Releases: albatroxxx/terradune
Release list
Terradune v1.0.6
Terradune v1.0.6
Reliable Live Refresh
- Resource details are serialized into a snapshot before the shared state lock
is released. Slow or stalled clients no longer block state updates and other
requests while the response is written. Error responses release the lock too. - Edits to
.tfvars.jsonfiles, including.auto.tfvars.json, now trigger
replanning when the files are under the scanned root. - A shared-file change replans all scanned workspaces even when the same
debounced batch contains workspace-specific edits. Empty batches are ignored,
and repeated paths still select a workspace only once.
The CLI and Resource Map, Plan, and Graph interfaces are unchanged. Explicit
variable files outside the scanned root are not newly watched by this patch.
Install or Upgrade
go install github.com/albatroxxx/terradune@v1.0.6
terradune -versionGo remains the only supported installation method. No infrastructure is applied.
Existing stable tags, including v1.0.5, are unchanged.
Validation
Regression tests cover blocked success/error responses, state updates during
those responses, JSON variable filesystem events, supported file extensions,
shared/owned edit order, duplicate paths, nested workspace ownership, and empty
batches. Publication requires race tests and Go installation on three operating
systems, Terraform/OpenTofu integration, all three app browsers, website
accessibility/layout checks, and security scans.
Terradune v1.0.5
Terradune v1.0.5
Clearer Plan Review
- Resource types and their counts follow action, search, workspace and changes-only filters. Types without matching resources disappear; unavailable selections reset to All resource types.
- What changes leads resource details with explicit Before and After columns for changed attributes. Creation, update, replacement and deletion are supported, including changes to attached routes and associations.
- Unknown values remain labelled Known after apply. Sensitive values remain redacted. When redaction or a replacement leaves no visible difference, the action is still reported without inventing values.
More Room for Resources
- Compact VPC resource cards replace full-width inventory rows.
- Subnets preview three resources, with View all opening the full inventory.
- Single-click pins relationships while keeping other resources visible. Double-click or Focus path narrows the map with VPC, subnet and resource sections intact.
- Connection lines stop at intervening card edges and resume beyond them, retaining direct and indirect circle markers.
- Smaller navigation and collapsible filters provide more working space. Keyboard focus and reduced-motion preferences are retained.
Install or Upgrade
go install github.com/albatroxxx/terradune@v1.0.5
terradune -versionGo remains the only supported installation method. Terradune reviews plans locally and does not apply infrastructure changes.
Validation
Regression coverage includes filtered type counts, empty filters, lifecycle comparisons, nested values, masking, dependency focus and keyboard navigation. Release publication is gated by cross-platform race tests, Terraform/OpenTofu integration, Chromium/Firefox/WebKit accessibility checks, static-site checks and security scans.
Terradune v1.0.4
Terradune v1.0.4
Visible route changes and a compact Resource Map for dense, mixed-service VPCs.
Fixed
- Changes to routes on existing route tables remain visible with Changes only
enabled. Unchanged parents retain their real action and show attached-change
counts instead of appearing to have changed themselves. - Connection changes exposes route, association, rule, and attachment
changes, including additions, updates, replacements, deletions, and unresolved
endpoints. Details retain sanitized previous values for inspection. - IPv6 and prefix-list destinations, default route tables, modern security-group
rules, and unknown values inside repeated blocks receive regression coverage.
Resource Map
- Subnets preview up to five compact rows with a service icon, name,
size/runtime, change status, and details. View all opens a subnet-filtered
inventory instead of growing a stack of server cards. - Resources in this VPC groups compute and containers, databases and caches,
storage, networking, security, and other resources. EC2, ECS/Fargate,
VPC-connected Lambda, RDS, and caches share the inventory when the plan
establishes their placement. - Resources appear once per VPC inventory with their known subnet associations.
Unrelated dependencies are not assumed to belong to a VPC. - Natural sorting, keyboard-accessible details, responsive table scrolling, and
selection/focus preservation make dense plans easier to inspect.
