resource "aws_s3_bucket" "codepipeline_bucket" { bucket = "${var.project_name}-pipeline-artifacts-${data.aws_caller_identity.current.account_id}" acl = "private" force_destroy = true tags = local.tags } resource "aws_iam_role" "codepipeline_role" { name = "${var.project_name}-codepipeline" tags = local.tags assume_role_policy = <