inspector2 library

AWS Inspector.

Classes

AppConstant<T>
A value the Stack hands to application code as a static const in the generated AppExports file — known when synth runs, so the app compiles against it.
AppExports
Where synth writes the Dart file application code imports: the Stack's constants, as the static const members of <name>Constants, and a typed reader of its Terraform outputs, <name>Outputs.
AttributeRef<T>
Public for sealed pattern matching, but constructor is private — only TfRef.attribute() may construct instances.
AwsInspector2DelegatedAdminAccount
Factory wrapper for aws_inspector2_delegated_admin_account.
AwsInspector2Enabler
Factory wrapper for aws_inspector2_enabler.
AwsInspector2Filter
Factory wrapper for aws_inspector2_filter.
AwsInspector2MemberAssociation
Factory wrapper for aws_inspector2_member_association.
AwsInspector2OrganizationConfiguration
Factory wrapper for aws_inspector2_organization_configuration.
DartDefineOutput
An output whose value is the client build's --dart-define file, registered with Stack.addDartDefineOutput.
Data
Base of every user-instantiable Terraform data block.
DataRef<T>
Public for sealed pattern matching, but constructor is private — only TfRef.data() may construct instances.
EnvironmentConstant
The AppConstant.fromEnvironment choice.
GcsBackend
terraform { backend "gcs" { ... } } configuration.
IgnoreAllChanges
IgnoreChanges.all.
IgnoreAttributes
IgnoreChanges.of.
IgnoreChanges
What ignore_changes covers: every attribute, or the listed ones.
Inspector2FilterArchitecture
Typed helper for the filter_criteria.vulnerable_packages.architecture block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterAwsAccountId
Typed helper for the filter_criteria.aws_account_id block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterCodeRepositoryProjectName
Typed helper for the filter_criteria.code_repository_project_name block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterCodeRepositoryProviderType
Typed helper for the filter_criteria.code_repository_provider_type block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterCodeVulnerabilityDetectorName
Typed helper for the filter_criteria.code_vulnerability_detector_name block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterCodeVulnerabilityDetectorTags
Typed helper for the filter_criteria.code_vulnerability_detector_tags block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterCodeVulnerabilityFilePath
Typed helper for the filter_criteria.code_vulnerability_file_path block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterComponentId
Typed helper for the filter_criteria.component_id block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterComponentType
Typed helper for the filter_criteria.component_type block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterCriteria
Typed helper for the filter_criteria block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEc2InstanceImageId
Typed helper for the filter_criteria.ec2_instance_image_id block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEc2InstanceSubnetId
Typed helper for the filter_criteria.ec2_instance_subnet_id block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEc2InstanceVpcId
Typed helper for the filter_criteria.ec2_instance_vpc_id block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEcrImageArchitecture
Typed helper for the filter_criteria.ecr_image_architecture block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEcrImageHash
Typed helper for the filter_criteria.ecr_image_hash block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEcrImageInUseCount
Typed helper for the filter_criteria.ecr_image_in_use_count block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEcrImageLastInUseAt
Typed helper for the filter_criteria.ecr_image_last_in_use_at block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEcrImagePushedAt
Typed helper for the filter_criteria.ecr_image_pushed_at block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEcrImageRegistry
Typed helper for the filter_criteria.ecr_image_registry block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEcrImageRepositoryName
Typed helper for the filter_criteria.ecr_image_repository_name block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEcrImageTags
Typed helper for the filter_criteria.ecr_image_tags block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEpoch
Typed helper for the filter_criteria.vulnerable_packages.epoch block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterEpssScore
Typed helper for the filter_criteria.epss_score block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterExploitAvailable
Typed helper for the filter_criteria.exploit_available block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterFilePath
Typed helper for the filter_criteria.vulnerable_packages.file_path block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterFindingArn
Typed helper for the filter_criteria.finding_arn block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterFindingStatus
Typed helper for the filter_criteria.finding_status block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterFindingType
Typed helper for the filter_criteria.finding_type block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterFirstObservedAt
Typed helper for the filter_criteria.first_observed_at block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterFixAvailable
Typed helper for the filter_criteria.fix_available block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterInspectorScore
Typed helper for the filter_criteria.inspector_score block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterLambdaFunctionExecutionRoleArn
Typed helper for the filter_criteria.lambda_function_execution_role_arn block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterLambdaFunctionLastModifiedAt
Typed helper for the filter_criteria.lambda_function_last_modified_at block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterLambdaFunctionLayers
Typed helper for the filter_criteria.lambda_function_layers block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterLambdaFunctionName
Typed helper for the filter_criteria.lambda_function_name block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterLambdaFunctionRuntime
Typed helper for the filter_criteria.lambda_function_runtime block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterLastObservedAt
Typed helper for the filter_criteria.last_observed_at block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterNetworkProtocol
Typed helper for the filter_criteria.network_protocol block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterPortRange
Typed helper for the filter_criteria.port_range block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterRelatedVulnerabilities
Typed helper for the filter_criteria.related_vulnerabilities block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterRelease
Typed helper for the filter_criteria.vulnerable_packages.release block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterResourceId
Typed helper for the filter_criteria.resource_id block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterResourceTags
Typed helper for the filter_criteria.resource_tags block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterResourceType
Typed helper for the filter_criteria.resource_type block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterSeverity
Typed helper for the filter_criteria.severity block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterSourceLambdaLayerArn
Typed helper for the filter_criteria.vulnerable_packages.source_lambda_layer_arn block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterSourceLayerHash
Typed helper for the filter_criteria.vulnerable_packages.source_layer_hash block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterTitle
Typed helper for the filter_criteria.title block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterUpdatedAt
Typed helper for the filter_criteria.updated_at block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterVendorSeverity
Typed helper for the filter_criteria.vendor_severity block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterVersion
Typed helper for the filter_criteria.vulnerable_packages.version block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterVulnerabilityId
Typed helper for the filter_criteria.vulnerability_id block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterVulnerabilitySource
Typed helper for the filter_criteria.vulnerability_source block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterVulnerablePackages
Typed helper for the filter_criteria.vulnerable_packages block of aws_inspector2_filter (derived from provider schema).
Inspector2FilterVulnerablePackagesName
Typed helper for the filter_criteria.vulnerable_packages.name block of aws_inspector2_filter (derived from provider schema).
Inspector2OrganizationConfigurationAutoEnable
Typed helper for the auto_enable block of aws_inspector2_organization_configuration (derived from provider schema).
InvalidDartDefineOutput
An output of Stack.addDartDefineOutput that cannot carry what it names: an output that is not registered, is sensitive or has no environment value, two outputs read from one variable, or no output at all.
InvalidLifecycle
A lifecycle block Terraform rejects: a data source (or one of its attributes) in replaceTriggeredBy, all inside IgnoreChanges.of, or a condition with an empty error message.
InvalidMoveTarget
A moved block whose to names no resource of the Stack.
InvalidTimeout
A negative timeouts duration.
LifecycleCondition
A precondition or postcondition block: Terraform fails the plan (LifecycleCondition.pre) or the apply (LifecycleCondition.post) with errorMessage when condition is false.
LifecycleOptions
lifecycle { ... } block on a resource.
LocalBackend
terraform { backend "local" { ... } } configuration.
MissingProvider
A block needs a provider configuration the Stack does not register: the provider its type implies (google for google_pubsub_topic), the one its provider meta-argument names, or one a module call passes on.
ModuleCall
A module "<localName>" { ... } call as a Dart value.
NoProviders
The Stack registers no provider, but declares resources or data sources.
ProviderConflict
Two provider registrations Terraform rejects together: two defaults of one name, a repeated alias, an alias that is not an identifier, or configurations of one name with different source / version constraints.
RefConstant<T>
The AppConstant.ref choice.
ReplaceTrigger
What lifecycle.replaceTriggeredBy lists: a resource of the Stack or an attribute getter of one. Resource and TfRef implement it; synth reports a data source or a data-source attribute as an InvalidLifecycle.
Resource
Base of every user-instantiable Terraform resource.
ResourceRef
Public for sealed pattern matching, but constructor is private — only TfRef.resource() may construct instances.
S3Backend
terraform { backend "s3" { ... } } configuration.
Sensitive<T>
What an argument Terraform marks sensitive takes: a variable, an expression or an attribute getter — a value Terraform resolves, never a Dart literal that would be written into main.tf.json.
SensitiveLiteral
A sensitive field is set to a literal, which would write the secret in plain text into main.tf.json.
Stack
User-extended IaC composition root.
StackBackend
Lightweight backend hook. Core ships GcsBackend, S3Backend, and LocalBackend; anything else implements this interface in the caller. The Stack only stores the value and exposes a discriminator for synth's terraform { backend ... } emitter.
StackProvider
Coordination interface between Stack (in this package) and concrete providers (e.g. GoogleProvider in terradart_google). Concrete providers implement every getter using their baked-in constants from Stage 2 codegen.
SynthIssue
One reason a Stack cannot be synthesized.
SynthResult
Bundle returned by StackSynth.synth.
TfAddressed
Anything that exposes a Terraform address, e.g. google_pubsub_topic.orders.
TfArg<T>
A Terraform argument: a Dart-side literal, a reference to another block's attribute (TfRef), a variable or a raw expression.
TfArgExpression<T>
A raw Terraform expression — the tf.json template string, verbatim.
TfArgLiteral<T>
TfArgVariable<T>
TfCollectionType
list(...), set(...) or map(...).
TfMoved
One moved { from = ... to = ... } block: the state object at from now belongs to the resource at to, so a rename does not become a destroy-and-create.
TfObjectType
object({ ... }).
TfOptionalType
optional(<type>[, <default>]).
TfOutput<T>
An output "<name>" { value = ... } block, registered with Stack.addOutput.
TfPrimitiveType
string, number, bool or any.
TfRef<T>
A Terraform-side reference: an attribute of a resource (AttributeRef) or a data source (DataRef), or a whole resource (ResourceRef).
TfTimeouts
timeouts { ... } on a resource or data source: how long Terraform waits for each operation before giving up.
TfTupleType
tuple([...]).
TfType
A Terraform type constraint: string, list(number), object({ name = string }).
TfVariable
One variable "<name>" { ... } declaration.
UndeclaredVariable
A TfArg.variable or var.<name> in an expression names a variable the Stack does not declare.
UnregisteredReference
A block references another block that was never registered on the Stack: built, but not passed to add(...) / addModule(...).
UnresolvableConstant
An AppConstant.ref whose value is not known at synth: the attribute is not set to a literal, is sensitive, does not match the constant's type, or belongs to a block that is not registered.
ValueConstant<T>
The AppConstant.value choice.

