Skip to content

Releases: albatroxxx/terradune

Terradune v1.0.6

Choose a tag to compare

@github-actions github-actions released this 28 Sep 16:15
4abce97

Terradune v1.0.6

Reliable Live Refresh

  • Resource details are serialized into a snapshot before the shared state lock
    is released. Slow or stalled clients no longer block state updates and other
    requests while the response is written. Error responses release the lock too.
  • Edits to .tfvars.json files, including .auto.tfvars.json, now trigger
    replanning when the files are under the scanned root.
  • A shared-file change replans all scanned workspaces even when the same
    debounced batch contains workspace-specific edits. Empty batches are ignored,
    and repeated paths still select a workspace only once.

The CLI and Resource Map, Plan, and Graph interfaces are unchanged. Explicit
variable files outside the scanned root are not newly watched by this patch.

Install or Upgrade

go install github.com/albatroxxx/terradune@v1.0.6
terradune -version

Go remains the only supported installation method. No infrastructure is applied.
Existing stable tags, including v1.0.5, are unchanged.

Validation

Regression tests cover blocked success/error responses, state updates during
those responses, JSON variable filesystem events, supported file extensions,
shared/owned edit order, duplicate paths, nested workspace ownership, and empty
batches. Publication requires race tests and Go installation on three operating
systems, Terraform/OpenTofu integration, all three app browsers, website
accessibility/layout checks, and security scans.

Installation | Changelog

Terradune v1.0.5

Choose a tag to compare

@github-actions github-actions released this 25 Sep 09:31
fe0642c

Terradune v1.0.5

Clearer Plan Review

  • Resource types and their counts follow action, search, workspace and changes-only filters. Types without matching resources disappear; unavailable selections reset to All resource types.
  • What changes leads resource details with explicit Before and After columns for changed attributes. Creation, update, replacement and deletion are supported, including changes to attached routes and associations.
  • Unknown values remain labelled Known after apply. Sensitive values remain redacted. When redaction or a replacement leaves no visible difference, the action is still reported without inventing values.

More Room for Resources

  • Compact VPC resource cards replace full-width inventory rows.
  • Subnets preview three resources, with View all opening the full inventory.
  • Single-click pins relationships while keeping other resources visible. Double-click or Focus path narrows the map with VPC, subnet and resource sections intact.
  • Connection lines stop at intervening card edges and resume beyond them, retaining direct and indirect circle markers.
  • Smaller navigation and collapsible filters provide more working space. Keyboard focus and reduced-motion preferences are retained.

Install or Upgrade

go install github.com/albatroxxx/terradune@v1.0.5
terradune -version

Go remains the only supported installation method. Terradune reviews plans locally and does not apply infrastructure changes.

Validation

Regression coverage includes filtered type counts, empty filters, lifecycle comparisons, nested values, masking, dependency focus and keyboard navigation. Release publication is gated by cross-platform race tests, Terraform/OpenTofu integration, Chromium/Firefox/WebKit accessibility checks, static-site checks and security scans.

Installation | Changelog

Terradune v1.0.4

Choose a tag to compare

@github-actions github-actions released this 24 Sep 14:13
f7230b1

Terradune v1.0.4

Visible route changes and a compact Resource Map for dense, mixed-service VPCs.

Fixed

  • Changes to routes on existing route tables remain visible with Changes only
    enabled. Unchanged parents retain their real action and show attached-change
    counts instead of appearing to have changed themselves.
  • Connection changes exposes route, association, rule, and attachment
    changes, including additions, updates, replacements, deletions, and unresolved
    endpoints. Details retain sanitized previous values for inspection.
  • IPv6 and prefix-list destinations, default route tables, modern security-group
    rules, and unknown values inside repeated blocks receive regression coverage.

Resource Map

  • Subnets preview up to five compact rows with a service icon, name,
    size/runtime, change status, and details. View all opens a subnet-filtered
    inventory instead of growing a stack of server cards.
  • Resources in this VPC groups compute and containers, databases and caches,
    storage, networking, security, and other resources. EC2, ECS/Fargate,
    VPC-connected Lambda, RDS, and caches share the inventory when the plan
    establishes their placement.
  • Resources appear once per VPC inventory with their known subnet associations.
    Unrelated dependencies are not assumed to belong to a VPC.
  • Natural sorting, keyboard-accessible details, responsive table scrolling, and
    selection/focus preservation make dense plans easier to inspect.

