{"id":22689039,"url":"https://github.com/terraform-ibm-modules/terraform-ibm-appid","last_synced_at":"2026-05-23T03:14:33.802Z","repository":{"id":185818431,"uuid":"674153040","full_name":"terraform-ibm-modules/terraform-ibm-appid","owner":"terraform-ibm-modules","description":"Creates an IBM AppID instance.","archived":false,"fork":false,"pushed_at":"2026-05-16T04:38:37.000Z","size":1335,"stargazers_count":0,"open_issues_count":1,"forks_count":0,"subscribers_count":13,"default_branch":"main","last_synced_at":"2026-05-16T06:42:57.385Z","etag":null,"topics":["appid","core-team","ibm-cloud","stable","supported","terraform","terraform-module"],"latest_commit_sha":null,"homepage":null,"language":"HCL","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"apache-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/terraform-ibm-modules.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":".github/CODEOWNERS","security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":null,"copyright":null,"agents":null,"dco":null,"cla":null}},"created_at":"2023-08-03T09:03:34.000Z","updated_at":"2026-05-16T06:36:59.000Z","dependencies_parsed_at":"2023-10-16T11:11:43.131Z","dependency_job_id":"e09a88a7-53cc-4cb0-9857-af24f5e95aa1","html_url":"https://github.com/terraform-ibm-modules/terraform-ibm-appid","commit_stats":null,"previous_names":["terraform-ibm-modules/terraform-ibm-appid"],"tags_count":66,"template":false,"template_full_name":"terraform-ibm-modules/terraform-ibm-module-template","purl":"pkg:github/terraform-ibm-modules/terraform-ibm-appid","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-appid","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-appid/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-appid/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-appid/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/terraform-ibm-modules","download_url":"https://codeload.github.com/terraform-ibm-modules/terraform-ibm-appid/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-appid/sbom","scorecard":null,"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":33380917,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-05-23T01:21:08.577Z","status":"online","status_checked_at":"2026-05-23T02:00:05.530Z","response_time":53,"last_error":null,"robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":true,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["appid","core-team","ibm-cloud","stable","supported","terraform","terraform-module"],"created_at":"2024-12-10T00:17:20.339Z","updated_at":"2026-05-23T03:14:33.795Z","avatar_url":"https://github.com/terraform-ibm-modules.png","language":"HCL","funding_links":[],"categories":[],"sub_categories":[],"readme":"\u003c!-- Update the title --\u003e\n# IBM AppID\n\n\u003c!--\nUpdate status and \"latest release\" badges:\n  1. For the status options, see https://terraform-ibm-modules.github.io/documentation/#/badge-status\n  2. Update the \"latest release\" badge to point to the correct module's repo. Replace \"terraform-ibm-module-template\" in two places.\n--\u003e\n[![Stable (With quality checks)](https://img.shields.io/badge/Status-Stable%20(With%20quality%20checks)-green)](https://terraform-ibm-modules.github.io/documentation/#/badge-status)\n[![latest release](https://img.shields.io/github/v/release/terraform-ibm-modules/terraform-ibm-appid?logo=GitHub\u0026sort=semver)](https://github.com/terraform-ibm-modules/terraform-ibm-appid/releases/latest)\n[![pre-commit](https://img.shields.io/badge/pre--commit-enabled-brightgreen?logo=pre-commit\u0026logoColor=white)](https://github.com/pre-commit/pre-commit)\n[![Renovate enabled](https://img.shields.io/badge/renovate-enabled-brightgreen.svg)](https://renovatebot.com/)\n[![semantic-release](https://img.shields.io/badge/%20%20%F0%9F%93%A6%F0%9F%9A%80-semantic--release-e10079.svg)](https://github.com/semantic-release/semantic-release)\n[![Terraform Registry](https://img.shields.io/badge/terraform-registry-623CE4?logo=terraform)](https://registry.terraform.io/modules/terraform-ibm-modules/appid/ibm/latest)\n\n\u003c!