Back to Explore

hashicorp/terraform-provider-aws

GitHub
16 updates · last 90 days1 watchersOpen source

Last release:

The HashiCorp Terraform AWS Provider enables Terraform to manage AWS resources. It includes documentation, contribution guidance, an FAQ, tutorials, and a development roadmap, with discussion available via HashiCorp’s forums and the provider’s homepage on the Terraform Registry.

Project status

  • Active maintenance is strongly indicated, with new upstream updates in 2026 (latest push on 2026-08-27, and multiple recent provider updates tagged v6.58.0 to v6.61.0 in August).
  • Apparent update cadence is roughly weekly to biweekly during August 2026 (e.g., v6.61.0 on 2026-08-19, v6.60.0 on 2026-08-13, v6.58.0 on 2026-08-05), suggesting an ongoing, steady development stream.

AI summary generated

AI-generated from public sources. May be inaccurate. Report

Recent updates

  • v6.62.0

    Release v6.62.0 documents a set of Terraform AWS provider changes focused on new list resources, adding resource identity support to several resources, and enhancing RDS/RDS-like master user password secret rotation controls. It also includes multiple documentation and validation improvements and a few targeted bug fixes (notably around savings plans behavior and some plan-time validation).

    BreakingFeatures
  • v6.61.0

    v6.61.0 introduces multiple new AWS resources and list resources, along with enhancements that add new arguments and attributes to existing data sources and resources. The release notes also include targeted bug fixes focused on create/update stability, and delete and list-time state handling. Overall, the documented changes appear to cover the provider-facing additions and fixes present in the diff excerpt.

    Features
  • v6.60.0

    Release v6.60.0 adds new Terraform resources related to AWS resiliency hub input sources and a new list resource for aws_db_parameter_group, including Resource Identity support for the db parameter group. It also includes two bug fixes focused on state consistency issues for aws_bedrockagentcore_gateway_target and a regression fix for aws_network_acl_rule’s “Missing Resource Identity After Read” errors.

    Features
  • v6.59.0

    Release v6.59.0 adds multiple new AWS resources, list resources, and data sources, plus several schema enhancements to existing EKS, WAFv2, and Backup-related resources. It also includes targeted bug fixes for various AWS API edge cases (for example, Lake Formation cross-account principal reads and RDS engine_version update behavior). The provided code diff excerpt primarily shows internal repository tooling changes for AI-based review skills and changelog note fragments, not the provider runtime code for the new resources described in the release notes.

    Features
  • v6.58.0

    v6.58.0 introduces multiple new AWS list and standard resources (notably several Prometheus-related resources, resiliencehubv2_policy, and mailmanager_rule_set) plus targeted enhancements to existing resources. It also includes a batch of bug fixes focused on update/create/delete stability, validation/regressions, and state/perpetual-diff corrections.

    Features
  • v6.57.1

    Release v6.57.1 is a small patch release that documents a bug fix for an AWS API error, UnknownError, which was introduced in v6.57.0. The provided diff, however, shows no direct Terraform provider .go implementation changes, and instead includes dependency adjustments plus documentation and acceptance test updates related to CloudFront logging fields.

  • v6.57.0

    v6.57.0 adds multiple new AWS data sources and resources (notably for EKS access, OSIS pipeline/policies, Bedrock evaluation jobs, and various new list resources). The release notes also document a deprecation for `aws_bedrockagentcore_memory_strategy` attributes, plus a small bug fix for `aws_dynamodb_table` behavior when decreasing `warm_throughput`. Provider-side enhancements include additional arguments/attributes across several existing resources and improved memory usage in AWS API logging.

    Features
  • v6.56.0

    v6.56.0 adds several new AWS resources/data sources and extends existing schemas with additional configuration blocks and attributes (notably EKS node group warm pool config, OpenSearch Serverless IAM option blocks, and IPv6 broker URL attributes). It also includes targeted bug fixes across multiple resources, including improved web identity token handling and several delete/create stability fixes.

    Features
  • v6.55.0

    v6.55.0 mainly adds new AWS provider surface area (one new data source and multiple new list resources) plus a set of Bedrock-related schema enhancements and two bug fixes. The release notes do not mention any Go toolchain, CI tooling, or dependency changes.

    Features
  • v6.54.0

    Terraform AWS provider v6.54.0 adds several new resources and list resources (including aws_workspaces_pool, aws_scheduler_schedule, aws_lambda_function_scaling_config, aws_bedrockagentcore_browser_profile) plus the new data source aws_route53profiles_profile. The release also expands Resource Identity support across multiple event-related resources and introduces configurable propagation timeouts for several Lambda-related resources, alongside targeted bug fixes for Bedrock Guardrails, CloudFront multitenant distribution, and Directory Service directory reads.

