This is a new service – your feedback will help us to improve it.

  1. Home
  2. Documentation
  3. Cloud Optimisation and Accountability
  4. ADR 01 - Integration of web applications with data in AP

ADR 01 - Integration of web applications with data in AP

ADR 01 - Integration of web applications with data in AP

SPIKE investigation ticket

Decision

Register webapps with AP and use the vended IAM role to integrate webapps with data in AP. Database permissions are configured through a separate configuration file maintained by Data Engineering.

Architecture

AP-webapp integration architecture

Rationale

Advantages:

  • No data duplication
  • Data kept in AP
  • Low maintenance cost

Neutral:

  • Medium implementation effort

Disadvantages:

  • Potential reliance on support from AP
  • Less flexibility, including no support for serverless, as the trust policy for the cross-account IAM role is for kubernetes service accounts and EC2

Risks

  • Risk: AP are busy building out the AI Gateway product, therefore their ability to provide support may be limited.
  • Mitigation: The integration should be relatively simple, relying on one primary component, the cross-account IAM role, therefore any issues with the integration should be easier to troubleshoot.
Last reviewed: 17 September 2026Review status: ✓ Up to dateOwner: #coat-notificationsSource: View source on GitHub

Was this page useful?