{"id":36530892,"url":"https://github.com/entitleio/terraform-provider-entitle","last_synced_at":"2026-02-11T17:15:12.491Z","repository":{"id":212490024,"uuid":"731608594","full_name":"entitleio/terraform-provider-entitle","owner":"entitleio","description":"Entitle Terraform Provider ","archived":false,"fork":false,"pushed_at":"2025-12-03T15:10:51.000Z","size":847,"stargazers_count":3,"open_issues_count":13,"forks_count":4,"subscribers_count":0,"default_branch":"master","last_synced_at":"2026-01-12T05:35:29.145Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":null,"language":"Go","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mpl-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/entitleio.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":"CODE_OF_CONDUCT.md","threat_model":null,"audit":null,"citation":null,"codeowners":".github/CODEOWNERS","security":"SECURITY.md","support":"SUPPORT.md","governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":null,"copyright":null,"agents":null,"dco":null,"cla":null}},"created_at":"2023-12-14T13:14:20.000Z","updated_at":"2025-11-20T16:03:48.000Z","dependencies_parsed_at":"2024-09-17T12:12:34.527Z","dependency_job_id":"84b7e165-c9a6-4b4e-a17a-7147dc7998d4","html_url":"https://github.com/entitleio/terraform-provider-entitle","commit_stats":null,"previous_names":["entitleio/terraform-provider-entitle"],"tags_count":11,"template":false,"template_full_name":null,"purl":"pkg:github/entitleio/terraform-provider-entitle","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/entitleio%2Fterraform-provider-entitle","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/entitleio%2Fterraform-provider-entitle/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/entitleio%2Fterraform-provider-entitle/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/entitleio%2Fterraform-provider-entitle/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/entitleio","download_url":"https://codeload.github.com/entitleio/terraform-provider-entitle/tar.gz/refs/heads/master","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/entitleio%2Fterraform-provider-entitle/sbom","scorecard":{"id":926118,"data":{"date":"2025-08-26T09:46:37Z","repo":{"name":"github.com/entitleio/terraform-provider-entitle","commit":"d23d4de696eb4ec46d10c717f741afbcb457111e"},"scorecard":{"version":"v5.1.1","commit":"cd152cb6742c5b8f2f3d2b5193b41d9c50905198"},"score":6,"checks":[{"name":"Code-Review","score":5,"reason":"Found 10/17 approved changesets -- score normalized to 5","details":null,"documentation":{"short":"Determines if the project requires human code review before pull requests (aka merge requests) are merged.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#code-review"}},{"name":"Maintained","score":10,"reason":"30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10","details":null,"documentation":{"short":"Determines if the project is \"actively maintained\".","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#maintained"}},{"name":"Dependency-Update-Tool","score":10,"reason":"update tool detected","details":["Info: detected update tool: Dependabot: .github/dependabot.yml:1"],"documentation":{"short":"Determines if the project uses a dependency update tool.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#dependency-update-tool"}},{"name":"Token-Permissions","score":0,"reason":"detected GitHub workflow tokens with excessive permissions","details":["Warn: topLevel 'contents' permission set to 'write': .github/workflows/release.yml:14","Info: topLevel permissions set to 'read-all': .github/workflows/scorecard.yml:18","Info: topLevel 'contents' permission set to 'read': .github/workflows/test.yml:36","Info: no jobLevel write permissions found"],"documentation":{"short":"Determines if the project's workflows follow the principle of least privilege.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#token-permissions"}},{"name":"Dangerous-Workflow","score":10,"reason":"no dangerous workflow patterns detected","details":null,"documentation":{"short":"Determines if the project's GitHub Action workflows avoid dangerous patterns.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#dangerous-workflow"}},{"name":"Binary-Artifacts","score":10,"reason":"no binaries found in the repo","details":null,"documentation":{"short":"Determines if the project has generated executable (binary) artifacts in the source repository.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#binary-artifacts"}},{"name":"Pinned-Dependencies","score":4,"reason":"dependency not pinned by hash detected -- score normalized to 4","details":["Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/scorecard.yml:76: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/scorecard.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test.yml:45: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test.yml:46: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/test.yml:53: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test.yml:66: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test.yml:67: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/test.yml:71: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test.yml:97: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test.yml:98: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/test.yml:102: update your workflow using https://app.stepsecurity.io/secureworkflow/entitleio/terraform-provider-entitle/test.yml/master?enable=pin","Info:   4 out of  11 GitHub-owned GitHubAction dependencies pinned","Info:   3 out of   6 third-party GitHubAction dependencies pinned"],"documentation":{"short":"Determines if the project has declared and pinned the dependencies of its build process.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#pinned-dependencies"}},{"name":"CII-Best-Practices","score":0,"reason":"no effort to earn an OpenSSF best practices badge detected","details":null,"documentation":{"short":"Determines if the project has an OpenSSF (formerly CII) Best Practices Badge.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#cii-best-practices"}},{"name":"Vulnerabilities","score":10,"reason":"0 existing vulnerabilities detected","details":null,"documentation":{"short":"Determines if the project has open, known unfixed vulnerabilities.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#vulnerabilities"}},{"name":"SAST","score":3,"reason":"SAST tool is not run on all commits -- score normalized to 3","details":["Warn: 10 commits out of 27 are checked with a SAST tool"],"documentation":{"short":"Determines if the project uses static code analysis.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#sast"}},{"name":"Fuzzing","score":0,"reason":"project is not fuzzed","details":["Warn: no fuzzer integrations found"],"documentation":{"short":"Determines if the project uses fuzzing.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#fuzzing"}},{"name":"Security-Policy","score":0,"reason":"security policy file not detected","details":["Warn: no security policy file detected","Warn: no security file to analyze","Warn: no security file to analyze","Warn: no security file to analyze"],"documentation":{"short":"Determines if the project has published a security policy.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#security-policy"}},{"name":"Packaging","score":10,"reason":"packaging workflow detected","details":["Info: Project packages its releases by way of GitHub Actions.: .github/workflows/release.yml:28"],"documentation":{"short":"Determines if the project is published as a package that others can easily download, install, easily update, and uninstall.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#packaging"}},{"name":"License","score":10,"reason":"license file detected","details":["Info: project has a license file: LICENSE:0","Info: FSF or OSI recognized license: Mozilla Public License 2.0: LICENSE:0"],"documentation":{"short":"Determines if the project has defined a license.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#license"}},{"name":"Branch-Protection","score":0,"reason":"branch protection not enabled on development/release branches","details":["Warn: branch protection not enabled for branch 'master'"],"documentation":{"short":"Determines if the default and release branches are protected with GitHub's branch protection settings.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#branch-protection"}},{"name":"Signed-Releases","score":8,"reason":"5 out of the last 5 releases have a total of 5 signed artifacts.","details":["Info: signed release artifact: terraform-provider-entitle_1.1.3_SHA256SUMS.sig: https://github.com/entitleio/terraform-provider-entitle/releases/tag/v1.1.3","Info: signed release artifact: terraform-provider-entitle_1.1.2_SHA256SUMS.sig: https://github.com/entitleio/terraform-provider-entitle/releases/tag/v1.1.2","Info: signed release artifact: terraform-provider-entitle_1.1.1_SHA256SUMS.sig: https://github.com/entitleio/terraform-provider-entitle/releases/tag/v1.1.1","Info: signed release artifact: terraform-provider-entitle_1.1.0_SHA256SUMS.sig: https://github.com/entitleio/terraform-provider-entitle/releases/tag/v1.1.0","Info: signed release artifact: terraform-provider-entitle_1.0.2_SHA256SUMS.sig: https://github.com/entitleio/terraform-provider-entitle/releases/tag/v1.0.2","Warn: release artifact v1.1.3 does not have provenance: https://api.github.com/repos/entitleio/terraform-provider-entitle/releases/240834146","Warn: release artifact v1.1.2 does not have provenance: https://api.github.com/repos/entitleio/terraform-provider-entitle/releases/234157840","Warn: release artifact v1.1.1 does not have provenance: https://api.github.com/repos/entitleio/terraform-provider-entitle/releases/233183909","Warn: release artifact v1.1.0 does not have provenance: https://api.github.com/repos/entitleio/terraform-provider-entitle/releases/228366305","Warn: release artifact v1.0.2 does not have provenance: https://api.github.com/repos/entitleio/terraform-provider-entitle/releases/183066094"],"documentation":{"short":"Determines if the project cryptographically signs release artifacts.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#signed-releases"}},{"name":"Contributors","score":0,"reason":"project has 0 contributing companies or organizations -- score normalized to 0","details":null,"documentation":{"short":"Determines if the project has a set of contributors from multiple organizations (e.g., companies).","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#contributors"}},{"name":"CI-Tests","score":10,"reason":"14 out of 14 merged PRs checked by a CI test -- score normalized to 10","details":null,"documentation":{"short":"Determines if the project runs tests before pull requests are merged.","url":"https://github.com/ossf/scorecard/blob/cd152cb6742c5b8f2f3d2b5193b41d9c50905198/docs/checks.md#ci-tests"}}]},"last_synced_at":"2025-08-26T11:49:18.928Z","repository_id":212490024,"created_at":"2025-08-26T11:49:18.929Z","updated_at":"2025-08-26T11:49:18.929Z"},"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":29338981,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-02-11T16:14:43.024Z","status":"ssl_error","status_checked_at":"2026-02-11T16:14:15.258Z","response_time":97,"last_error":"SSL_connect returned=1 errno=0 peeraddr=140.82.121.6:443 state=error: unexpected eof while reading","robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":false,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2026-01-12T03:00:46.244Z","updated_at":"2026-02-11T17:15:12.462Z","avatar_url":"https://github.com/entitleio.png","language":"Go","funding_links":[],"categories":[],"sub_categories":[],"readme":"[![Terraform Registry](https://img.shields.io/badge/Terraform-Registry-5C4EE5?logo=terraform)](https://registry.terraform.io/providers/entitleio/entitle/latest)\n[![OpenTofu Registry](https://img.shields.io/badge/OpenTofu-Registry-FFDA18?logo=opentofu)](https://search.opentofu.org/provider/entitleio/entitle/latest)\n[![Release Version](https://img.shields.io/github/v/release/entitleio/terraform-provider-entitle?logo=github)](https://github.com/entitleio/terraform-provider-entitle/releases)\n[![Go Report Card](https://goreportcard.com/badge/github.com/entitleio/terraform-provider-entitle)](https://goreportcard.com/report/github.com/entitleio/terraform-provider-entitle)\n![Code Scanning](https://img.shields.io/badge/CodeQL-Enabled-brightgreen)\n[![Scorecard](https://api.scorecard.dev/projects/github.com/entitleio/terraform-provider-entitle/badge)](https://scorecard.dev/viewer/?uri=github.com/entitleio/terraform-provider-entitle)\n[![Last Commit](https://img.shields.io/github/last-commit/entitleio/terraform-provider-entitle)](https://github.com/entitleio/terraform-provider-entitle/commits)\n\n\u003cdiv align=\"center\"\u003e\n\u003cimg\n    width=70%\n    height=70%\n    src=\".github/logo-with-terraform.png\"\n    alt=\"header\"\n/\u003e\n\n\u003ch1\u003eEntitle Terraform Provider\u003c/h1\u003e\n\u003ch5\u003eIn Development\u003c/h5\u003e\n\u003c/div\u003e\n\nThe Terraform Provider for Entitle allows you to manage resources and data sources related to Entitle, a platform that provides a seamless way to grant employees granular and just-in-time access within cloud infrastructures and SaaS applications.\n\n### Supported Resources\n* **Workflow** - A workflow in Entitle is a generic description of Just-In-Time permissions approval process, which is triggered after the permissions were requested by a user. Who should approve by approval order, to whom, and for how long. After the workflow is defined, it can be assigned to multiple entities which are part of the Just-In-Time permissions approval process: integrations, resources, roles and bundles.\n* **Integration** -A specific instance or integration with an \"Application\". Integration includes the configuration needed to connect Entitle including credentials, as well as all the users permissions information.\n* **Bundle** - Entitle bundle is a set of entitlements that can be requested, approved, or revoked by users in a single action, and set in a policy by the admin. Each entitlement can provide the user with access to a resource, which can be as fine-grained as a MongoDB table for example, usually by the use of a “Role”. Thus, one can think of a bundle as a cross-application super role.\n* **Policy** -  Entitle policy is a rule which manages users birthright permissions automatically, a group of users is entitled to a set of permissions. When a user joins the group, e.g. upon joining the organization, he will be granted with the permissions defined for the group automatically, and upon leaving the group, e.g. leaving the organization, the permissions will be revoked automatically.\n* **Agent Token** - On-prem agent token.\n* **Resource** - An entity within an \"Integration\" to which a user can gain access via an \"Entitlement\", e.g. DB table, group of users.\n\n## Prerequisites\n\nBefore using the Entitle Terraform Provider, ensure you have the following:\n\n### Provider Configuration\nConfigure the Entitle Terraform Provider with your API key and endpoint:\n\n* `api_key` (Required): The API key for authenticating with the Entitle API.\n* `endpoint` (Optional): The URL endpoint for the Entitle API. default: https://api.entitle.io.\n\nTo use the Entitle Terraform Provider, you must configure it with the necessary authentication details.\n\n```hcl\nprovider \"entitle\" {\n  api_key = \"your_api_key\"\n  endpoint = \"https://api.entitle.io\"\n}\n```\n\n## Developing the Provider\n\nIf you wish to work on the provider, you'll first need [Go](http://www.golang.org) installed on your machine \n(see [Requirements](#requirements) below).\n\n## Requirements\n\n- [Terraform](https://developer.hashicorp.com/terraform/downloads) \u003e= 1.0\n- [Go](https://golang.org/doc/install) \u003e= 1.24.3\n\n## Building The Provider\n\n1. Clone the repository\n1. Enter the repository directory\n1. Build the provider using the Go `install` command:\n\n\nTo compile the provider, run `go install`. This will build the provider and put the provider binary in \nthe `$GOPATH/bin` directory.\n\nbefore starting you need to overide the configuration for the terraform provider to be search first of all localy in\n`$GOPATH/bin`\n\n```hcl\nprovider_installation {\n\n  dev_overrides {\n      \"entitleio/entitle\" = `$GOPATH/bin`\n  }\n\n  # For all other providers, install them directly from their origin provider\n  # registries as normal. If you omit this, Terraform will _only_ use\n  # the dev_overrides block, and so no other providers will be available.\n  direct {}\n}\n```\n\nTo generate or update documentation, run `go generate`.\n\nIn order to run the full suite of Acceptance tests, run `make testacc`.\n\n*Note:* Acceptance tests create real resources, and often cost money to run.\n\n```shell\nmake testacc\n```\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fentitleio%2Fterraform-provider-entitle","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fentitleio%2Fterraform-provider-entitle","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fentitleio%2Fterraform-provider-entitle/lists"}