Install Or Update

Requires Go 1.27.1+ and Terraform or OpenTofu on PATH. Go remains the sole
supported installation method.

go install github.com/albatroxxx/terradune@v1.0.4
terradune -version

Use @latest to follow stable releases. See the
installation guide for Go and
PATH setup. Existing stable tags remain unchanged.

Validation And Boundaries

The source PRs passed Linux/macOS/Windows build, installation, vet, and race
tests; Terraform/OpenTofu CLI integration; Chromium/Firefox/WebKit browser and
accessibility tests; static-site validation; and security scans. Synthetic
fixtures cover route changes, 30 servers in one subnet, and mixed-service VPCs.
Release publication repeats CI and verifies the published Go module.

This release does not claim complete AWS/Terraform lifecycle parity. Data-source
inventory, imports, moves, forgotten resources, output changes, deferred plans,
and complete provider-alias account/region modeling remain planned work.
Terradune never runs apply; planning can still contact providers, backends, and
external programs. Keep the server on localhost.

Route fix #34 |
VPC redesign #35 |
Changelog |
Feedback

Terradune v1.0.3

Choose a tag to compare

@github-actions github-actions released this 22 Sep 09:39
103687a

Terradune v1.0.3

Dedicated Plan resource types, clearer Resource Map connections, and one
supported installation path: Go.

Changes

  • Plan filters now use each exact resource type. EC2 instances, VPCs, subnets,
    and security groups are separate, including unfamiliar AWS and other
    provider types. The resource register still lists each instance once.
  • Resource Map lines use teal with filled circles for direct dependencies,
    and dashed blue with hollow circles for associations through collapsed
    routes or attachments. The legend matches the new styles.
  • Go is the sole supported installation method. The README and website
    include Go setup, PATH configuration, workspace initialization, and update
    instructions for macOS, Linux, and Windows.
  • Release CI checks Go installation on all three operating systems, then
    verifies the exact source commit before publication and the tagged module
    afterward.

Install Or Update

Requires Go 1.27.1+ and Terraform or OpenTofu on PATH.

go install github.com/albatroxxx/terradune@v1.0.3
terradune -version

Use @latest to follow stable releases. See the
installation guide for Go and
PATH setup. Previously published versions remain historical releases.

Known Boundaries

Data-source inventory, imports, moves, forgotten resources, output changes,
deferred plans, and complete provider-alias account/region modeling remain
planned work. Terradune never runs apply; planning can still contact providers,
backends, and external programs. Keep the server on localhost.

Changelog |
Feedback

v1.0.2

Choose a tag to compare

@github-actions github-actions released this 17 Sep 10:11
e7e7781

Terradune v1.0.2

A patch release fixing Resource Map classification reported by a user in
#23.

Fixed

  • for_each associations reach their subnets before apply. A route table
    association iterating a subnet resource with for_each had no edge to its
    subnet on a plan of new infrastructure, so public subnets were shown as
    private. The resolver now reads the for_each expression and pairs
    instances by key — stated by Terraform's semantics, not guessed. A re-keyed
    collection draws nothing rather than something wrong.
  • Unknown is no longer labelled private. A subnet with no known route
    table association now shows no public/private qualifier at all, instead of
    asserting an answer the plan never gave.

Install

go install github.com/albatroxxx/terradune@latest
terradune -version

For Docker, ghcr.io/albatroxxx/terradune:latest follows the newest release;
pin 1.0.2 or the digest below for reproducibility. Binary archives with
checksums.txt and its Sigstore bundle are attached; verification
instructions are in the
README.

Known Boundaries

Unchanged from
v1.0.1.

Changelog | Feedback

Verified Image

ghcr.io/albatroxxx/terradune@sha256:0b929018479065bd75278c295e81f5e04e35af4ee43d45d2c07836cede24b2b0

Includes Linux AMD64 and ARM64 images, SBOM, and provenance attestations.

v1.0.1

Choose a tag to compare

@github-actions github-actions released this 17 Sep 07:29
af3bce0

Terradune v1.0.1

The first Terradune release with native binary archives. Docker and Go
installation continue unchanged, and the documented installation commands now
resolve the latest release rather than naming one.

