<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0"><channel><title>Pulumi Blog: Craig Symonds</title><link>https://www.pulumi.com/blog/author/craig-symonds/</link><description>Pulumi blog posts: Craig Symonds.</description><language>en-us</language><pubDate>Wed, 05 Nov 2025 00:05:00 +0000</pubDate><item><title>Announcing the Next Generation of Pulumi Policies: AI-Accelerated Governance for the Cloud</title><link>https://www.pulumi.com/blog/policy-next-gen/</link><pubDate>Wed, 05 Nov 2025 00:05:00 +0000</pubDate><guid>https://www.pulumi.com/blog/policy-next-gen/</guid><description>
&lt;img src="https://www.pulumi.com/images/generated/blog/policy-next-gen/index.png" /&gt;
&lt;p&gt;The era of AI-accelerated development has created a paradox: the faster developers move, the bigger the governance challenge becomes. For years, security and platform teams have worked to &amp;ldquo;shift left,&amp;rdquo; but the tools available have been incomplete. Most focus on detection, which is necessary but not sufficient. They identify thousands of policy violations across an organization&amp;rsquo;s infrastructure but leave teams with an overwhelming backlog and no scalable way to remediate it. This creates a persistent gap between finding a problem and fixing it. The result is an impossible choice between development velocity and organizational control, forcing leadership to slow down innovation to manage risk.&lt;/p&gt;
&lt;p&gt;Today, we end that compromise.&lt;/p&gt;
&lt;p&gt;We are thrilled to announce the next generation of Pulumi Policies, a comprehensive governance solution that moves beyond detection to deliver AI-powered remediation at scale. We’re introducing a new lifecycle to secure your cloud: first, &lt;strong&gt;Get Clean&lt;/strong&gt; by using AI to fix your existing policy violations. Second, &lt;strong&gt;Stay Clean&lt;/strong&gt; by using policy as a universal guardrail that makes AI-driven development not just fast, but fundamentally safe. These are not strictly sequential steps; you can begin enforcing &amp;ldquo;Stay Clean&amp;rdquo; policies for all new infrastructure while you simultaneously work on the &amp;ldquo;Get Clean&amp;rdquo; process for your existing footprint.&lt;/p&gt;
&lt;p&gt;Watch our Launch Video:&lt;/p&gt;
&lt;div style="position: relative; padding-bottom: 56.25%; height: 0; overflow: hidden;"&gt;
&lt;iframe allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share; fullscreen" loading="eager" referrerpolicy="strict-origin-when-cross-origin" src="https://www.youtube.com/embed/mwcrOTEf1EQ?rel=0?autoplay=0&amp;amp;controls=1&amp;amp;end=0&amp;amp;loop=0&amp;amp;mute=0&amp;amp;start=0" style="position: absolute; top: 0; left: 0; width: 100%; height: 100%; border:0;" title="YouTube video"&gt;&lt;/iframe&gt;
&lt;/div&gt;
&lt;h2 id="part-1-get-clean---from-thousands-of-issues-to-a-compliant-state"&gt;Part 1: Get Clean - From Thousands of Issues to a Compliant State&lt;/h2&gt;
&lt;p&gt;The first step to a secure cloud is tackling the mountain of existing misconfigurations spread across your environments.&lt;/p&gt;
&lt;h3 id="first-gain-complete-visibility-with-the-new-policy-findings-hub"&gt;First, Gain Complete Visibility with the New Policy Findings Hub&lt;/h3&gt;
&lt;p&gt;To fix your issues, you first need to see them clearly. We have introduced a powerful &lt;strong&gt;&lt;a href="https://www.pulumi.com/blog/policy-issue-management/"&gt;Policy Findings Hub&lt;/a&gt;&lt;/strong&gt; designed to give every stakeholder the exact view they need.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;The Overview Tab:&lt;/strong&gt; A high-level dashboard with compliance scores for leadership to track trends and measure your organization&amp;rsquo;s posture.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;The Compliance Tab:&lt;/strong&gt; A control-centric view for auditors and infosec teams, grouping findings by policy (e.g., CIS, NIST) to simplify evidence gathering and prove compliance.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;The Issues Tab:&lt;/strong&gt; A collaborative workspace for platform and development teams to triage, assign, prioritize, and track the remediation of every policy issue.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;This hub is powered by our flexible audit capabilities. With &lt;strong&gt;&lt;a href="https://www.pulumi.com/blog/policy-audit-scans-for-stacks/"&gt;Audit Scans for IaC Stacks&lt;/a&gt;&lt;/strong&gt;, you can get an instant compliance baseline on all your existing Pulumi-managed infrastructure without blocking developers or re-deploying thousands of stacks. This is combined with discovery scans of your cloud accounts to give you a single, unified view of every resource, whether managed by Pulumi or not.&lt;/p&gt;
&lt;h3 id="the-solution-to-remediation-at-scale-ai-powered-fixes-with-pulumi-neo"&gt;The Solution to Remediation at Scale: AI-Powered Fixes with Pulumi Neo&lt;/h3&gt;
&lt;p&gt;Visibility creates a new problem: an overwhelming backlog. Manually fixing thousands of issues is an impossible task.&lt;/p&gt;
&lt;p&gt;This is where Pulumi Neo provides a powerful solution.&lt;/p&gt;
&lt;p&gt;Pulumi Neo, our AI platform engineer, is now integrated directly into the Policy Findings hub to automate the most difficult part of the process: the fix itself. From the Issues tab, your teams can now select a group of policy issues, assign them to Neo, and trigger a remediation flow.&lt;/p&gt;
&lt;p&gt;Neo is smart. It will:&lt;/p&gt;
&lt;ol&gt;
&lt;li&gt;Analyze the non-compliant resources and the policies they are violating.&lt;/li&gt;
