import type { ScanFinding } from "../../types.js"; import type { ScanConfig } from "../types.js"; /** * Best-effort: attaches AWS resource tags to findings in place, using the * ResourceGroupsTaggingAPI (already covered by the standard ReadOnlyAccess * policy GreenOps asks customers to attach — no extra permissions needed). * * Tags help identify which project/team/environment a flagged resource * belongs to, and give a coding agent extra context when fixing the finding * in infrastructure-as-code. */ export declare function attachResourceTags(findings: ScanFinding[], config: ScanConfig, accountId: string): Promise;