Gruntwork

Team

For small teams

IaC Library

Account Factory

Pipelines

Patcher

Enterprise

For large platform teams

Everything in Team, plus:

Self-hosted IaC Library

Team Factory

Multi-repo management for many app teams

Gruntwork is available in the

AWS marketplace!

Please contact our sales team to subscribe to Gruntwork through the AWS Marketplace, which may allow you to streamline the procurement process and potentially offset your bill (check with your AWS rep to see which credits and offsets are available to you).

No risk

Sign up for a month-to-month contract. When it’s right for you, convert to annual and save.

No lock-in

If you cancel, you'll have the option to purchase a perpetual license for the infra modules you're using.

No More Grunt Work

Let us handle the infrastructure grunt work so you can focus on your business.

Plan Details

Compare our plans

  • Team
  • Enterprise

Platform Usage

Feature Team Enterprise
Pipelines Users 3+ 10+
Cloud Accounts 1+ 1+

IaC Library

Commercial maintenance for all modules

  • Thoroughly tested using Terratest & Terrascan
  • Compatible with OpenTofu, Terraform, & Terragrunt
  • Self-hosted private mirror of Gruntwork Library

AWS Foundations

  • CIS-compliant VPC

  • CIS-compliant Account Baseline

  • Dual Stack/IPv6 [beta]

EKS & Running Apps

  • Robust EKS cluster support

  • ArgoCD for EKS GitOps

  • AWS ECS, ASG, EC2, and Lambda

  • Application and Network load balancing

Storing Data & Event Streaming

  • RDS, Aurora
  • S3
  • EFS
  • ElastiCache
  • MSK, SQS, SNS, Kinesis, Redshift

Catalog repo conventions

  • Use of Terragrunt catalog

Account Factory

  • Vend individual AWS accounts
  • Centralized account approval workflow
  • CIS-compliant AWS baselines for all vended accounts

Gruntwork Pipelines auto-configured for all vended accounts

Multi-account vending

  • Multi-repo vending for project/teams
  • Customized baselines for all vended accounts

Pipelines

  • GitOps infrastructure deployments
  • GitHub Pull-request driven workflow
  • Terragrunt plan/apply/destroy
  • Works with OpenTofu and Terraform
  • Audit logging
  • Least-privilege OIDC roles
  • Drift detection

Manage Pipelines across multiple repos

Patcher

  • Automatic PRs for module dependency updates
  • Automatic PRs for live infrastructure updates
  • Promote changes across environments

Platform Implementation

  • Initial AWS multi-account setup
  • CIS-compliant AWS account baselines
  • SSO configuration guidance

Opinionated default network architecture

  • Custom network design and configuration

IaC core foundations

  • IaC repo setup
  • Account Factory configuration
  • Patcher configuration
  • Catalog configuration

Training

  • Guidance on deploying apps with EKS, ECS, and RDS
  • KodeKloud DevOps training platform users

Platform Support

Frequently Asked Questions

  • What's included with each Gruntwork user license?
  • What payment options do you accept?
  • Can I pay with AWS credits?
  • Can I try Gruntwork Services before committing to an annual subscription?
  • Is an annual subscription required?
  • What if I want to cancel my Gruntwork Subscription?
  • What happens to my code if I cancel my subscription?