No questions, just a suggestion: implement the part where the terraform plan is added as a comment in the PR. We set this up at my current employer and it makes the review process much quicker (also, commenting on lines in the ~plan~ terraform code changes is the bee's knees).
Don't have the apply be automatic after a review is approved; terraform apply's occasionally go sideways and need human intervention (remember: rollbacks are not automatic). A human should always kick off the apply and monitor state change activity.
Woah can you comment on lines in a comment? /me dashes to investigate github
And thanks for the suggestion. So far it's been on a someday maybe list, but if it really does help that much, maybe we'll bump it to someday maybe soon.
Comments
No questions, just a suggestion: implement the part where the terraform plan is added as a comment in the PR. We set this up at my current employer and it makes the review process much quicker (also, commenting on lines in the ~plan~ terraform code changes is the bee's knees).
Don't have the apply be automatic after a review is approved; terraform apply's occasionally go sideways and need human intervention (remember: rollbacks are not automatic). A human should always kick off the apply and monitor state change activity.
Woah can you comment on lines in a comment? /me dashes to investigate github
And thanks for the suggestion. So far it's been on a someday maybe list, but if it really does help that much, maybe we'll bump it to someday maybe soon.
Questions from our team:
- Are you commenting with the output of show on the planfile to get human-readable version?
- Line by line commenting on comments?
- Do you have state-splits? Do you run plan on each individually for every PR?
May I email you answers to these?
Yes, that works. (email in profile)
I couldn't agree more with this, we do exactly the same and it works great for us. Plan on a comment and manual apply.