Highlights

  • Native binaries: signed archives for Linux, macOS, and Windows on AMD64
    and ARM64, with checksums.txt and a keyless cosign Sigstore bundle.
    Verification instructions are in the
    README,
    pinned to this repository's release workflow identity.
  • OpenTofu: Terradune drives terraform when installed and falls back to
    tofu. The workspace header names whichever produced the plan. Real
    Terraform 1.16.2 and OpenTofu 1.12.6 integration tests run on three
    operating systems.
  • Accessibility: live plan updates preserve keyboard focus, dialogs return
    focus to their rebuilt opener, and dimmed map cards keep WCAG AA contrast.
    A Chromium/Firefox/WebKit suite with automated WCAG A/AA checks gates every
    change.
  • Reporting: a structured bug report form, and update/removal instructions
    for every installation method.

Install

go install github.com/albatroxxx/terradune@latest
terradune -version

Native installation requires Go 1.27.1+ and a Terraform or OpenTofu CLI on
PATH. For Docker, ghcr.io/albatroxxx/terradune:latest follows the newest
release; pin 1.0.1 or the digest below for reproducibility. Follow the
installation guide for
initialization, credentials, and loopback port publishing.

Validation Gates

Everything v1.0.0 required, plus: all six native archives built and verified on
every pull request with the host-native binary executed on Linux, macOS, and
Windows; a keyless signing round trip on trusted main; real Terraform and
OpenTofu init/plan/show/graph integration tests on three operating systems; and
browser/accessibility suites across Chromium, Firefox, and WebKit.

Known Boundaries

The boundaries of v1.0.0 stand: data-source inventory, import/move/forget
lifecycle states, output changes, deferred plans, and provider-alias
account/region modeling remain planned work. Terradune never runs apply, but
planning can access providers, backends, and external programs. Keep it on
localhost. See the
security policy.

Changelog | Feedback

Verified Image

ghcr.io/albatroxxx/terradune@sha256:05a5b92c67fbb1f365d8b451ddf6c71d3c65e6fece92865519f9bddb9b5ad62e

Includes Linux AMD64 and ARM64 images, SBOM, and provenance attestations.

Terradune v1.0.0

Choose a tag to compare

@github-actions github-actions released this 15 Sep 09:04
f23b8f7

Terradune v1.0.0

The first stable release of Terradune's local Terraform plan-review workflow, available through Docker or Go.

Highlights

  • Resource Map: AWS network context, pinned paths, clearer route and association lines, grouped legend, and expanded canvas.
  • Plan: one entry per managed resource and workspace, including unfamiliar resource types; destructive changes first; search and service/action filters.
  • Graph: routed dependency arrows, focused neighborhoods, zoom/fit, and keyboard-accessible resource inspection.
  • Runtime: sensitivity-aware metadata and details, serialized/coalesced workspace plans, latest-snapshot SSE delivery, and graceful cancellation.
  • Distribution: non-root Linux AMD64/ARM64 Docker images with Terraform, Compose, health checks, and source installation with Go.

Install

go install github.com/albatroxxx/terradune@v1.0.0
terradune -version

Native installation requires Go 1.27.1+ and Terraform on PATH. For Docker, use ghcr.io/albatroxxx/terradune:1.0.0 and follow the installation guide for initialization, credentials, and loopback port publishing. Linux providers are initialized in .terradune/, separately from native .terraform/.

Validation Gates

Publication requires Go build, formatting, vet and race tests on Linux/macOS/Windows; frontend behavior tests; gosec, staticcheck, govulncheck, and Semgrep; static-site checks; Docker init/plan/API/shutdown smoke tests on AMD64 and ARM64; and a fixable HIGH/CRITICAL image vulnerability gate. An anonymous registry pull must succeed before this release is created.

The image rebuilds unmodified Terraform 1.16.2 source with Go 1.27.1 to address vulnerabilities in the upstream binary's older standard library. See packaging provenance and licenses.

Known Boundaries

This is not a claim of complete Terraform/AWS feature parity. Data-source inventory, import/move/forget lifecycle states, output changes, deferred plans, and complete provider-alias account/region modeling remain planned work. Very large estates still need measured layout/performance budgets. Browser verification is not a complete screen-reader or cross-browser audit.

Terradune never runs apply, but planning can access providers, backends, and external programs. There is no authentication or TLS: keep it on localhost. Sensitivity masks do not detect unmarked secrets or sanitize every provider diagnostic. Review the security policy.

Changelog | Feedback

Verified Image

ghcr.io/albatroxxx/terradune@sha256:d66184d4de139873d3a78fe72cb2829c9797f13181f4594d5d6ad2283fd6ce5e

Includes Linux AMD64 and ARM64 images, SBOM, and provenance attestations.