&lt;li&gt;Understand the required configuration to make them compliant.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Generate a pull request with the exact code changes needed to fix the issues.&lt;/strong&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;p&gt;Most powerfully, for an unmanaged resource discovered via a cloud scan, Neo will generate the code to &lt;strong&gt;import the resource into a Pulumi stack and apply the fix.&lt;/strong&gt; This &amp;ldquo;Import and Fix&amp;rdquo; workflow transforms unmanaged infrastructure into governed, compliant code, turning a task that could take a developer hours into a simple review-and-merge process. Your teams can finally burn down their issue backlog and achieve a state of continuous compliance.&lt;/p&gt;
&lt;h2 id="part-2-stay-clean---the-universal-guardrail-for-humans-and-ai"&gt;Part 2: Stay Clean - The Universal Guardrail for Humans and AI&lt;/h2&gt;
&lt;p&gt;Once you begin cleaning your environment, the next challenge is to &lt;em&gt;stay&lt;/em&gt; clean. As AI accelerates infrastructure creation, you need robust guardrails to ensure it doesn&amp;rsquo;t also accelerate the creation of security risks.&lt;/p&gt;
&lt;p&gt;The answer is &lt;strong&gt;Policy as &lt;em&gt;Real&lt;/em&gt; Code.&lt;/strong&gt; Pulumi Policies uses general-purpose languages like TypeScript and Python to create sophisticated guardrails that govern every change. To help you establish these controls immediately, we are launching a new suite of pre-built compliance packs authored and maintained by Pulumi experts.&lt;/p&gt;
&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th&gt;Framework&lt;/th&gt;
&lt;th style="text-align: center"&gt;AWS&lt;/th&gt;
&lt;th style="text-align: center"&gt;Azure&lt;/th&gt;
&lt;th style="text-align: center"&gt;Google Cloud&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;CIS Controls v8.1&lt;/strong&gt;&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;NIST SP 800-53 Rev. 5&lt;/strong&gt;&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;td style="text-align: center"&gt;&lt;/td&gt;
&lt;td style="text-align: center"&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;PCI DSS v4.0&lt;/strong&gt;&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;td style="text-align: center"&gt;&lt;/td&gt;
&lt;td style="text-align: center"&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;HITRUST CSF v11.5&lt;/strong&gt;&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;Pulumi Best Practices&lt;/strong&gt;&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;td style="text-align: center"&gt;✅&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;These policies act as a universal guardrail for your entire organization by blocking non-compliant changes during &lt;code&gt;pulumi up&lt;/code&gt;, before they are ever created. Learn more about our &lt;a href="https://www.pulumi.com/blog/policy-packs-cis-nist-pci/"&gt;compliance packs&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;And now, you can even use &lt;strong&gt;Neo to author new policies&lt;/strong&gt;. You can ask Neo in plain English to &amp;ldquo;create a policy that prevents overly permissive IAM roles,&amp;rdquo; and it will generate the code for you. This creates a powerful, dynamic governance system where AI can help you build the very rules that then govern its own actions. If you then ask Neo to create an admin role, the deployment will be blocked by the policy it just helped write. This is how we make AI safe to go fast.&lt;/p&gt;
&lt;h2 id="a-new-era-of-collaboration"&gt;A New Era of Collaboration&lt;/h2&gt;
&lt;p&gt;This &amp;ldquo;Get Clean, Stay Clean&amp;rdquo; lifecycle transforms how teams work together:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Platform Teams&lt;/strong&gt; lead prevention by building real-code guardrails, proving their value with measurable compliance scores.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Security Teams&lt;/strong&gt; drive the &amp;ldquo;Get Clean&amp;rdquo; process with continuous, non-blocking audit scans and use the Findings hub to manage compliance without slowing development.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="governance-that-accelerates-you"&gt;Governance That Accelerates You&lt;/h2&gt;
&lt;p&gt;The age of AI-driven development demands AI-powered governance. With this new generation of Pulumi Policies, we are providing the essential infrastructure for platform engineering teams to not just survive, but thrive. You can finally build preventative guardrails that developers love, secure your cloud at scale, and transform governance from a blocker into a business accelerator. Learn more about &lt;a href="https://www.pulumi.com/product/insights-governance/"&gt;Pulumi Insights &amp;amp; Governance capabilities&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;This powerful new experience is available today. Navigate to the &lt;strong&gt;Policies&lt;/strong&gt; and &lt;strong&gt;Policy Findings&lt;/strong&gt; tab in Pulumi Cloud to explore your new governance capabilities and meet the future of platform engineering.&lt;/p&gt;
&lt;h2 id="try-pulumi-policies"&gt;Try Pulumi Policies&lt;/h2&gt;
&lt;p&gt;&lt;strong&gt;Ready to try these features?&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://app.pulumi.com/signup"&gt;Sign up for Pulumi Cloud&lt;/a&gt; and start a Neo task&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.pulumi.com/docs/insights/policy/get-started/"&gt;Read the Get Started guide&lt;/a&gt; to set up and apply a policy group to stacks and clouds.&lt;/li&gt;