-- Add a description of module(s) in this repo --\u003e\nThis module creates an IBM AppID instance and a resource key.\n\nMore information about the IBM AppID can be found [here](https://cloud.ibm.com/docs/appid?topic=appid-getting-started)\n\n**Note**: This module creates random password for the new users. Set `self_service_enabled` to `true` to give users permission to change their passwords.\n\n\u003c!-- Below content is automatically populated via pre-commit hook --\u003e\n\u003c!-- BEGIN OVERVIEW HOOK --\u003e\n## Overview\n\u003cul\u003e\n  \u003cli\u003e\u003ca href=\"#terraform-ibm-appid\"\u003eterraform-ibm-appid\u003c/a\u003e\u003c/li\u003e\n  \u003cli\u003e\u003ca href=\"./modules\"\u003eSubmodules\u003c/a\u003e\n    \u003cul\u003e\n      \u003cli\u003e\u003ca href=\"./modules/fscloud\"\u003efscloud\u003c/a\u003e\u003c/li\u003e\n    \u003c/ul\u003e\n  \u003c/li\u003e\n  \u003cli\u003e\u003ca href=\"./examples\"\u003eExamples\u003c/a\u003e\n    \u003cul\u003e\n      \u003cli\u003e\n        \u003ca href=\"./examples/basic\"\u003eBasic example\u003c/a\u003e\n        \u003ca href=\"https://cloud.ibm.com/schematics/workspaces/create?workspace_name=appid-basic-example\u0026repository=https://github.com/terraform-ibm-modules/terraform-ibm-appid/tree/main/examples/basic\"\u003e\u003cimg src=\"https://img.shields.io/badge/Deploy%20with%20IBM%20Cloud%20Schematics-0f62fe?style=flat\u0026logo=ibm\u0026logoColor=white\u0026labelColor=0f62fe\" alt=\"Deploy with IBM Cloud Schematics\" style=\"height: 16px; vertical-align: text-bottom; margin-left: 5px;\"\u003e\u003c/a\u003e\n      \u003c/li\u003e\n      \u003cli\u003e\n        \u003ca href=\"./examples/fscloud\"\u003eFinancial Services compliant example\u003c/a\u003e\n        \u003ca href=\"https://cloud.ibm.com/schematics/workspaces/create?workspace_name=appid-fscloud-example\u0026repository=https://github.com/terraform-ibm-modules/terraform-ibm-appid/tree/main/examples/fscloud\"\u003e\u003cimg src=\"https://img.shields.io/badge/Deploy%20with%20IBM%20Cloud%20Schematics-0f62fe?style=flat\u0026logo=ibm\u0026logoColor=white\u0026labelColor=0f62fe\" alt=\"Deploy with IBM Cloud Schematics\" style=\"height: 16px; vertical-align: text-bottom; margin-left: 5px;\"\u003e\u003c/a\u003e\n      \u003c/li\u003e\n    \u003c/ul\u003e\n    ℹ️ Ctrl/Cmd+Click or right-click on the Schematics deploy button to open in a new tab.\n  \u003c/li\u003e\n  \u003cli\u003e\u003ca href=\"./solutions\"\u003eDeployable Architectures\u003c/a\u003e\n    \u003cul\u003e\n      \u003cli\u003e\u003ca href=\"./solutions/secure\"\u003eFinancial Services compliant AppID Deployable Architecture (DA)\u003c/a\u003e\u003c/li\u003e\n    \u003c/ul\u003e\n  \u003c/li\u003e\n  \u003cli\u003e\u003ca href=\"#contributing\"\u003eContributing\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- END OVERVIEW HOOK --\u003e\n\n\n\u003c!--\nIf this repo contains any reference architectures, uncomment the heading below and links to them.\n(Usually in the `/reference-architectures` directory.)\nSee \"Reference architecture\" in Authoring Guidelines in the public documentation at\nhttps://terraform-ibm-modules.github.io/documentation/#/implementation-guidelines?id=reference-architecture\n--\u003e\n\u003c!-- ## Reference architectures --\u003e\n\n\n\u003c!-- This heading should always match the name of the root level module (aka the repo name) --\u003e\n## terraform-ibm-appid\n\n### Usage\n\n\u003c!--\nAdd an example of the use of the module in the following code block.\n\nUse real values instead of \"var.\u003cvar_name\u003e\" or other placeholder values\nunless real values don't help users know what to change.\n--\u003e\n\n```hcl\nprovider \"ibm\" {\n  ibmcloud_api_key = \"XXXXXXXXXX\"\n  region           = \"us-south\"\n}\n\nmodule \"appid\" {\n  source            = \"terraform-ibm-modules/appid/ibm\"\n  version           = \"latest\" # Replace \"latest\" with a release version to lock into a specific release\n  resource_group_id = \"xxXXxxXXxXxXXXXxxXxxxXXXXxXXXXX\"\n  appid_name        = \"my-appid\"\n  region            = \"us-south\"\n}\n```\n\n### Required IAM access policies\n\n\u003c!-- PERMISSIONS REQUIRED TO RUN MODULE\nIf this module requires permissions, uncomment the following block and update\nthe sample permissions, following the format.\nReplace the sample Account and IBM Cloud service names and roles with the\ninformation in the console at\nManage \u003e Access (IAM) \u003e Access groups \u003e Access policies.\n--\u003e\n\n\u003c!--\nYou need the following permissions to run this module.\n\n- Account Management\n    - **Sample Account Service** service\n        - `Editor` platform access\n        - `Manager` service access\n    - IAM Services\n        - **Sample Cloud Service** service\n            - `Administrator` platform access\n--\u003e\n\n\u003c!-- NO PERMISSIONS FOR MODULE\nIf no permissions are required for the module, uncomment the following\nstatement instead the previous block.\n--\u003e\n\n\u003c!-- No permissions are needed to run this module.--\u003e\n\n\n\u003c!-- Below content is automatically populated via pre-commit hook --\u003e\n\u003c!-- BEGINNING OF PRE-COMMIT-TERRAFORM DOCS HOOK --\u003e\n### Requirements\n\n| Name | Version |\n|------|---------|\n| \u003ca name=\"requirement_terraform\"\u003e\u003c/a\u003e [terraform](#requirement\\_terraform) | \u003e= 1.9.0 |\n| \u003ca name=\"requirement_ibm\"\u003e\u003c/a\u003e [ibm](#requirement\\_ibm) | \u003e= 1.49.0, \u003c 3.0.0 |\n| \u003ca name=\"requirement_random\"\u003e\u003c/a\u003e [random](#requirement\\_random) | \u003e= 3.6.0, \u003c4.0.0 |\n| \u003ca name=\"requirement_time\"\u003e\u003c/a\u003e [time](#requirement\\_time) | \u003e= 0.8.0, \u003c1.0.0 |\n\n### Modules\n\n| Name | Source | Version |\n|------|--------|---------|\n| \u003ca name=\"module_kms_key_crn_parser\"\u003e\u003c/a\u003e [kms\\_key\\_crn\\_parser](#module\\_kms\\_key\\_crn\\_parser) | terraform-ibm-modules/common-utilities/ibm//modules/crn-parser | 1.6.0 |\n\n### Resources\n\n| Name | Type |\n|------|------|\n| [ibm_appid_cloud_directory_user.user](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/appid_cloud_directory_user) | resource |\n| [ibm_appid_idp_cloud_directory.cd](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/appid_idp_cloud_directory) | resource |\n| [ibm_appid_mfa.mf](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/appid_mfa) | resource |\n| [ibm_iam_authorization_policy.policy](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/iam_authorization_policy) | resource |\n| [ibm_resource_instance.appid](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/resource_instance) | resource |\n| [ibm_resource_key.resource_keys](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/resource_key) | resource |\n| [ibm_resource_tag.app_id_tag](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/resource_tag) | resource |\n| [random_password.password](https://registry.terraform.io/providers/hashicorp/random/latest/docs/resources/password) | resource |\n| [time_sleep.wait_for_authorization_policy](https://registry.terraform.io/providers/hashicorp/time/latest/docs/resources/sleep) | resource |\n| [ibm_iam_access_tag.access_tag](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/data-sources/iam_access_tag) | data source |\n\n### Inputs\n\n| Name | Description | Type | Default | Required |\n|------|-------------|------|---------|:--------:|\n| \u003ca name=\"input_access_tags\"\u003e\u003c/a\u003e [access\\_tags](#input\\_access\\_tags) | Add access management tags to the AppID instance to control access. [Learn more](https://cloud.ibm.com/docs/account?topic=account-tag\u0026interface=ui#create-access-console). | `list(string)` | `[]` | no |\n| \u003ca name=\"input_appid_name\"\u003e\u003c/a\u003e [appid\\_name](#input\\_appid\\_name) | Name of the AppID resource. | `string` | n/a | yes |\n| \u003ca name=\"input_existing_kms_instance_guid\"\u003e\u003c/a\u003e [existing\\_kms\\_instance\\_guid](#input\\_existing\\_kms\\_instance\\_guid) | The GUID of the Hyper Protect or Key Protect instance in which the key specified in `kms_key_crn` is coming from. Only required if `skip_iam_authorization_policy` is 'false'. | `string` | `null` | no |\n| \u003ca name=\"input_identity_confirm_access_mode\"\u003e\u003c/a\u003e [identity\\_confirm\\_access\\_mode](#input\\_identity\\_confirm\\_access\\_mode) | Identity confirm access mode for Cloud Directory (CD). Allowed values are `FULL`, `RESTRICTIVE` and `OFF`. | `string` | `\"OFF\"` | no |\n| \u003ca name=\"input_identity_field\"\u003e\u003c/a\u003e [identity\\_field](#input\\_identity\\_field) | Identity field for Cloud Directory (CD). Allowed values are `email` and `userName`. | `string` | `\"email\"` | no |\n| \u003ca name=\"input_is_idp_cloud_directory_active\"\u003e\u003c/a\u003e [is\\_idp\\_cloud\\_directory\\_active](#input\\_is\\_idp\\_cloud\\_directory\\_active) | Set this to true to set IDP Cloud Directory active. | `bool` | `true` | no |\n| \u003ca name=\"input_is_mfa_active\"\u003e\u003c/a\u003e [is\\_mfa\\_active](#input\\_is\\_mfa\\_active) | Set this to true to set MFA in IDP Cloud Directory active. | `bool` | `true` | no |\n| \u003ca name=\"input_kms_encryption_enabled\"\u003e\u003c/a\u003e [kms\\_encryption\\_enabled](#input\\_kms\\_encryption\\_enabled) | Set this to true to control the encryption keys used to encrypt the data that you store for AppID. If set to false, the data is encrypted by using randomly generated keys. For more info on securing data in AppID, see https://cloud.ibm.com/docs/appid?topic=appid-mng-data | `bool` | `false` | no |\n| \u003ca name=\"input_kms_key_crn\"\u003e\u003c/a\u003e [kms\\_key\\_crn](#input\\_kms\\_key\\_crn) | The root key CRN of a Key Management Services like Key Protect or Hyper Protect Crypto Service (HPCS) that you want to use for disk encryption. Only used if `kms_encryption_enabled` is set to true. | `string` | `null` | no |\n| \u003ca name=\"input_plan\"\u003e\u003c/a\u003e [plan](#input\\_plan) | Plan for the AppID resource. | `string` | `\"graduated-tier\"` | no |\n| \u003ca name=\"input_region\"\u003e\u003c/a\u003e [region](#input\\_region) | Region for the AppID resource. | `string` | n/a | yes |\n| \u003ca name=\"input_reset_password_enabled\"\u003e\u003c/a\u003e [reset\\_password\\_enabled](#input\\_reset\\_password\\_enabled) | Set this to true to enable password resets. | `bool` | `false` | no |\n| \u003ca name=\"input_reset_password_notification_enabled\"\u003e\u003c/a\u003e [reset\\_password\\_notification\\_enabled](#input\\_reset\\_password\\_notification\\_enabled) | Set this to true to enable password notifications. | `bool` | `false` | no |\n| \u003ca name=\"input_resource_group_id\"\u003e\u003c/a\u003e [resource\\_group\\_id](#input\\_resource\\_group\\_id) | Resource group ID for the AppID resources. | `string` | n/a | yes |\n| \u003ca name=\"input_resource_keys\"\u003e\u003c/a\u003e [resource\\_keys](#input\\_resource\\_keys) | The definition of any resource keys to be generated. Valid service roles are `Writer`, `Reader` and `Manager`. | \u003cpre\u003elist(object({\u003cbr/\u003e    name           = string\u003cbr/\u003e    role           = optional(string, \"Reader\")\u003cbr/\u003e    service_id_crn = optional(string)\u003cbr/\u003e  }))\u003c/pre\u003e | `[]` | no |\n| \u003ca name=\"input_resource_tags\"\u003e\u003c/a\u003e [resource\\_tags](#input\\_resource\\_tags) | Add user resource tags to the AppID instance to organize, track, and manage costs. [Learn more](https://cloud.ibm.com/docs/account?topic=account-tag\u0026interface=ui#tag-types). | `list(string)` | `[]` | no |\n| \u003ca name=\"input_self_service_enabled\"\u003e\u003c/a\u003e [self\\_service\\_enabled](#input\\_self\\_service\\_enabled) | Set this to true to allow users to change password and edit user details. | `bool` | `false` | no |\n| \u003ca name=\"input_signup_enabled\"\u003e\u003c/a\u003e [signup\\_enabled](#input\\_signup\\_enabled) | Set this to true to allow users to signup. | `bool` | `false` | no |\n| \u003ca name=\"input_skip_iam_authorization_policy\"\u003e\u003c/a\u003e [skip\\_iam\\_authorization\\_policy](#input\\_skip\\_iam\\_authorization\\_policy) | Set to true to skip the creation of an IAM authorization policy that permits AppID instance in the given resource group to read the encryption key from the Hyper Protect or Key Protect instance passed in var.existing\\_kms\\_instance\\_guid. If set to 'false', a value must be passed for var.existing\\_kms\\_instance\\_guid. | `bool` | `false` | no |\n| \u003ca name=\"input_users\"\u003e\u003c/a\u003e [users](#input\\_users) | List of users to add. | `list(string)` | `[]` | no |\n| \u003ca name=\"input_welcome_enabled\"\u003e\u003c/a\u003e [welcome\\_enabled](#input\\_welcome\\_enabled) | Set this to true to send welcome emails to the new users. | `bool` | `false` | no |\n\n### Outputs\n\n| Name | Description |\n|------|-------------|\n| \u003ca name=\"output_appid_crn\"\u003e\u003c/a\u003e [appid\\_crn](#output\\_appid\\_crn) | AppID instance CRN. |\n| \u003ca name=\"output_appid_name\"\u003e\u003c/a\u003e [appid\\_name](#output\\_appid\\_name) | AppID instance name. |\n| \u003ca name=\"output_dashboard_url\"\u003e\u003c/a\u003e [dashboard\\_url](#output\\_dashboard\\_url) | AppID dashboard url. |\n| \u003ca name=\"output_id\"\u003e\u003c/a\u003e [id](#output\\_id) | AppID instance ID. |\n| \u003ca name=\"output_tenant_id\"\u003e\u003c/a\u003e [tenant\\_id](#output\\_tenant\\_id) | AppID instance guid, also called as tenant\\_id. |\n| \u003ca name=\"output_user_subjects\"\u003e\u003c/a\u003e [user\\_subjects](#output\\_user\\_subjects) | The user's identifier. |\n\u003c!-- END OF PRE-COMMIT-TERRAFORM DOCS HOOK --\u003e\n\n\u003c!-- Leave this section as is so that your module has a link to local development environment set up steps for contributors to follow --\u003e\n## Contributing\n\nYou can report issues and request features for this module in GitHub issues in the module repo. See [Report an issue or request a feature](https://github.com/terraform-ibm-modules/.github/blob/main/.github/SUPPORT.md).\n\nTo set up your local development environment, see [Local development setup](https://terraform-ibm-modules.github.io/documentation/#/local-dev-setup) in the project documentation.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fterraform-ibm-modules%2Fterraform-ibm-appid","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fterraform-ibm-modules%2Fterraform-ibm-appid","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fterraform-ibm-modules%2Fterraform-ibm-appid/lists"}