Enums

ResourceKind
Whether a Stack entry is a resource block or a data block in Terraform JSON.

Extension Types

Inspector2EnablerResourceTypes
Inspector2 Enabler Resource enum for resource_types.
Inspector2FilterAction
Inspector2 Filter enum for action.
Inspector2FilterAwsAccountIdComparison
comparison — derived from the provider schema description.
Inspector2FilterResourceTagsComparison
comparison — derived from the provider schema description.
OutputEnvironment
The environment Stack.outputEnvironment returns: each variable and its value, in registration order.
RefTo
A reference to a resource of type R, for an argument that names another resource (network, vpc_id, role_arn, ...).

Extensions

RefToList on TfArg<List<RefTo<R>>>
A list-valued reference argument (security_group_ids, subnet_ids): a literal list of RefTos, or one value that is the whole list (TfArg.variable('subnet_ids'), TfArg.expression(...)).
TerraformDurationExt on Duration
Converts a Dart Duration into a Terraform duration string ("604800s").

Exceptions / Errors

DuplicateModuleError
A ModuleCall registered twice under one name.
DuplicateResourceError
Thrown by Stack.add when an entry with the same (kind, terraformType, localName) triple is registered twice.
SynthException
Thrown by Stack.synth() and Stack.writeTo() when the Stack has one or more SynthIssues. Nothing is written.