Install Or Update
Requires Go 1.27.1+ and Terraform or OpenTofu on PATH. Go remains the sole
supported installation method.
go install github.com/albatroxxx/terradune@v1.0.4
terradune -versionUse @latest to follow stable releases. See the
installation guide for Go and
PATH setup. Existing stable tags remain unchanged.
Validation And Boundaries
The source PRs passed Linux/macOS/Windows build, installation, vet, and race
tests; Terraform/OpenTofu CLI integration; Chromium/Firefox/WebKit browser and
accessibility tests; static-site validation; and security scans. Synthetic
fixtures cover route changes, 30 servers in one subnet, and mixed-service VPCs.
Release publication repeats CI and verifies the published Go module.
This release does not claim complete AWS/Terraform lifecycle parity. Data-source
inventory, imports, moves, forgotten resources, output changes, deferred plans,
and complete provider-alias account/region modeling remain planned work.
Terradune never runs apply; planning can still contact providers, backends, and
external programs. Keep the server on localhost.
Terradune v1.0.3
Terradune v1.0.3
Dedicated Plan resource types, clearer Resource Map connections, and one
supported installation path: Go.
Changes
- Plan filters now use each exact resource type. EC2 instances, VPCs, subnets,
and security groups are separate, including unfamiliar AWS and other
provider types. The resource register still lists each instance once. - Resource Map lines use teal with filled circles for direct dependencies,
and dashed blue with hollow circles for associations through collapsed
routes or attachments. The legend matches the new styles. - Go is the sole supported installation method. The README and website
include Go setup, PATH configuration, workspace initialization, and update
instructions for macOS, Linux, and Windows. - Release CI checks Go installation on all three operating systems, then
verifies the exact source commit before publication and the tagged module
afterward.
Install Or Update
Requires Go 1.27.1+ and Terraform or OpenTofu on PATH.
go install github.com/albatroxxx/terradune@v1.0.3
terradune -versionUse @latest to follow stable releases. See the
installation guide for Go and
PATH setup. Previously published versions remain historical releases.
Known Boundaries
Data-source inventory, imports, moves, forgotten resources, output changes,
deferred plans, and complete provider-alias account/region modeling remain
planned work. Terradune never runs apply; planning can still contact providers,
backends, and external programs. Keep the server on localhost.
v1.0.2
Terradune v1.0.2
A patch release fixing Resource Map classification reported by a user in
#23.
Fixed
for_eachassociations reach their subnets before apply. A route table
association iterating a subnet resource withfor_eachhad no edge to its
subnet on a plan of new infrastructure, so public subnets were shown as
private. The resolver now reads thefor_eachexpression and pairs
instances by key — stated by Terraform's semantics, not guessed. A re-keyed
collection draws nothing rather than something wrong.- Unknown is no longer labelled private. A subnet with no known route
table association now shows no public/private qualifier at all, instead of
asserting an answer the plan never gave.
Install
go install github.com/albatroxxx/terradune@latest
terradune -versionFor Docker, ghcr.io/albatroxxx/terradune:latest follows the newest release;
pin 1.0.2 or the digest below for reproducibility. Binary archives with
checksums.txt and its Sigstore bundle are attached; verification
instructions are in the
README.
Known Boundaries
Unchanged from
v1.0.1.
Verified Image
ghcr.io/albatroxxx/terradune@sha256:0b929018479065bd75278c295e81f5e04e35af4ee43d45d2c07836cede24b2b0
Includes Linux AMD64 and ARM64 images, SBOM, and provenance attestations.
v1.0.1
Terradune v1.0.1
The first Terradune release with native binary archives. Docker and Go
installation continue unchanged, and the documented installation commands now
resolve the latest release rather than naming one.
Highlights
- Native binaries: signed archives for Linux, macOS, and Windows on AMD64
and ARM64, withchecksums.txtand a keyless cosign Sigstore bundle.
Verification instructions are in the
README,
pinned to this repository's release workflow identity. - OpenTofu: Terradune drives
terraformwhen installed and falls back to
tofu. The workspace header names whichever produced the plan. Real
Terraform 1.16.2 and OpenTofu 1.12.6 integration tests run on three
operating systems. - Accessibility: live plan updates preserve keyboard focus, dialogs return
focus to their rebuilt opener, and dimmed map cards keep WCAG AA contrast.
A Chromium/Firefox/WebKit suite with automated WCAG A/AA checks gates every
change. - Reporting: a structured bug report form, and update/removal instructions
for every installation method.
Install
go install github.com/albatroxxx/terradune@latest
terradune -versionNative installation requires Go 1.27.1+ and a Terraform or OpenTofu CLI on
PATH. For Docker, ghcr.io/albatroxxx/terradune:latest follows the newest
release; pin 1.0.1 or the digest below for reproducibility. Follow the
installation guide for
initialization, credentials, and loopback port publishing.
Validation Gates
Everything v1.0.0 required, plus: all six native archives built and verified on
every pull request with the host-native binary executed on Linux, macOS, and
Windows; a keyless signing round trip on trusted main; real Terraform and
OpenTofu init/plan/show/graph integration tests on three operating systems; and
browser/accessibility suites across Chromium, Firefox, and WebKit.
Known Boundaries
The boundaries of v1.0.0 stand: data-source inventory, import/move/forget
lifecycle states, output changes, deferred plans, and provider-alias
account/region modeling remain planned work. Terradune never runs apply, but
planning can access providers, backends, and external programs. Keep it on
localhost. See the
security policy.
Verified Image
ghcr.io/albatroxxx/terradune@sha256:05a5b92c67fbb1f365d8b451ddf6c71d3c65e6fece92865519f9bddb9b5ad62e
Includes Linux AMD64 and ARM64 images, SBOM, and provenance attestations.
Terradune v1.0.0
Terradune v1.0.0
The first stable release of Terradune's local Terraform plan-review workflow, available through Docker or Go.
Highlights
- Resource Map: AWS network context, pinned paths, clearer route and association lines, grouped legend, and expanded canvas.
- Plan: one entry per managed resource and workspace, including unfamiliar resource types; destructive changes first; search and service/action filters.
- Graph: routed dependency arrows, focused neighborhoods, zoom/fit, and keyboard-accessible resource inspection.
- Runtime: sensitivity-aware metadata and details, serialized/coalesced workspace plans, latest-snapshot SSE delivery, and graceful cancellation.
- Distribution: non-root Linux AMD64/ARM64 Docker images with Terraform, Compose, health checks, and source installation with Go.
Install
go install github.com/albatroxxx/terradune@v1.0.0
terradune -versionNative installation requires Go 1.27.1+ and Terraform on PATH. For Docker, use ghcr.io/albatroxxx/terradune:1.0.0 and follow the installation guide for initialization, credentials, and loopback port publishing. Linux providers are initialized in .terradune/, separately from native .terraform/.
Validation Gates
Publication requires Go build, formatting, vet and race tests on Linux/macOS/Windows; frontend behavior tests; gosec, staticcheck, govulncheck, and Semgrep; static-site checks; Docker init/plan/API/shutdown smoke tests on AMD64 and ARM64; and a fixable HIGH/CRITICAL image vulnerability gate. An anonymous registry pull must succeed before this release is created.
The image rebuilds unmodified Terraform 1.16.2 source with Go 1.27.1 to address vulnerabilities in the upstream binary's older standard library. See packaging provenance and licenses.
Known Boundaries
This is not a claim of complete Terraform/AWS feature parity. Data-source inventory, import/move/forget lifecycle states, output changes, deferred plans, and complete provider-alias account/region modeling remain planned work. Very large estates still need measured layout/performance budgets. Browser verification is not a complete screen-reader or cross-browser audit.
Terradune never runs apply, but planning can access providers, backends, and external programs. There is no authentication or TLS: keep it on localhost. Sensitivity masks do not detect unmarked secrets or sanitize every provider diagnostic. Review the security policy.
Verified Image
ghcr.io/albatroxxx/terradune@sha256:d66184d4de139873d3a78fe72cb2829c9797f13181f4594d5d6ad2283fd6ce5e
Includes Linux AMD64 and ARM64 images, SBOM, and provenance attestations.