&lt;li&gt;&lt;a href="https://slack.pulumi.com/"&gt;Join the Community Slack&lt;/a&gt; to share feedback on the new features&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;For complete documentation, visit our &lt;a href="https://www.pulumi.com/docs/insights/policy/"&gt;Policies documentation&lt;/a&gt;.&lt;/p&gt;</description><author>Craig Symonds</author><author>Tyler D</author><author>Arun Loganathan</author><category>policy-as-code</category><category>features</category><category>compliance</category><category>governance</category><category>pulumi-neo</category><category>ai</category><category>platform-engineering</category></item><item><title>Who moved my menus?</title><link>https://www.pulumi.com/blog/cloud-left-nav/</link><pubDate>Mon, 15 Sep 2025 10:00:00 -0700</pubDate><guid>https://www.pulumi.com/blog/cloud-left-nav/</guid><description>
&lt;img src="https://www.pulumi.com/images/generated/blog/cloud-left-nav/index.png" /&gt;
&lt;p&gt;We’re excited to share a new update to Pulumi Cloud: a redesigned left-hand navigation that makes it faster and easier to find what you need. With this update, the most common workflows are now front and center, while related features are grouped in a way that better reflects how teams actually use Pulumi Cloud every day.&lt;/p&gt;
&lt;p&gt;This change is all about helping you spend less time clicking around and more time building, deploying, and managing your cloud infrastructure.&lt;/p&gt;
&lt;h2 id="faster-access-to-what-you-use-most"&gt;Faster Access to What You Use Most&lt;/h2&gt;
&lt;p&gt;We’ve moved the most commonly used sections of Pulumi Cloud like &lt;strong&gt;Stacks, Environments, and Resources&lt;/strong&gt; into the top-level navigation. That means the things you use most are always just one click away.&lt;/p&gt;
&lt;p&gt;&lt;img src="left-nav.png" alt="Left Navigation"&gt;&lt;/p&gt;
&lt;p&gt;The redesigned navigation groups related features into four clear categories, each designed around the way infrastructure teams work:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Platform&lt;/strong&gt; includes all the IDP services that help you set up your infrastructure: defining services, configuring components and managing templates.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Management&lt;/strong&gt; groups together all the tools you use to configure the tools you use daily like: accounts, policies and deployments. It also includes the tools used to monitor the interactions with the Pulumi platform like: approvals and audit logs.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Settings&lt;/strong&gt; lists the tools you use to configure how the Pulumi platform needs to work for your organization including: billing and usage, access management and integrations.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;These categories help to reduce clutter and give each section a clear purpose, so you always know where to go.&lt;/p&gt;
&lt;h2 id="whats-changed-and-where-to-find-it"&gt;What’s Changed and Where to Find It&lt;/h2&gt;
&lt;p&gt;Several important updates make the new navigation cleaner and more intuitive:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Deployment Runners merged into Deployments&lt;/strong&gt;: Deployment Runners are now integrated into the Deployments section. This unifies deployment tasks and their configuration in one place.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;New Project integrated into Projects/Stacks&lt;/strong&gt;: Instead of a separate menu entry, creating a new project is now handled by using the New Project button within the main Stacks page, reducing clutter and consolidating related actions.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Import integrated into Projects/Stacks&lt;/strong&gt;: Importing unmanaged resources into stacks can now be initiated directly from the main Stacks page by selecting the Import button, better aligning aligning it with the overall stack management.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Customer Managed Keys integrated into Organization&lt;/strong&gt;: As an organization-wide setting, Customer Managed Keys are now located under the Organization tab.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;These changes reduce redundant items, consolidate related tasks, and surface the most important workflows where you expect them.&lt;/p&gt;
&lt;h2 id="cleaner-organization-less-clutter"&gt;Cleaner Organization, Less Clutter&lt;/h2&gt;
&lt;p&gt;By consolidating related features, the left navigation UI is easier to scan and navigate. Infrastructure management tools like Stacks, Resources, Deployments and Policy Findings are grouped together, while IDP, platform configuration and organizational settings are streamlined under their own sections. The result is a navigation that mirrors how infrastructure teams actually work.&lt;/p&gt;
&lt;h2 id="built-for-teams-at-scale"&gt;Built for Teams at Scale&lt;/h2&gt;
&lt;p&gt;Pulumi Cloud is used by teams managing everything from a handful of resources to thousands across multiple clouds and environments. This navigation update scales with you, helping teams quickly navigate between the services they need without slowing down as usage grows.&lt;/p&gt;
&lt;p&gt;At Pulumi, we believe infrastructure as code should accelerate, not slow down, how teams deliver in the cloud. By simplifying navigation and surfacing the most important actions, Pulumi Cloud becomes an even faster, more reliable place to manage your infrastructure.&lt;/p&gt;
