I have noticed the following bug: I've defined an IAM user which has attached to it a custom policy. Everytime I run the push I got the following result: ``` aws iam detach-user-policy --user-name foo --policy-arn arn:aws:iam::xxxxxxxxxxxxx:policy/my-custom-policy aws iam attach-user-policy --user-name foo --policy-arn arn:aws:iam::xxxxxxxxxxxxx:policy/my-custom-policy ``` so basically a diff is detected even though there is no real diff