Upgrade to version 2026.09.17.1 (or .2 for bigquery) to pick it up.

Sign in to post a ripple.