&lt;p&gt;This update is another step toward our mission: enabling teams everywhere to build, deploy, and manage cloud infrastructure with greater speed, confidence, and joy.&lt;/p&gt;
&lt;h2 id="try-it-out"&gt;Try It Out&lt;/h2&gt;
&lt;p&gt;The new navigation is available today for all Pulumi Cloud users. Sign in to &lt;a href="https://app.pulumi.com/signin"&gt;Pulumi Cloud&lt;/a&gt; and experience the streamlined workflow for yourself. For more details, check out the &lt;a href="https://www.pulumi.com/docs/"&gt;docs&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;We’d love your feedback as we continue to make Pulumi Cloud the best platform for modern infrastructure as code.&lt;/p&gt;</description><author>Craig Symonds</author><category>cloud-computing</category></item><item><title>Announcing Public Preview of Insights Account Discovery</title><link>https://www.pulumi.com/blog/insights-cloud-account-discovery/</link><pubDate>Mon, 02 Dec 2024 09:10:00 +0000</pubDate><guid>https://www.pulumi.com/blog/insights-cloud-account-discovery/</guid><description>
&lt;img src="https://www.pulumi.com/images/generated/blog/insights-cloud-account-discovery/index.png" /&gt;
&lt;div class="note note-info"&gt;
&lt;div class="icon-and-line"&gt;
&lt;svg xmlns="http://www.w3.org/2000/svg" class="ph-icon ph-icon--fill" fill="currentColor" aria-hidden="true" focusable="false"&gt;&lt;use href="https://www.pulumi.com/icons/sprite.fd29ca76b1ea49dbd3f6703cc46ae6138b0ed98cabf8d2c60a23a474880f964d.svg#p-info-fill"/&gt;&lt;/svg&gt;
&lt;div class="line"&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;div class="content"&gt;Note: This post discusses Pulumi Copilot, which Pulumi Neo has replaced. &lt;a href="https://www.pulumi.com/docs/ai/"&gt;Learn about Neo →&lt;/a&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;p&gt;Enterprise cloud infrastructures are complex environments that are evolved over time and made up of thousands of different kinds of resources. Enabling customers to wrap their arms around this complexity and get a complete understanding of the scope and structure is the goal of the Pulumi Insights 2.0 product.&lt;/p&gt;
&lt;div style="position: relative; padding-bottom: 56.25%; height: 0; overflow: hidden;"&gt;
&lt;iframe allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share; fullscreen" loading="eager" referrerpolicy="strict-origin-when-cross-origin" src="https://www.youtube.com/embed/fa7s5_oYnaM?rel=0?autoplay=0&amp;amp;controls=1&amp;amp;end=0&amp;amp;loop=0&amp;amp;mute=0&amp;amp;start=0" style="position: absolute; top: 0; left: 0; width: 100%; height: 100%; border:0;" title="YouTube video"&gt;&lt;/iframe&gt;
&lt;/div&gt;
&lt;p&gt;We are excited to announce the public preview of Insights Account Discovery that makes it easy for you to gain visibility of your entire infrastructure regardless of how it is managed. Insights provides the tools to find, group and drill into your resources as needed to make sense of all aspects of your cloud infrastructure. In addition Copilot AI gives you the ability to get answers about your infrastructure that can be challenging to get in other ways, dramatically simplifying the work needed to move your infrastructure forward.&lt;/p&gt;
&lt;h3 id="account-management"&gt;Account Management&lt;/h3&gt;
&lt;p&gt;To get started, Insights Account Discovery provides a simple UI approach to setting up all of your infrastructure accounts to be scanned and read into the Insights supergraph. Once discovered, all of your infrastructure resources can then be seen in the Resource Explorer and accessed by Pulumi Copilot and Resource Search, providing you the tools needed to deliver on your strategic infrastructure goals.&lt;/p&gt;
&lt;p&gt;Account Discovery starts with the new Accounts page to provide a list of all accounts created along with the current status of the latest account scans. The Accounts page is the single place to go to manage all aspects of the Insights Account Discovery process.&lt;/p&gt;
&lt;div class="my-4"&gt;
&lt;video class="flex outline-none rounded-lg w-full" title="Accounts"
autoplay muted playsinline
loop &gt;
&lt;source src="accounts.mp4" /&gt;
&lt;/video&gt;
&lt;/div&gt;
&lt;h3 id="account-creation"&gt;Account Creation&lt;/h3&gt;
&lt;p&gt;From this page you can create new Accounts to provide the configuration and credentials needed for Insights to regularly scan and manage your infrastructure. Once you create a new top level Account, Insights will automatically create child accounts, based on the underlying platform model, for each group you enabled. These child accounts enable you to control the discovery behavior for each group separately. For example, AWS enables you to divide you infrastructure into regions and Insights will create separate child accounts for each region you specify.&lt;/p&gt;
&lt;div class="note note-info"&gt;
&lt;div class="icon-and-line"&gt;
&lt;svg xmlns="http://www.w3.org/2000/svg" class="ph-icon ph-icon--fill" fill="currentColor" aria-hidden="true" focusable="false"&gt;&lt;use href="https://www.pulumi.com/icons/sprite.fd29ca76b1ea49dbd3f6703cc46ae6138b0ed98cabf8d2c60a23a474880f964d.svg#p-info-fill"/&gt;&lt;/svg&gt;
&lt;div class="line"&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;div class="content"&gt;Account Discovery leverages Pulumi ESC to enter and manage the credentials needed for the Discovery process to find and read all of the infrastructure resources. By relying on ESC, Insights aligns with enterprise best practices for creating and handling application secrets.&lt;/div&gt;
