# terraform-google-modules/terraform-example-foundation

Shows how the CFT modules can be composed to build a secure cloud foundation

Repository: https://github.com/terraform-google-modules/terraform-example-foundation
Canonical: https://ross.abutalabs.com/products/terraform-example-foundation
Homepage: https://cloud.google.com/architecture/security-foundations
Language: HCL
License: Apache-2.0
License Family: permissive
Topics: cft-terraform, end-to-end, operations
Last push: 2026-08-25T12:12:38+00:00

## Health v2 (maintenance only)
Score: 86/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 99, release rhythm 62, longevity 100
- inputs: {"age_days": 2466, "days_push": 8, "days_rel": 40, "gap_med": null, "n_releases_24m": 1}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1544, forks 832 (observed 2026-08-28T04:05:01.440319+00:00)

## What it is
A Terraform example repository demonstrating how to compose Cloud Foundation Toolkit (CFT) modules into a secure Google Cloud enterprise foundation, following Google's Enterprise Foundations Blueprint. It provides a multi-stage, version-controlled Infrastructure as Code starting point (bootstrap, org hierarchy, networking, projects) intended to be forked and customized by enterprise platform teams.

## Use cases
- set up a secure Google Cloud landing zone with Terraform
- bootstrap a GCP organization with CI/CD for infrastructure as code
- implement the Google Cloud Enterprise Foundations Blueprint
- create a multi-stage Terraform foundation with separation of duties
- deploy a baseline enterprise GCP environment with security controls
- fork a starting point for a customized GCP cloud foundation

## When to choose
- you are a large enterprise with a dedicated platform team managing GCP via version-controlled IaC
- you want Google best-practice defaults for org structure, security, and governance
- you need a forkable, customizable foundation rather than a turnkey product
- you want CI/CD-driven deployment of layered Terraform stages

## When to avoid
- you are a small organization wanting a turnkey GCP setup with minimal effort
- you expect in-place upgrades between foundation versions without breaking changes
- you need modules to consume as remote Terraform references rather than fork and maintain
- you lack the engineering capacity to customize and maintain the foundation yourself

## Facets
- artifact type: infra-config
- maturity: active
- function: infrastructure-as-code, deployment, security, ci-cd, configuration-management
- domain: cloud-computing, infrastructure-as-code, security, self-hosted
- platform: cloud, cli
- tags: google-cloud, terraform-modules, landing-zone, enterprise-blueprint, hcl, cloud-foundation-toolkit, bootstrap, multi-stage, devops, terraform

## Member repositories
- terraform-google-modules/terraform-example-foundation (main) score 86

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:01.440319+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T04:30:39.212488+00:00, confidence not recorded.
  - readme: https://github.com/terraform-google-modules/terraform-example-foundation (fetched 2026-08-28T04:05:01.440319+00:00, sha 2daf79178ff8)
  - homepage: https://cloud.google.com/architecture/security-foundations (fetched 2026-08-29T11:31:50.259830+00:00, sha 044e0a93ec4f)
- Data as of 2026-08-30T08:39:29.467469+00:00.
