We need the ability to scan and validate Terraform source code within Spacelift approval policies to enforce security guardrails. Specifically, we want to prevent (not just detect) the usage of potentially dangerous Terraform providers before plans are executed.
Currently, approval policies do not have visibility into the underlying Terraform source code, limiting our ability to enforce provider-level security controls.