    Features
  • v6.53.0

    v6.53.0 introduces several new AWS data sources and resources, including Bedrock model agreement related entities and a new Pinpoint SMS Voice V2 pool. It also contains one documented breaking change around provider-side defaults for `aws_pinpointsmsvoicev2_phone_number` attributes to reduce drift. Additional enhancements include new/expanded arguments and improved validation or resource identity support for multiple services.

    BreakingFeatures
  • v6.52.0

    Release v6.52.0 adds several new AWS resources and a new data source, plus multiple enhancements around deterministic ordering, Resource Identity support, and EKS control plane egress mode. It also includes a notable state-behavior change for `aws_serverlessapplicationrepository_cloudformation_stack` where `NoEcho` values are persisted in plaintext, alongside a required one-time state reconciliation for already-existing stacks. Release notes also mention provider-wide changes to generated names and idempotency token generation using cryptographically strong randomness.

    BreakingSecurityFeatures
  • v6.51.0

    Terraform AWS Provider v6.51.0 adds several new resources/list resources and introduces new schema options for existing services such as CloudFront mTLS origin configuration and EKS outpost configuration placement fields. It also includes targeted bug fixes (for example, timeout handling and provider panics/crashes in specific resources) and deprecates kms_key_arn on aws_dms_s3_endpoint in favor of server_side_encryption_kms_key_id.

    Features
  • v6.50.0

    v6.50.0 adds several new Terraform resources and list resources (notably around Bedrock Agent Core, CloudWatch Logs S3 table integrations, ECS daemon/task definitions, and Observability Admin S3 integrations). It also introduces provider support for Linux s390x and adds new configuration arguments/blocks such as Bedrock gateway target private connectivity, gateway policy engine configuration, and additional Bedrock memory arguments. The release notes also include multiple bug fixes focused on eventual consistency, drift fixes, and engine upgrade state handling.

    Features
  • v6.49.0

    v6.49.0 adds new optional schema fields for several AWS resources and data sources, plus a bug fix for a panic during state refresh. The visible diff also includes a number of internal build and tooling changes (linting, CI workflow pins, dependency bumps, and generator directives) that are not mentioned in the release notes.

    Features
  • v6.48.0

    Terraform provider AWS v6.48.0 primarily adds multiple new resources and data sources, plus a set of attribute and argument enhancements across existing resources and data sources. It also includes a handful of targeted bug fixes, mainly around drift, validation errors on delete, and API/OpenAPI update behavior. The code diff provided for this analysis appears dominated by CI, tooling, and documentation changes, with provider runtime code changes not visible in the excerpted diff.

    Features
  • v6.47.0

    v6.47.0 adds multiple new AWS provider resources and list resources, including several Bedrock Agent Core resources and S3 Control multi-region access point resources. The release also deprecates various `id`-style attributes in favor of more specific identifiers (for example `arn`, `region`, `partition`), and adds plan-time validation and new arguments/attributes across several existing resources and data sources.

    Features
  • v6.46.0

    Release v6.46.0 adds multiple new AWS resources and data source attributes, including several new list resources (e.g., Bedrock Agent Core harness, IAM access key, Route53 associations, SecurityHub automation rule v2, X-Ray indexing-related resources). It also includes enhancements across existing resources (CloudFront cache tag config, Bedrock agent runtime storage mounting, OpenSearch domain jwt_options, and X-Ray resource identity support), plus targeted bug fixes.

    BreakingFeatures
  • v6.45.0

    v6.45.0 is a feature-focused AWS provider release that adds new Observability Admin and Security Hub v2 resources/list resources, expands Lambda and Timestream InfluxDB support, and includes several ElastiCache and Grafana fixes. The visible diff also contains a significant amount of project-maintenance churn such as lint/semgrep updates, contributor docs, changelog entries, and providerlint dependency bumps.

    BreakingFeatures
  • v6.44.0

    v6.44.0 is a broad AWS provider release focused on adding new resources/data sources and expanding list-resource coverage, especially around Glue, DynamoDB, Outposts, Redshift, Security Hub, and VPC endpoint associations. It also ships a handful of targeted fixes for ODB, S3 file synchronization, Security Hub association timeouts, and Timestream InfluxDB validation, while graduating `aws_dynamodb_global_secondary_index` from experimental status.

    Features