Terraform Releases

HashiCorp Terraform core releases and blog. New features, breaking changes, security advisories and deprecations - each summarised in plain English and updated continuously.

Tracking 60 Terraform releases · Updated

  • HashiCorp Blog blogaisecurityengineer ·

    AI accelerates development, increasing secret sprawl risk

    AI-driven development is accelerating software creation, but it's also leading to a rapid increase in secret sprawl, which poses growing security, compliance, and operational risks. This trend necessitates a closer look at how organizations manage sensitive credentials in an AI-enhanced workflow. Engineers and architects working with AI tools need to ensure their secret management practices keep pace with the speed of development.

    announcement
  • HashiCorp Blog blogsecuritypreviewengineer ·

    Vault Kubernetes key management enters public beta

    Vault Enterprise can now be used as a KMS provider for etcd encryption within Kubernetes environments. This feature allows Kubernetes clusters to leverage Vault's advanced security capabilities for protecting sensitive data stored in etcd. The public beta is now available, indicating an early access stage for this new integration.

    feature announcement
  • HashiCorp Blog blogsecurityobservabilityengineer ·

    Boundary session recording enhances audit trail resiliency

    Boundary session recording now offers resilient and tamper-evident audit trails, ensuring durable and verifiable capture of privileged activity even during failures. This enhancement aims to bolster the integrity and reliability of security logging for privileged sessions. The feature is available for users who leverage Boundary for session management and auditing.

    feature
  • HashiCorp Blog blogsecurityengineer ·

    Preparing for the post-quantum era in cryptography

    Organizations should prepare for the post-quantum era by understanding quantum-safe cryptography migration efforts. This topic is essential for future-proofing systems against potential threats. The implications span across various industries requiring strategic planning and awareness.

    announcement
  • HashiCorp Blog blogsecuritypreviewengineer ·

    Boundary 1.0: RDP session recording, AI agent access preview

    Boundary 1.0 has launched, introducing RDP session recording capabilities to enhance audit and compliance for remote access. It also previews upcoming features for securing AI agent access, signaling a focus on emerging AI use cases. This release is significant for organizations managing remote infrastructure and preparing for AI-driven operations. RDP session recording is now generally available, while AI agent access security is in preview.

    feature announcement
  • HashiCorp Blog blogsecuritypreviewengineer ·

    Vault Enterprise Enhances AI Agent Security in Preview

    HashiCorp Vault Enterprise has introduced new security enhancements specifically for AI agents, now accessible in public preview. These updates aim to bolster the security posture for AI workloads. This preview is available to users interested in testing advanced security features for their AI agents.

    feature announcement
  • HashiCorp Blog blogsecuritypreviewengineer ·

    HCP Vault Dedicated Cluster Disaster Recovery enters public preview

    HashiCorp Cloud Platform (HCP) Vault Dedicated is introducing cluster-level disaster recovery (DR) drills. This feature allows teams to simulate cluster failures, proving their failover readiness. It is currently available in public preview, with no prerequisites mentioned.

    feature announcement
  • HashiCorp Blog blogsecurityinfraengineer ·

    Vault and SPIFFE for Workload Identity

    HashiCorp Vault can now act as a SPIFFE identity issuer and broker, simplifying workload identity and authorization. This integration defines the role of SPIRE within the workflow. This feature is targeted at engineers and architects managing secure application deployments.

    feature
  • HashiCorp Blog blogaisecurityengineer ·

    IBM Vault Radar and Vault for AI security

    This article explains how to use IBM Vault Radar for preemptive hygiene and IBM Vault for dynamic runtime security to mitigate autonomous AI exploits. It focuses on the challenges posed by AI vulnerabilities, such as Claude Mythos, and provides solutions for security teams. The information is relevant for security professionals managing AI systems.

    announcement
  • HashiCorp Blog blogaisecurityinfraengineer ·

    HashiCorp Boundary Enhances Secure Agentic AI Access

    HashiCorp Boundary now supports secure agentic AI deployments at scale. This new capability provides unique identities, just-in-time credentials, explicit delegation, and point-of-use enforcement for auditable control. It is designed for organizations looking to integrate AI agents securely into their infrastructure.

    feature
  • HashiCorp Blog blogsecuritypreviewengineer ·

    HashiCorp Vault adds SCIM beta for identity provisioning

    HashiCorp Vault 2.0 introduces a beta version of SCIM (System for Cross-domain Identity Management) support. This feature allows organizations to standardize user and group provisioning from external identity platforms directly into Vault. The beta availability means it is ready for testing and early adoption.

