The governed front door to your cloud.

Warden is the governed front door to your Terraform Cloud footprint — workspaces, AWS/Azure accounts, and the services that own them — with org-scoped reads, guarded writes, and a deterministic config review.

  • Workspace CRUD — create, list, and update VCS provider/tenant — plus a deterministic config review that surfaces findings per workspace.
  • Org-scoped visibility into the AWS and Azure accounts and services an org owns, with onboarding state.
  • Scoped API tokens and outbound webhooks (with test delivery and delivery history) for integrating workspace events elsewhere.
  • Every endpoint requires a Supabase JWT or a scoped PAT — a deliberate deviation from the reference Terraform Cloud API spec’s public endpoints, so one org never sees another’s data.

Built for platform/DevOps engineers and org admins managing Terraform Cloud workspaces and AWS/Azure accounts — fluent in Terraform and cloud consoles, expecting the same nouns (workspace, service, account, tenant, region, provider) rather than web-only synonyms.

YPRLDXCHRHLMWRD
NODE 05 · WARDEN · ACTIVE