Skip to content

chore(deps): update terraform zitadel to v3#1837

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/major-zitadel
Open

chore(deps): update terraform zitadel to v3#1837
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/major-zitadel

Conversation

@renovate

@renovate renovate Bot commented Jul 21, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
zitadel (source) required_provider major 2.12.83.3.0

Release Notes

zitadel/terraform-provider-zitadel (zitadel)

v3.3.0

Compare Source

Features

v3.2.2

Compare Source

Bug Fixes
  • support access_token, jwt_file and system_api for asset uploads (8f4c2c8), closes #​411

v3.2.1

Compare Source

Bug Fixes
  • deprecate unsupported fields on SMS OTP message text resources (#​414) (674a27f)

v3.2.0

Compare Source

Features

v3.1.0

Compare Source

Features
  • add project_v2 and application_v2 resources backed by the v2 APIs (#​407) (6371ca5)

v3.0.0

Compare Source

BREAKING CHANGES
  • secrets are no longer stored in state, write-only attributes require Terraform 1.11+, and client_secret, private_key and bind_password are removed from the affected datasources.

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • "before 9am on tuesday"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@github-actions

github-actions Bot commented Jul 21, 2026

Copy link
Copy Markdown

Terraform Plan

Shared

1password/account — No changes
1password/futo-account — No changes
bunny/futo-account — No changes
cloudflare/account — No changes
cloudflare/api-keys — No changes
cloudflare/futo-account — No changes
cloudflare/futo-api-keys — No changes
docker/org — No changes
⚠️ github/org — Plan: 0 to add, 4 to change, 0 to destroy.
OpenTofu used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:
  ~ update in-place (current -> planned)
  # github_repository_collaborators.repo_collaborators["immich"] will be updated in-place
  ~ resource "github_repository_collaborators" "repo_collaborators" {
        id             = "455229168"
      ~ invitation_ids = {
          - "koen-futo"  = "286515056"
          - "martabal"   = "284848949"
          - "martyfuhry" = "284848968"
          - "matthinc"   = "284848954"
          - "sudoicezen" = "284848972"
        } -> (known after apply)
        # (2 unchanged attributes hidden)
      - user {
          - permission = "admin" -> null
          - username   = "alextran1502" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "bo0tzz" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "jrasm91" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "zackpollard" -> null
        }
      + user {
          + permission = "maintain"
          + username   = "alextran1502"
        }
      + user {
          + permission = "maintain"
          + username   = "bo0tzz"
        }
      + user {
          + permission = "maintain"
          + username   = "jrasm91"
        }
      + user {
          + permission = "maintain"
          + username   = "zackpollard"
        }
        # (59 unchanged blocks hidden)
    }
  # github_repository_collaborators.repo_collaborators["static-pages"] will be updated in-place
  ~ resource "github_repository_collaborators" "repo_collaborators" {
        id             = "822727374"
      ~ invitation_ids = {
          - "PixelJonas" = "284848947"
          - "fyfrey"     = "284848959"
          - "kennyfuto"  = "288622006"
          - "koen-futo"  = "286515046"
          - "martabal"   = "284848951"
          - "martyfuhry" = "284848969"
          - "matthinc"   = "284848955"
          - "orhan98"    = "315880176"
          - "sudoicezen" = "284848974"
        } -> (known after apply)
        # (2 unchanged attributes hidden)
      - user {
          - permission = "admin" -> null
          - username   = "alextran1502" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "bo0tzz" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "jrasm91" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "zackpollard" -> null
        }
      + user {
          + permission = "maintain"
          + username   = "alextran1502"
        }
      + user {
          + permission = "maintain"
          + username   = "bo0tzz"
        }
      + user {
          + permission = "maintain"
          + username   = "jrasm91"
        }
      + user {
          + permission = "maintain"
          + username   = "zackpollard"
        }
        # (58 unchanged blocks hidden)
    }
  # github_repository_collaborators.repo_collaborators["test-assets"] will be updated in-place
  ~ resource "github_repository_collaborators" "repo_collaborators" {
        id             = "697157116"
      ~ invitation_ids = {
          - "PixelJonas" = "284848946"
          - "fyfrey"     = "284848960"
          - "kennyfuto"  = "288622000"
          - "koen-futo"  = "286515048"
          - "martabal"   = "284848952"
          - "martyfuhry" = "284848970"
          - "matthinc"   = "284848956"
          - "orhan98"    = "315880175"
          - "staticdog"  = "320859393"
          - "sudoicezen" = "284848973"
        } -> (known after apply)
        # (2 unchanged attributes hidden)
      - user {
          - permission = "admin" -> null