    feature announcement
  • HashiCorp Blog blogsecurityinfraengineermedia ·

    Vault Transit for Secure Large Artifact and Streaming Workload Encryption

    Vault Transit now supports envelope encryption for large artifacts and streaming workloads, allowing secure data protection without sending payloads directly to Vault. This enhancement improves security for data-intensive applications by offloading the encryption process from the sensitive Vault server. The feature is designed for engineers and architects managing secure data pipelines and large-scale processing.

    feature
  • HashiCorp Blog blogaisecuritygovernanceengineer ·

    HashiCorp Vault adds native AI agent IAM support

    HashiCorp Vault now supports managing agentic IAM, including trusted identities, delegated authorization, and fine-grained controls. This feature allows enterprises to enhance security and management for AI agents interacting with sensitive data. The update is available for use in HashiCorp Vault.

    feature
  • HashiCorp Blog blogsecurity ·

    IBM Vault 2.0 Enhances UI and Reporting

    IBM Vault 2.0 has been released with significant UI improvements and enhanced reporting capabilities. These updates aim to help users realize value more quickly through in-product guidance and provide greater transparency with improved reporting. The release focuses on enhancing the user experience and data visibility for Vault users.

    feature patch
  • HashiCorp Blog blogsecurityengineer ·

    IBM Vault Enterprise 2.0 adds LDAP secrets management

    IBM Vault Enterprise 2.0 now supports LDAP secrets management, enabling migration of static roles to a centralized rotation system. This feature offers self-managed flows and automated lifecycle management for secrets. The update is available for all IBM Vault Enterprise 2.0 users.

    feature
  • HashiCorp Blog blogsecurityinfraengineer ·

    Boundary and Vault integrate with Windows AD DS for credential security

    This article explains the importance of dynamic credentials for infrastructure access and details the integration of HashiCorp Boundary and Vault with Windows Active Directory Domain Services. This integration aims to enhance security by managing RDP connections more effectively. It is relevant for engineers and architects managing Windows environments and security infrastructure.

    announcement
  • HashiCorp Blog blogsecurityinfraengineer ·

    Vault Secrets Operator automates Kubernetes secret management

    HashiCorp Vault Secrets Operator (VSO) enhances secret delivery for Kubernetes and Red Hat OpenShift, enabling automated, secure lifecycle management at scale for enterprises. This capability is designed to streamline the integration of secrets into containerized applications. The operator focuses on large-scale, automated management of sensitive information.

    announcement
  • HashiCorp Blog blogaisecurity ·

    Vault Enterprise adds SPIFFE auth for non-human identities

    Vault Enterprise now supports SPIFFE authentication for non-human identities (NHI), simplifying the security of AI agents and other automated workloads. This enhancement extends Vault's capabilities to secure emerging AI-driven systems and their operational components. The feature is available in Vault Enterprise, providing a more robust identity framework for complex agentic architectures.

    feature
  • HashiCorp Blog blogsecurityinfraengineer ·

    IBM Vault Enterprise 2.0 automates local account password rotation

    IBM Vault Enterprise 2.0 now automates local account password rotation using SSH, replacing shared credentials with unique, audited ones. This enhances security by reducing risk associated with shared passwords. The feature is available now and targets security and infrastructure professionals managing privileged access.

    feature
  • HashiCorp Blog blogsecurityinfra ·

    Secure SSH access at scale with Vault and Boundary

    HashiCorp has updated its approach to scalable, role-based SSH access using SSH certificates, Vault, and Boundary. This enhancement is designed for modern hybrid and multi-cloud environments. The solution aims to improve security and manageability for SSH access across diverse infrastructures.

    feature announcement

About Terraform release tracking on ReleaseBytes

Terraform core releases, alongside the AWS, Google, AzureRM and Databricks provider changelogs tracked on their platform pages, decide when your infrastructure code needs attention. ReleaseBytes summarises each Terraform release with its notable changes and flags the breaking ones, so upgrades stop being archaeology through GitHub release notes.

Frequently asked questions

How often are Terraform release notes updated on ReleaseBytes?

Continuously. ReleaseBytes monitors the official Terraform release channels around the clock and publishes a plain-English summary of each announcement shortly after it lands.

What kinds of Terraform changes does ReleaseBytes track?

New features, enhancements, bug fixes, security advisories, breaking changes, deprecations and end-of-life announcements. Every item is tagged by type so you can filter to just the changes that need action.

How can I get alerts for new Terraform releases?

Set up a free email or Slack alert filtered to Terraform, subscribe to the weekly digest, or follow the RSS feed. Teams can also install the ReleaseBytes GitHub App or connect via MCP.

Where does the Terraform release data come from?

From the official sources: HashiCorp Terraform core releases and blog. Every item links back to the original vendor announcement.