Production-ready IaC modules for AWS

Leverage a catalog of 300+ battle-tested Terraform/OpenTofu modules to set up your AWS foundations, run apps, and store data.

Built for:

Find a module

Read the Docs

Why prebuilt?

Skip the DIY

All companies share the same fundamental infrastructure needs.

Why waste time building infra from scratch or cobbling together disparate open source modules?

We’ve condensed thousands of hours spent building infrastructure on AWS into a collection of IaC modules so you can deploy and manage your infrastructure quickly and reliably.

Numbers

500+

10

100+

ENTERPRISE GRADE

The Gruntwork IaC Library

Thoughtfully opinionated, built for and proven in production at enterprise scale, from the makers of Terragrunt.

  • Battle-tested: 300+ best-practice Terraform/OpenTofu modules
  • Tested: Every commit goes through a suite of automated unit and integration tests written with Terratest
  • Documented: Every module is thoroughly documented and includes example code

Browse modules

Secure & Compliant

  • Security by default: Built with security-first principles, validated with security scanning, and compliant with CIS AWS Foundations Benchmark
  • Security updates: Modules are continually updated so your infrastructure never falls out of compliance
  • Audit-ready: Clear release notes and auditable logs show when updates and fixes happen

Learn about CIS

Maintained by Gruntwork

  • Actively maintained: SMEs are actively making updates, additions, and fixes to the library
  • Comprehensive coverage: Updates cover the most current best practices on AWS, and the latest Terraform/OpenTofu versions
  • Automated updates: Automatically stay updated to the latest releases when you use Gruntwork Patcher

View release history

DEVELOPER SELF-SERVICE

Build your DevOps foundation

Empower your developers with a curated catalog of approved modules they can quickly scaffold and deploy.

  • Curated: Create and extend your catalog, combining and configuring modules to meet your requirements.
  • Approved modules: Gruntwork’s git repo conventions organize your private module catalog so developers know what’s approved and available for use.
  • Browse with ease: Developers can browse your catalog across repos using the terragrunt catalog command, quickly scaffolding new code for new instances.

Read the Docs

Templatized

  • Deliver developer self-service: List available modules and quickly search using the terragrunt catalog command.
  • Create templates: Use our open source Boilerplate tool to create templates for common module usage patterns.
  • Generate code: Scaffold code from the modules and templates in your repos using the terragrunt scaffold command. Just fill in the required inputs and create a PR!

Read the docs

What’s included

Modules for your entire infrastructure

-1.svg)

  • Compliance: Account baselines compliant with the CIS AWS Foundations Benchmark out-of-the-box
  • Serverless: Include services such as Lambda, API Gateway, and Fargate.
  • Networking: VPC, Transit Gateway, IPAM, DualStack/IPv6, and more.
  • Security: Secrets management, encryption, and policy as code.
  • App Orchestration: EKS, Helm, ECS, and more.
  • Monitoring: Metrics, logs, dashboards, and alerts.
  • Data Storage: Support for MySQL, PostgreSQL, Redis, S3, and more.
  • Search & analytics: Elasticsearch, MSK (Kafka), and more.

Search all available modules

“If you’re tired of reinventing the wheel, struggling with half-baked Terraform patterns, or spending days debating folder structure—Gruntwork gives you a proven starting point. It’s like having a senior platform engineer in your back pocket, guiding you toward best practices from day one.”
Ryan Hammond, Senior Cloud Architect

Get started

Try a Proof of Concept

Take it for a spin with a month-to-month contract. Pay less on an annual plan once you’ve proven the value.

Book a demo

Explore Pricing