          - username   = "alextran1502" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "bo0tzz" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "jrasm91" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "zackpollard" -> null
        }
      + user {
          + permission = "maintain"
          + username   = "alextran1502"
        }
      + user {
          + permission = "maintain"
          + username   = "bo0tzz"
        }
      + user {
          + permission = "maintain"
          + username   = "jrasm91"
        }
      + user {
          + permission = "maintain"
          + username   = "zackpollard"
        }
        # (58 unchanged blocks hidden)
    }
  # github_repository_collaborators.repo_collaborators["walkrs"] will be updated in-place
  ~ resource "github_repository_collaborators" "repo_collaborators" {
        id             = "1156754889"
      ~ invitation_ids = {
          - "C-Otto"          = "307331486"
          - "PixelJonas"      = "307331438"
          - "adamantike"      = "307331464"
          - "dahool"          = "307331471"
          - "ddshd"           = "307331444"
          - "fyfrey"          = "307331463"
          - "github-cli"      = "307331445"
          - "jbaez"           = "307331428"
          - "kennyfuto"       = "307331447"
          - "koen-futo"       = "307331458"
          - "martabal"        = "307331390"
          - "martyfuhry"      = "307331483"
          - "matthinc"        = "307331420"
          - "michelheusschen" = "307331480"
          - "midzelis"        = "309034718"
          - "orhan98"         = "315880173"
          - "samholton"       = "307331386"
          - "schuhbacca"      = "307331432"
          - "skatsubo"        = "307331414"
          - "staticdog"       = "320859390"
        } -> (known after apply)
        # (2 unchanged attributes hidden)
      - user {
          - permission = "admin" -> null
          - username   = "alextran1502" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "bo0tzz" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "jrasm91" -> null
        }
      - user {
          - permission = "admin" -> null
          - username   = "zackpollard" -> null
        }
      + user {
          + permission = "maintain"
          + username   = "alextran1502"
        }
      + user {
          + permission = "maintain"
          + username   = "bo0tzz"
        }
      + user {
          + permission = "maintain"
          + username   = "jrasm91"
        }
      + user {
          + permission = "maintain"
          + username   = "zackpollard"
        }
        # (58 unchanged blocks hidden)
    }
Plan: 0 to add, 4 to change, 0 to destroy.
╷
│ Warning: Argument is deprecated
│ 
│   with github_repository.repositories["one-click"],
│   on repositories.tf line 173, in resource "github_repository" "repositories":173:   vulnerability_alerts      = !each.value.archived
│ 
│ Use the github_repository_vulnerability_alerts resource instead. This field
│ will be removed in a future version.
│ 
│ (and 24 more similar warnings elsewhere)
╵
─────────────────────────────────────────────────────────────────────────────
Note: You didn't use the -out option to save this plan, so OpenTofu can't
guarantee to take exactly these actions if you run "tofu apply" now.
github/secrets — No changes
github/webhooks — No changes
netbird/account — No changes
⚠️ zitadel/cloud — Plan: 0 to add, 2 to change, 0 to destroy.
OpenTofu used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:
  ~ update in-place (current -> planned)
  # zitadel_idp_github.github will be updated in-place
  ~ resource "zitadel_idp_github" "github" {
      ~ client_secret       = (write-only attribute)
      + client_secret_hash  = (sensitive value)
        id                  = "364798781687881168"
        name                = "GitHub"
        # (7 unchanged attributes hidden)
    }
  # zitadel_idp_gitlab_self_hosted.gitlab will be updated in-place
  ~ resource "zitadel_idp_gitlab_self_hosted" "gitlab" {
      ~ client_secret       = (write-only attribute)
      + client_secret_hash  = (sensitive value)
        id                  = "366545809833012958"
        name                = "FUTO GitLab"
        # (8 unchanged attributes hidden)
    }
Plan: 0 to add, 2 to change, 0 to destroy.
─────────────────────────────────────────────────────────────────────────────
Note: You didn't use the -out option to save this plan, so OpenTofu can't
guarantee to take exactly these actions if you run "tofu apply" now.
⚠️ zitadel/self-hosted — Plan: 0 to add, 1 to change, 0 to destroy.
OpenTofu used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:
  ~ update in-place (current -> planned)
  # zitadel_idp_github.github will be updated in-place
  ~ resource "zitadel_idp_github" "github" {
      ~ client_secret       = (write-only attribute)
      + client_secret_hash  = (sensitive value)
        id                  = "323182965448245271"
        name                = "GitHub"
        # (7 unchanged attributes hidden)
    }
Plan: 0 to add, 1 to change, 0 to destroy.
─────────────────────────────────────────────────────────────────────────────
Note: You didn't use the -out option to save this plan, so OpenTofu can't
guarantee to take exactly these actions if you run "tofu apply" now.