&lt;/div&gt;
&lt;div class="my-4"&gt;
&lt;video class="flex outline-none rounded-lg w-full" title="Create Account"
autoplay muted playsinline
loop &gt;
&lt;source src="create-account.mp4" /&gt;
&lt;/video&gt;
&lt;/div&gt;
&lt;h3 id="understanding-your-infrastructure"&gt;Understanding Your Infrastructure&lt;/h3&gt;
&lt;p&gt;Once each of your Accounts have started scanning, your resources will be displayed in the Insights Resources Explorer along with all Infrastructure as Code resources that you have imported. The Resources Explorer and Resources Search enables you to ask questions and factor your resources into logical groupings that significantly improves the process for managing your infrastructure and getting answers to key questions needed for your projects. For example, you can ask the AI Resource Search to &amp;lsquo;Find all public IP addresses&amp;rsquo; and any other question you might have about your infrastructure.&lt;/p&gt;
&lt;div class="my-4"&gt;
&lt;video class="flex outline-none rounded-lg w-full" title="Discovered Resources"
autoplay muted playsinline
loop &gt;
&lt;source src="resources.mp4" /&gt;
&lt;/video&gt;
&lt;/div&gt;
&lt;h3 id="more-to-come"&gt;More to Come&lt;/h3&gt;
&lt;p&gt;We are excited about the potential of Pulumi Insights and are working hard to bring additional capabilities to continue to simplify the experience of managing today&amp;rsquo;s complex cloud environments. Watch for additional features like Pulumi Crossguard Policy support for Discovered resources, along with additional platform support, and more, coming soon.&lt;/p&gt;
&lt;p&gt;Insights Account Discovery is free while in public preview, with per-resource pricing for Team, Enterprise and Business Critical tiers coming in Q1 2025.&lt;/p&gt;
&lt;h3 id="conclusion"&gt;Conclusion&lt;/h3&gt;
&lt;p&gt;The addition of Account Discovery significantly expands the scope of Pulumi Insights. You can now leverage the capabilities of Insights 2.0, not just for your Pulumi IaC managed resources, but for all resources in your infrastructure regardless of how they are managed. With Pulumi Copilot and Resource Search, you are able to gain insights and ask questions about your infrastructure that would otherwise be challenging to answer, saving time and providing the critical information needed.&lt;/p&gt;
&lt;p&gt;For additional information about Pulumi Insights please refer to: &lt;a href="https://www.pulumi.com/product/pulumi-insights/"&gt;Pulumi Insights&lt;/a&gt;&lt;/p&gt;</description><author>Craig Symonds</author><category>insights</category><category>resources</category></item><item><title>Introducing the new Resources view</title><link>https://www.pulumi.com/blog/insights-resources-v2/</link><pubDate>Wed, 02 Oct 2024 14:35:35 -0700</pubDate><guid>https://www.pulumi.com/blog/insights-resources-v2/</guid><description>
&lt;img src="https://www.pulumi.com/images/generated/blog/insights-resources-v2/index.png" /&gt;
&lt;p&gt;Pulumi Insights gives you the tools to stay informed about your cloud infrastructure. Our Resource explorer provides advanced search and filtering too &lt;a href="https://www.pulumi.com/blog/resource-search"&gt;find what you need&lt;/a&gt;. Today, we are excited to release an update that adds new ways to factor your resource data, and share those views with other users in your organization!&lt;/p&gt;
&lt;h3 id="factoring-the-data"&gt;Factoring the Data&lt;/h3&gt;
&lt;p&gt;Being able find and group your resources using different fields and properties is the key to gaining the insights needed to understand the status of your infrastructure and determine any future projects needed. The new Resources view provides several updated tools for doing this factoring.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Groups&lt;/strong&gt; - Resources can be grouped into logical categories, including nested groups. Group resources by properties like stack, modified time, or category to explore your infrastructure from different angles. Relevant aggregations are included for each grouping to help you understand the information at a glance.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Filters&lt;/strong&gt; - Columns provide type-specific filters to narrow your search. Filters work in conjunction with the free-form search bar, giving you the control to build focused views for different aspects of your infrastructure.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Sorting&lt;/strong&gt; - Each column supports sorting, and multi-sort support allows multiple columns to be included in the ordering.&lt;/li&gt;
&lt;/ul&gt;
&lt;div class="my-4"&gt;
&lt;video class="flex outline-none rounded-lg w-full" title="Grouping, Filtering, Sorting"
autoplay muted playsinline
loop &gt;
&lt;source src="grouping-sorting-filtering.mp4" /&gt;
&lt;/video&gt;
&lt;/div&gt;
&lt;h3 id="customizing-columns"&gt;Customizing Columns&lt;/h3&gt;
&lt;p&gt;The updated Resources page enables you to customize the view of your resources by enabling you to control the columns of the table. With the table actions menu you can add and remove columns as well as auto size each of the columns in the table to fit the current content. Like previous versions of the Resources page, this menu also enables you to export the Resources as a CSV file for integration into external tools.&lt;/p&gt;
&lt;div class="my-4"&gt;
&lt;video class="flex outline-none rounded-lg w-full" title="Column Selection"
autoplay muted playsinline
loop &gt;
&lt;source src="column-selection.mp4" /&gt;
&lt;/video&gt;
&lt;/div&gt;
&lt;h3 id="pinning-favorite-views"&gt;Pinning Favorite Views&lt;/h3&gt;
&lt;p&gt;Once you have configured the resources view to provide the insights needed, you can now save that view as a pinned view under the Resource tab in the left navigation panel. These pinned views enable the Resources page to act as a dashboard to the most important views and insights into your infrastructure. The views are also defined in the url for the page which means you can freely copy the url and send it to a colleague, or add the URL to a work tracking system to provide context in the task definition.&lt;/p&gt;
&lt;div class="my-4"&gt;
&lt;video class="flex outline-none rounded-lg w-full" title="Favorites"
autoplay muted playsinline
loop &gt;
&lt;source src="favorites.mp4" /&gt;
&lt;/video&gt;
&lt;/div&gt;
&lt;p&gt;Overall, the new Resources page provides the tools needed to enable you to gain additional insights and track and manage those insights to ensure your infrastructure is delivering on the goals you have set.&lt;/p&gt;</description><author>Craig Symonds</author><category>insights</category><category>resources</category></item><item><title>Introducing Pulumi Insights 2.0</title><link>https://www.pulumi.com/blog/pulumi-insights-2/</link><pubDate>Wed, 18 Sep 2024 08:57:00 +0000</pubDate><guid>https://www.pulumi.com/blog/pulumi-insights-2/</guid><description>
&lt;img src="https://www.pulumi.com/images/generated/blog/pulumi-insights-2/index.png" /&gt;
&lt;div class="note note-info"&gt;
&lt;div class="icon-and-line"&gt;
&lt;svg xmlns="http://www.w3.org/2000/svg" class="ph-icon ph-icon--fill" fill="currentColor" aria-hidden="true" focusable="false"&gt;&lt;use href="https://www.pulumi.com/icons/sprite.fd29ca76b1ea49dbd3f6703cc46ae6138b0ed98cabf8d2c60a23a474880f964d.svg#p-info-fill"/&gt;&lt;/svg&gt;
&lt;div class="line"&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;div class="content"&gt;Note: This post discusses Pulumi Copilot, which Pulumi Neo has replaced. &lt;a href="https://www.pulumi.com/docs/ai/"&gt;Learn about Neo →&lt;/a&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;p&gt;Pulumi Insights 2.0 brings the power of Insights to all of your cloud infrastructure, not just the infrastructure managed by Pulumi IaC. Insights 2.0 also brings an exciting new suite of tools that make it easy to discover your entire infrastructure, assess security and efficiency of it, and bring it under management of IaC for best-in-class infrastructure management practices.&lt;/p&gt;
&lt;p&gt;Today we are outlining our vision for Pulumi Insights 2.0, and the features that are part of Insights 2.0 will be released over the coming weeks and months. &lt;a href="https://www.pulumi.com/docs/insights/discovery/get-started/"&gt;Get started with Pulumi Insights 2.0&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Since the initial launch of Pulumi Insights, customers have used these tools to gain valuable awareness into their IaC platform resources through the flexibility of &lt;a href="https://www.pulumi.com/blog/resource-search/"&gt;Resource Search&lt;/a&gt; and the power of &lt;a href="https://www.pulumi.com/crossguard/"&gt;Pulumi CrossGuard&lt;/a&gt;. Insights 2.0 builds on this previous generation of tools to provide a range of new capabilities:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Bring visibility to your entire infrastructure by enabling you to scan and import all of your resources&lt;/li&gt;
&lt;li&gt;Add rich new visual explorers, structured graphs and dashboards for understanding and managing your entire infrastructure&lt;/li&gt;
&lt;li&gt;Extends Pulumi CrossGuard to provide direct remediation of discovered policy violations inside the Pulumi Cloud&lt;/li&gt;
&lt;li&gt;Integrates Pulumi IaC to make it easy to incrementally bring your infrastructure under management with Pulumi IaC in just a few clicks&lt;/li&gt;
&lt;li&gt;Brings Pulumi Copilot to your entire infrastructure for intelligent insight discovery and analysis&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="resources-20"&gt;Resources 2.0&lt;/h2&gt;
&lt;p&gt;The updated Resources page provides a customizable experience for grouping, filtering, sorting and visualizing your resources to help you manage scope and discover new insights about your infrastructure.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Grouping:&lt;/strong&gt; To group by a particular column, drag and drop the column header to the grouping control in the top left of the grid. You can group by multiple columns and can control the order of the grouping by reordering them in the grouping control. Grouping enables you to factor your resources in different ways to help you understand the scope and uncover issues within your infrastructure.&lt;/p&gt;
&lt;div class="my-4"&gt;
&lt;video class="flex outline-none rounded-lg w-full" title="Grouping"
autoplay muted playsinline
loop &gt;
&lt;source src="grouping.mp4" /&gt;
&lt;/video&gt;
&lt;/div&gt;
&lt;p&gt;&lt;strong&gt;Filtering:&lt;/strong&gt; Adding filters to each column can be done by selecting the filter icon in the column header. A filter dialog will be displayed based on the type of data present in the column. Adding a column filter will add the specific filter to the Resource Search query enabling you to use the grid as a form of query builder.&lt;/p&gt;
&lt;p&gt;&lt;img src="filtering.png" alt="Filtering"&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Sorting:&lt;/strong&gt; To sort your resources by a particular column, click once on the column header to sort in ascending order and click a second time to sort in descending order.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Column Selection:&lt;/strong&gt; To add or remove columns from the grid, select the ‘Choose Columns’ menu item from the column menu selector. This presents a pop up to allow you to add, remove or rearrange the order of columns in the grid.&lt;/p&gt;
&lt;p&gt;&lt;img src="choose-columns.png" alt="Choose Columns"&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Column Resize:&lt;/strong&gt; You can resize the width of a column by clicking and dragging on the column boundary line on the right side of the column header. To automatically resize the column to the width of the widest cell contents, double click on the boundary line.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Copy Contents:&lt;/strong&gt; You can copy the contents of a cell to the clipboard by right clicking on the cell and selecting Copy. This is particularly useful for resource values you need to use in other contexts like the Name or URN.&lt;/p&gt;
&lt;h2 id="policy-violations"&gt;Policy Violations&lt;/h2&gt;
&lt;p&gt;The Policy Violations page provides a comprehensive view of all policy violations across your organization, helping you maintain visibility and control over your infrastructure. See the &lt;a href="https://www.pulumi.com/blog/centralized-policy-violations/"&gt;Policy Violations&lt;/a&gt; blog post for more information.&lt;/p&gt;
&lt;h2 id="resource-structure-graph"&gt;Resource Structure Graph&lt;/h2&gt;
&lt;p&gt;The new resource structure graph provides a visual representation of the relationships for a selected resource. This provides the additional context needed to understand the structure around the resource and what actions might need to be taken.&lt;/p&gt;
&lt;p&gt;Within this view you can navigate the relationships by clicking on the related resources. When a resource is clicked, the Resource Detail view navigates to the selected resource to give you the details needed to understand that context.&lt;/p&gt;
&lt;p&gt;Policy violations are indicated on the Resource Structure graph to quickly highlight when an insight has been detected and what related nodes are affected.&lt;/p&gt;
&lt;p&gt;&lt;img src="graph.png" alt="Resources Graph"&gt;&lt;/p&gt;
&lt;h2 id="goto-definition"&gt;Goto Definition&lt;/h2&gt;
&lt;p&gt;For any resource that is Pulumi IaC managed, the Resource Details page will contain a link to the file and line of code in your source code provider that defines the given resource.&lt;/p&gt;
&lt;p&gt;&lt;img src="goto-definition-link.png" alt="Goto Definition Link"&gt;&lt;/p&gt;
&lt;p&gt;Selecting this link will take you to the file and line making it easy for you to quickly see and edit the IaC code for the given resource.&lt;/p&gt;
&lt;p&gt;&lt;img src="goto-definition-code.png" alt="Goto Definition Code"&gt;&lt;/p&gt;
&lt;h2 id="user-customizable-dashboard"&gt;User Customizable Dashboard&lt;/h2&gt;
&lt;p&gt;Pulumi Cloud will provide a rich, user customizable dashboard that enables you to define views of any aspect of your infrastructure. This provides a powerful overview of your infrastructure and lets you easily track progress of any project.&lt;/p&gt;
&lt;p&gt;The dashboard supports defining multiple pages so you can create separate dashboards for each application, each department, or any configuration that maps to your configuration.&lt;/p&gt;
&lt;p&gt;Each dashboard page enables you to add, remove, rearrange and create new cards. Each new card can be customized to show the aggregate results of a resource field or property including related policy violation fields. The card can be configured to use a variety of different chart and graph visualizations that best suit the associated data.&lt;/p&gt;
&lt;p&gt;&lt;img src="dashboard.png" alt="Dashboard"&gt;&lt;/p&gt;
&lt;h2 id="infrastructure-account-scanning"&gt;Infrastructure Account Scanning&lt;/h2&gt;
&lt;p&gt;We are excited to introduce Infrastructure Account Scanning (IAS). IAS fundamentally transforms Pulumi Cloud into an Intelligent Cloud Management platform that brings all of the Pulumi Insights capabilities to your entire infrastructure. With IAS, Pulumi can scan your entire infrastructure, even resources that are not IaC managed. This enables you to leverage all of the new tools like, the Resource Explorer with Resource Structure Graphs, Pulumi CrossGruard with Auto Remediation and the Policy Violations Explorer, and the User Customizable Dashboard to manage all of your cloud resources.&lt;/p&gt;
&lt;p&gt;IAS leverages the rich ecosystem of Pulumi Platform Providers to discover and read your resources independently of whether they have been moved to IaC.&lt;/p&gt;
&lt;p&gt;With IAS Account management you can quickly configure how Pulumi Cloud is enabled to discover new or changed resources keeping your customized Resources, Policy Violations and Dashboard views up to date with your physical infrastructure.&lt;/p&gt;
&lt;p&gt;&lt;img src="account-scan.png" alt="Account Scanning"&gt;&lt;/p&gt;
&lt;h2 id="auto-remediation"&gt;Auto Remediation&lt;/h2&gt;
&lt;p&gt;Insights 2.0 provides you the tools needed to understand your infrastructure and uncover issues to ensure you can maintain a secure and efficient cloud platform. In addition to these tools, Pulumi Cloud will also give you the context and tools needed to remediate the issues.&lt;/p&gt;
&lt;p&gt;When a policy violation occurs for a given resource and that policy is an &lt;a href="https://www.pulumi.com/blog/remediation-policies/"&gt;Auto Remediation&lt;/a&gt; policy, a ‘Remediate’ button will be displayed in the Resource Details page. When selected, the Remediate button will run the remediation and show a diff of the infrastructure changes that will be applied in order to remediate targeted insight. If approved, Pulumi Cloud will apply the changes defined by the diff to your infrastructure using the associated Pulumi Providers.&lt;/p&gt;
&lt;p&gt;Any change made through the Remediation flow will be tracked and auditable using the Pulumi Audit tools to give you confidence and tracking of the changes made to your infrastructure. In addition, this Remediation flow will provide a warning if the Resource is IaC managed as this change would cause drift with the underlying IaC code. For IaC managed resources it is recommended that you use the new Goto Definition feature to jump to the IaC code for the resource to apply the necessary remediation in the code.&lt;/p&gt;
&lt;p&gt;&lt;img src="remediation.png" alt="Remediation"&gt;&lt;/p&gt;
&lt;h2 id="cli-resource-query-import"&gt;CLI Resource Query Import&lt;/h2&gt;
&lt;p&gt;Being able to browse your entire infrastructure and discover new opportunities to move your platform forward enables you to understand and build plans to move your infrastructure forward. However, leveraging Pulumi IaC for managing your resources gives you the best in class tools to ensure your infrastructure is delivering on your strategic goals. Insights 2.0 significantly simplifies the process of migrating your resources to IaC management by making it easy to find the resources needed and create resource queries to define those groups.&lt;/p&gt;
&lt;p&gt;The Pulumi cli import command will now support passing a Resource Query as a parameter, simplifying the process of finding, grouping and importing the resources you want. The results of this query will be used to get the resource IDs and types needed to be able to import the resources into your IaC program. The result of the command is the source code needed to construct each of the resources defined by the query.&lt;/p&gt;
&lt;div class="highlight"&gt;&lt;pre tabindex="0" class="chroma"&gt;&lt;code class="language-shell" data-lang="shell"&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;pulumi import &lt;span class="se"&gt;\-&lt;/span&gt;q ‘.volumeType:Standard’
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;...
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;import * as pulumi from &lt;span class="s2"&gt;&amp;#34;@pulumi/pulumi&amp;#34;&lt;/span&gt;&lt;span class="p"&gt;;&lt;/span&gt;
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;import * as aws_native from &lt;span class="s2"&gt;&amp;#34;@pulumi/aws-native&amp;#34;&lt;/span&gt;&lt;span class="p"&gt;;&lt;/span&gt;
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;const &lt;span class="nv"&gt;EC2Volumevol0a789ea1874bfac61&lt;/span&gt; &lt;span class="o"&gt;=&lt;/span&gt; new aws_native.ec2.Volume&lt;span class="o"&gt;(&lt;/span&gt;&lt;span class="s2"&gt;&amp;#34;EC2Volumevol0a789ea1874bfac61&amp;#34;&lt;/span&gt;, &lt;span class="o"&gt;{&lt;/span&gt;
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; autoEnableIo: true,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; availabilityZone: &lt;span class="s2"&gt;&amp;#34;us-west-2b&amp;#34;&lt;/span&gt;,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; encrypted: false,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; multiAttachEnabled: false,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; size: 8,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; snapshotId: &lt;span class="s2"&gt;&amp;#34;snap-0d017523dfd31e801&amp;#34;&lt;/span&gt;,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; tags: &lt;span class="o"&gt;[]&lt;/span&gt;,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; volumeType: &lt;span class="s2"&gt;&amp;#34;standard&amp;#34;&lt;/span&gt;,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;&lt;span class="o"&gt;}&lt;/span&gt;, &lt;span class="o"&gt;{&lt;/span&gt;
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt; protect: true,
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;&lt;span class="o"&gt;})&lt;/span&gt;&lt;span class="p"&gt;;&lt;/span&gt;
&lt;/span&gt;&lt;/span&gt;&lt;span class="line"&gt;&lt;span class="cl"&gt;...
&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/div&gt;&lt;h2 id="visual-resource-import"&gt;Visual Resource Import&lt;/h2&gt;
&lt;p&gt;In addition to the powerful command line tools for simplifying the process of importing your resources into Pulumi IaC, Insights 2.0 will provide an integrated UI workflow for finding and importing resources into IaC. The workflow leverages the rich Insights explorer tools for finding and grouping your resources, then enabling you to automatically create a PR with the generated IaC code for the resource group, all with a click of a button.&lt;/p&gt;
&lt;h2 id="conclusion"&gt;Conclusion&lt;/h2&gt;
&lt;p&gt;Insights 2.0 provides you the set of tools needed to understand the chaos of modern enterprise clouds and to bring that chaos under control. The ability to scan your entire infrastructure enables you to leverage the rich visualization, remediation, and IaC migrations tools for all aspects of your infrastructure and gives you the insights needed to enable you to deliver on your strategic objectives.&lt;/p&gt;
&lt;p&gt;&lt;a href="https://www.pulumi.com/docs/insights/discovery/get-started/"&gt;Get started with Pulumi Insights 2.0&lt;/a&gt;.&lt;/p&gt;</description><author>Craig Symonds</author><category>insights</category></item></channel></rss>