










These are pre-configured Terraform modules for automating common cloud tasks across AWS, Azure, GCP, and custom cloud platforms, enabling rapid and consistent infrastructure provisioning and management

CI/CD pipeline using GitHub Actions for secure, scalable AKS deployment.

Provides managed PostgreSQL with direct integration to AKS for secure access.

The AKS Starterkit provides application teams with a pre-configured Kubernetes environment. It includes two Kubernetes namespaces (dev&prod), a Git repository, a CI/CD pipeline using GitHub Actions, and a secure container registry integration.

A composition building block that provides developers with a sandboxed AWS environment to access agentic coding tools like Claude via AWS Bedrock, with automatic budget alerts and region enablement for AI model access.

Sets up budget alerts for an AWS account to monitor spending and prevent cost overruns.

The building block enables you to enable AWS regions that require explicit opt-in for your AWS account. This is particularly useful for managing access to newer AWS regions or regions with specific compliance requirements.

Provides an AWS S3 bucket for object storage with access controls, lifecycle policies, and encryption.

Provision a production-grade Azure Kubernetes Service (AKS) cluster with Azure AD, OIDC, Workload Identity, Log Analytics and custom VNet using Terraform.

Provides secure RDP and SSH connectivity to virtual machines in Azure virtual networks without exposing them to the public internet, with comprehensive monitoring and alerting.

(ALPHA) Provisions an Azure Virtual Machine (VM) with support for both Linux and Windows operating systems, including network interface, optional public IP, network security group, and optional data disk.

The Azure Virtual Machine Starterkit provides application teams with a pre-configured Azure environment. It includes a dedicated project, an Azure tenant, and a virtual machine for quick provisioning and testing.

Sets up budget alerts for an Azure subscription to monitor spending and prevent cost overruns.

Provides a production-grade Azure Container Registry for storing and managing Docker container images and OCI artifacts with private networking support.

Deploy directly to Azure using GitHub Actions and Terraform brought to you by meshStack

Helper building block used to assign the necessary Azure roles

Provides an Azure Key Vault for secure storage and management of secrets, keys, and certificates with RBAC authorization, optional private endpoint support, and hub connectivity.

Provides a managed Azure PostgreSQL database with scalability, security, and high availability.

Creates an Entra ID application registration and service principal with role assignment for automated access to Azure resources

Provides VNet for your Azure subscription that's connected on a central network hub.

Provides an Azure Storage Account as a highly scalable, durable, and secure container that groups together a set of Azure Storage services.

Creates an Azure Virtual Machine Scale Set (VMSS) with comprehensive configuration options for scalable, highly available compute infrastructure.

Creates an Azure DevOps agent pool connected to an existing Azure VMSS for elastic scaling of build agents.

Provides a CI/CD pipeline in Azure DevOps linked to a repository with YAML-based configuration

Creates and manages Azure DevOps projects with user entitlements, stakeholder licenses, and role-based group memberships.

Provides a Git repository in Azure DevOps with optional branch protection policies

Provides an Azure subscription service connection in Azure DevOps for pipeline integration with Azure subscriptions

Sets up budget alerts for a GCP project to monitor spending and prevent cost overruns.

Provides a GCP Cloud Storage bucket for object storage with access controls and lifecycle policies.

Automates GitHub repository setup with predefined configurations and access control.

Creates and manages IONOS Data Center Designer environments with user onboarding, role-based access control, and datacenter provisioning.

Creates and manages IONOS Cloud users with role-based access. This is a foundational module that should be deployed before DCD environments.

This building block Creates a subaccount in SAP BTP.

This building block Creates a subdirectory in SAP BTP.

Creates a new StackIt project and manages user access permissions with role-based access control.