Scoped (dev)

discord/community — No changes
monitoring/grafana — No changes
⚠️ zitadel/customer — Plan: 0 to add, 1 to change, 0 to destroy.
OpenTofu used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:
  ~ update in-place (current -> planned)
  # zitadel_smtp_config.default will be updated in-place
  ~ resource "zitadel_smtp_config" "default" {
        id             = "369888215626216821"
      ~ password       = (write-only attribute)
      + password_hash  = (sensitive value)
        # (6 unchanged attributes hidden)
    }
Plan: 0 to add, 1 to change, 0 to destroy.
╷
│ Warning: Deprecated Resource
│ 
│   with zitadel_smtp_config.default,
│   on notifications.tf line 1, in resource "zitadel_smtp_config" "default":1: resource "zitadel_smtp_config" "default" {
│ 
│ The underlying SMTP config API is marked deprecated in ZITADEL. Use
│ zitadel_email_provider_smtp instead.
│ 
│ (and one more similar warning elsewhere)
╵
─────────────────────────────────────────────────────────────────────────────
Note: You didn't use the -out option to save this plan, so OpenTofu can't
guarantee to take exactly these actions if you run "tofu apply" now.

Scoped (prod)

discord/community — No changes
discord/futo — No changes
monitoring/grafana — No changes
⚠️ zitadel/customer — Plan: 0 to add, 1 to change, 0 to destroy.
OpenTofu used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:
  ~ update in-place (current -> planned)
  # zitadel_smtp_config.default will be updated in-place
  ~ resource "zitadel_smtp_config" "default" {
        id             = "369876119891015029"
      ~ password       = (write-only attribute)
      + password_hash  = (sensitive value)
        # (6 unchanged attributes hidden)
    }
Plan: 0 to add, 1 to change, 0 to destroy.
╷
│ Warning: Deprecated Resource
│ 
│   with zitadel_smtp_config.default,
│   on notifications.tf line 1, in resource "zitadel_smtp_config" "default":1: resource "zitadel_smtp_config" "default" {
│ 
│ The underlying SMTP config API is marked deprecated in ZITADEL. Use
│ zitadel_email_provider_smtp instead.
│ 
│ (and one more similar warning elsewhere)
╵
─────────────────────────────────────────────────────────────────────────────
Note: You didn't use the -out option to save this plan, so OpenTofu can't
guarantee to take exactly these actions if you run "tofu apply" now.

Scoped (staging — zitadel customer)

⚠️ customer — Plan: 0 to add, 1 to change, 0 to destroy.
OpenTofu used the selected providers to generate the following execution
plan. Resource actions are indicated with the following symbols:
  ~ update in-place (current -> planned)
  # zitadel_smtp_config.default will be updated in-place
  ~ resource "zitadel_smtp_config" "default" {
        id             = "379151128878703959"
      ~ password       = (write-only attribute)
      + password_hash  = (sensitive value)
        # (6 unchanged attributes hidden)
    }
Plan: 0 to add, 1 to change, 0 to destroy.
╷
│ Warning: Deprecated Resource
│ 
│   with zitadel_smtp_config.default,
│   on notifications.tf line 1, in resource "zitadel_smtp_config" "default":1: resource "zitadel_smtp_config" "default" {
│ 
│ The underlying SMTP config API is marked deprecated in ZITADEL. Use
│ zitadel_email_provider_smtp instead.
│ 
│ (and one more similar warning elsewhere)
╵
─────────────────────────────────────────────────────────────────────────────
Note: You didn't use the -out option to save this plan, so OpenTofu can't
guarantee to take exactly these actions if you run "tofu apply" now.

@renovate
renovate Bot force-pushed the renovate/major-zitadel branch 4 times, most recently from 98126c1 to 236e088 Compare July 21, 2026 12:11
@renovate
renovate Bot force-pushed the renovate/major-zitadel branch from 236e088 to 85f2a1c Compare July 21, 2026 14:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants