Skip to content

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Oct 15, 2025

This PR contains the following updates:

Package Type Update Change
github (source) required_provider minor 6.6.0 -> 6.9.0
hashicorp/terraform minor 1.13.3 -> 1.14.2
hashicorp/terraform required_version minor ~> 1.13.0 -> ~> 1.14.0

Release Notes

integrations/terraform-provider-github (github)

v6.9.0

Compare Source

What's Changed
🚀 New Features
🐛 Bugfixes
🪦 Deprecations
🛠️ Maintenance
New Contributors

Full Changelog: integrations/terraform-provider-github@v6.8.0...v6.9.0

v6.8.3

Compare Source

Updates how we handle secrets to address provider config and initialization issues (ref: #​2903)

Full Changelog: integrations/terraform-provider-github@v6.8.2...v6.8.3

v6.8.2

Compare Source

⚠️ This release is deprecated, please use v6.8.3 instead

This merge brings the following enhancements from v6.7.5:

  • Added destroy_on_drift field to both github_actions_secret and github_actions_organization_secret
  • Improved drift detection logic with configurable behavior
  • Added schema migrations for backward compatibility
  • Enhanced test coverage for drift detection scenarios
  • Fixed ForceNew field configurations

Full Changelog: integrations/terraform-provider-github@v6.8.1...v6.8.2

v6.8.1

Compare Source

⚠️ This release is deprecated, please use v6.8.2 instead

fix: max_file_size was declared as an int but being cast as a float
fix: restricted_file_extensions was panicing due to a Set type mismatch

Full Changelog: integrations/terraform-provider-github@v6.8.0...v6.8.1

v6.8.0

Compare Source

What's Changed

🚀 New Features
  • fix/feature: Adds support for max_file_size, max_file_path_length, file_extension_restriction, and unknown rulesets for repos and orgs by @​nickfloyd in #​2821
  • feat: Handle error management on resources when dealing with archived repos. by @​nickfloyd in #​2837
  • feat: Update removal operations for related resources to now gracefully handle deleting archived repositories by @​nickfloyd in #​2844
  • feat: support workflow permissions in repository by @​M0NsTeRRR in #​2309
  • feat: implement missing data source github_actions_environment_public_key by @​nobbs in #​2500
  • feat: Adds migration for destory-on-drift for actions organization secret to prevent state from getting out of sync with the schema by @​nickfloyd in #​2820
  • feat: Adds DiffSuppressFunc and DiffSuppressOnRefresh to resources that have etag properties to suppress etag-related diffs by @​nickfloyd in #​2840
  • feat: Max per page by @​dee-kryvenko in #​2703
  • feat(core): add fork functionality by @​hminaee-tc in #​2678
🐛 Bugfixes
🛠️ Maintenance
📝 Documentation

New Contributors

Full Changelog: integrations/terraform-provider-github@v6.7.0...v6.8.0

v6.7.5

Compare Source

[fix]: v6.7.4 causes Internal validation error during TF Init #​2855

Full Changelog: integrations/terraform-provider-github@v6.7.4...v6.7.5

v6.7.4

Compare Source

v6.7.4

⚠️ This release is deprecated, please use v6.7.5 instead

This patch appropriately handles the cases when a Terraform resource has an Update function defined (which was recently added), the Terraform SDK requires that any field that can change must either have ForceNew: true (meaning changes require resource recreation) or for that field to be a computed-only field.

The destroy_on_drift field is a provider config setting that controls how drift detection works - it's not a field that maps to the GitHub API. When implementations try to change this field Terraform will execute the plan properly but fail on the apply because the Update function didn't know how to handle the destroy_on_drift change.

Lastly reads now handle setting encrypted_value and plaintext_value to nil to trigger an update when the "stored" update dates do not match.

Full Changelog: integrations/terraform-provider-github@v6.7.3...v6.7.4

v6.7.3

Compare Source

v6.7.3

⚠️ This release is deprecated, please use v6.7.5 instead

This patch addresses the issue where the Update function was missed during the cherry pick for github_actions_secret resource.
Tests were also added to avoid regressions in the future.

Full Changelog: integrations/terraform-provider-github@v6.7.2...v6.7.3

v6.7.2

Compare Source

v6.7.2

⚠️ This release is deprecated, please use v6.7.5 instead

Note: This patch contains the addition of the destroy_on_drift property to github_actions_secret resource because the exact same issue was present there as well.

Bug Fixes

Fixed drift detection bug that caused "Provider produced inconsistent result" errors in github_actions_organization_secret and github_actions_secret resources. The bug occurred when secrets were modified externally - the timestamp wasn't being updated after drift detection, causing infinite loops of false positive drift detection. | #​2832

Features

Added destroy_on_drift property to github_actions_secret resource (repository-level secrets), and matches the functionality already available in github_actions_organization_secret. Also includes proper schema migration from v0 to v1 and ensures the property defaults to true for backward compatibility. | #​2832

Full Changelog: integrations/terraform-provider-github@v6.7.1...v6.7.2

v6.7.1

Compare Source

v6.7.1

⚠️ This release is deprecated, please use v6.7.5 instead

Bug Fixes
  • github_actions_organization_secret: Add state migration for destroy_on_drift field to fix regression from v6.7.0 (#​2820)

This patch release fixes a regression introduced in v6.7.0 where existing github_actions_organization_secret resources would show invalid state for the new destroy_on_drift field.

The fix adds a schema migration that automatically sets destroy_on_drift=true for existing resources that don't have this field, preventing the need for manual state fixes.

Fixes: #​2804

Full Changelog: integrations/terraform-provider-github@v6.7.0...v6.7.1

v6.7.0

Compare Source

What's Changed

🚀 New Features
🐛 Bugfixes
🛠️ Maintenance
📝 Documentation

New Contributors

Full Changelog: integrations/terraform-provider-github@v6.6.0...v6.7.0

hashicorp/terraform (hashicorp/terraform)

v1.14.2

Compare Source

v1.14.1

Compare Source

1.14.1 (December 3, 2025)

BUG FIXES:

  • test: allow ephemeral outputs in root modules (#​37813)

  • Combinations of replace_triggered_by and -replace could result in some instances not being replaced (#​37833)

  • providers lock: include providers required by terraform test (#​37851)

  • Set state information in the proto request for the GenerateResourceConfig RPC (#​37896)

  • actions: make after_create & after_update actions run after the resource has applied (#​37936)

v1.14.0

Compare Source

1.14.0 (November 19, 2025)

NEW FEATURES:

  • List Resources: List resources can be defined in *.tfquery.hcl files and allow querying and filterting existing infrastructure.

  • A new Terraform command terraform query: Executes list operations against existing infrastructure and displays the results. The command can optionally generate configuration for importing results into Terraform.

  • A new GenerateResourceConfiguration RPC allows providers to create more precise configuration values during import. (#​37515)

  • New top-level Actions block: Actions are provider defined and meant to codify use cases outside the normal CRUD model in your Terraform configuration. Providers can define Actions like aws_lambda_invoke or aws_cloudfront_create_invalidation that do something imparative outside of Terraforms normal CRUD model. You can configure such a side-effect with an action block and have actions triggered through the lifecycle of a resource or through passing the -invoke CLI flag. (#​37553)

ENHANCEMENTS:

  • terraform test: expected diagnostics will be included in test output when running in verbose mode" (#​37362)

  • terraform test: ignore prevent_destroy attribute during when cleaning up tests" (#​37364)

  • terraform stacks command support for -help flag (#​37645)

  • query: support offline validation of query files via -query flag in the validate command (#​37671)

  • Updates to support the AWS European Sovereign Cloud (#​37721)

BUG FIXES:

  • Retrieve all workspace variables while doing a terraform import, include variables inherited from variable sets but not overwritten by the workspace. (#​37241)

  • Fix OSS backend proxy support by adding a proxy layer for OSS backend operations. Resolves #​36897. (#​36897)

  • console and test: return explicit diagnostics when referencing resources that were not included in the most recent operation. (#​37663)

  • query: generate unique resource identifiers for results of expanded list resources (#​37681)

  • The CLI now summarizes the number of actions invoked during terraform apply, matching the plan output. (#​37689)

  • Allow filesystem functions to return inconsistent results when evaluated within provider configuration (#​37854)

  • query: improve error handling for missing identity schemas (#​37863)

UPGRADE NOTES:

  • The parallelism of Terraform operations within container runtimes may be reduced depending on the CPU bandwidth limit setting. (#​37436)

  • Building Terraform 1.14 requires macOS Monterey or later (due to being built on Go 1.25 which imposes these requirements) (#​37436)

Previous Releases

For information on prior major and minor releases, refer to their changelogs:

v1.13.5

Compare Source

1.13.5 (November 5, 2025)

BUG FIXES:

  • impure functions could cause templatefile to incorrectly fail consistency checks (#​37807)

  • Allow filesystem functions to return inconsistent results when evaluated within provider configuration (#​37854)

v1.13.4

Compare Source

1.13.4 (October 15, 2025)

BUG FIXES:

  • Fix crash when showing a cloud plan without having a cloud backend (#​37751)

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot requested a review from a team as a code owner October 15, 2025 12:00
@renovate renovate bot enabled auto-merge (squash) October 15, 2025 12:00
@renovate renovate bot changed the title chore(deps): update dependency hashicorp/terraform to v1.13.4 chore(deps): update actions Oct 22, 2025
@renovate renovate bot force-pushed the renovate/actions branch 2 times, most recently from 1b33d12 to 48ef1d7 Compare October 27, 2025 22:36
@renovate renovate bot force-pushed the renovate/actions branch 4 times, most recently from 3664db2 to 9349092 Compare November 5, 2025 17:49
@renovate renovate bot force-pushed the renovate/actions branch 4 times, most recently from 6c8a0ae to 37a9c93 Compare November 19, 2025 16:57
@renovate renovate bot force-pushed the renovate/actions branch 2 times, most recently from c368f01 to 3fc324a Compare December 5, 2025 21:12
@renovate renovate bot force-pushed the renovate/actions branch from 3fc324a to 0b49f63 Compare December 11, 2025 20:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant