OrganizationFeatures
OrganizationFeatures represents paid features for organizations.
Properties
auditLogsEnabledboolean requiredWhether audit logs are enabled for the organization.hasTerraformModulesboolean optionalWhether the organization has any Terraform modules in the registry. Data-driven (not plan-gated): drives the Terraform Modules console nav entry so customers can manage existing modules even on plans without publishing.crossGuardEnabledboolean requiredWhether CrossGuard policy enforcement is enabled.webhooksEnabledboolean requiredWhether webhooks are enabled for the organization.integrationAssistantEnabledboolean requiredWhether the integration assistant is enabled.aleEnabledboolean requiredWhether audit log export (ALE) is enabled.deployEnabledboolean requiredWhether Pulumi Deployments is enabled.scimEnabledboolean requiredWhether SCIM provisioning is enabled.resourceSearchEnabledboolean requiredWhether resource search is enabled.resourceExportEnabledboolean requiredWhether resource export is enabled.propertySearchUIEnabledboolean requiredDeprecated: property search is included with resource search for every organization, so this no longer gates any behavior.nlpSearchEnabledboolean requiredWhether natural language search is enabled.customTemplatesEnabledboolean requiredWhether custom templates are enabled.restoreStacksEnabledboolean requiredWhether restoring deleted stacks is enabled.environmentsEnabledboolean requiredWhether Pulumi ESC environments are enabled.environmentRevisionTagsEnabledboolean requiredWhether environment revision tags are enabled.legacyDeploymentsOrgTokenboolean requiredWhether the organization uses a legacy org token for deployments.gitHubEnterpriseIntegrationEnabledboolean requiredWhether GitHub Enterprise integration is enabled.gitHubEnterpriseIndividualAuthEnabledboolean optionalDeprecated. Per-user (individual) GitHub Enterprise authentication is now a per-installation setting; no longer populated.agentPoolRegistrationEnabledboolean requiredWhether agent pool registration is enabled for self-hosted deployments.dashboardOnboardingUIEnabledboolean optionalDeprecated. The dashboard onboarding prompt UI has been removed; no longer populated (always false).driftDetectionEnabledboolean requiredWhether drift detection is enabled.selfHostedDeploymentsEnabledboolean requiredWhether self-hosted deployment agents are enabled.auditLogUIFilteringEnabledboolean requiredWhether audit log UI filtering is enabled.dependencyCachingEnabledboolean requiredWhether dependency caching for deployments is enabled.environmentsRestoreEnabledboolean requiredWhether restoring deleted environments is enabled.pangeaAccountsScanPageEnabledboolean requiredWhether the Pangea accounts scan page is enabled.customRolesEnabledboolean requiredWhether custom RBAC roles are enabled.usersCustomRolesEnabledboolean optionalWhether assigning custom RBAC roles to individual users is enabled.environmentSecretRotationEnabledboolean requiredWhether environment secret rotation is enabled.insightsMonetizationEnabledboolean requiredWhether Insights monetization features are enabled.selfServeIDPRemovalboolean requiredWhether self-serve IDP removal is enabled.iacCloudImportEnabledboolean requiredWhether IaC cloud import is enabled.bringYourOwnKeyEnabledboolean requiredWhether bring-your-own-key encryption is enabled.approvalsEnabledboolean requiredWhether change request approvals are enabled.escOnboardingEnabledboolean requiredWhether ESC onboarding is enabled.escOnboardingV2Enabledboolean requiredWhether ESC onboarding v2 is enabled.escEditorRevampEnabledboolean requiredWhether the ESC editor revamp is enabled.escOnboardingAzureOAuthClientEnabledboolean requiredWhether the Azure OAuth client for ESC onboarding is enabled.escOnboardingGcpOAuthClientEnabledboolean requiredWhether the GCP OAuth client for ESC onboarding is enabled.policyManagementV2Enabledboolean requiredWhether policy management v2 is enabled.policyIssueManagementEnabledboolean requiredWhether policy issue management is enabled.aiAgentsEnabledboolean requiredWhether AI agents (Pulumi Copilot) are enabled.themingEnabledboolean requiredWhether UI theming is enabled.customRoleConditionboolean requiredWhether custom role conditions are enabled.neoTaskSharingEnabledboolean requiredWhether Copilot task sharing is enabled.ghAppDetailedDiffEnabledboolean requiredWhether the GitHub App detailed diff view is enabled.neoServerSideApprovalsEnabledboolean optionalDeprecated. Always true.neoPlanModeEnabledboolean optionalDeprecated. Always true.neoCustomRolesEnabledboolean requiredWhether starting Neo tasks with an assumed RBAC role is enabled.getStartedOnboardEnabledboolean optionalDeprecated. The getting-started onboarding flow is enabled for everyone; no longer populated (always false).neoReadOnlyEnabledboolean optionalDeprecated. Always true.discoveredStacksEnabledboolean requiredWhether discovered stacks are enabled.agentIntegrationCatalogEnabledboolean requiredWhether the agent integration catalog is enabled.agentScheduledTasksEnabledboolean requiredWhether agent automations are enabled.aiReviewCodeAccessEnabledboolean optionalDeprecated. The legacy per-stack code-access-for-AI-reviews setting has been removed; no longer populated (always false).neoCodeReviewsEnabledboolean optionalWhether agentic Neo Code Reviews (a single agentic review per pull request, replacing the legacy per-stack AI preview summaries) are enabled.customVCSEnabledboolean requiredWhether custom VCS integrations are enabled.bitbucketVCSEnabledboolean requiredWhether Bitbucket VCS integration is enabled.insightsAutoPolicyPacksEnabledboolean requiredWhether the Insights auto policy packs experience (including the bulk account discover wizard) is enabled.fixDriftWithNeoEnabledboolean requiredWhether fixing drift with Neo is enabled.cliIntegrationCatalogEnabledboolean requiredWhether the CLI integration catalog is enabled.serviceBackedConfigEnabledboolean requiredWhether service-backed stack config is enabled.universalSearchEnabledboolean optionalWhether universal search is enabled.driftRemediationEnabledboolean optionalWhether drift remediation (auto-remediate via pulumi up –refresh) is enabled.expandedPolicyEnforcementLevelsEnabledboolean optionalWhether expanded policy enforcement levels (including the Remediate level) are enabled.machineTokensEnabledboolean optionalWhether machine tokens (organization access tokens) are enabled.samlSsoEnabledboolean optionalWhether SAML SSO configuration is enabled.teamMemberRoleManagementEnabledboolean optionalWhether team member role management (assigning custom roles per team member) is enabled.teamsEnabledboolean optionalWhether team management (creating and assigning teams) is enabled.neoTokenMeteringEnabledboolean optionalDeprecated. Matches aiAgentsEnabled.tagBasedDeploymentTriggersEnabledboolean optionalWhether tag-based deployment triggers are enabled.notificationCenterEnabledboolean optionalWhether the notification center (in-dashboard notification bell and inbox) is enabled.deploymentOidcSettingsEnabledboolean optionalWhether the Deployments OIDC settings UI is shown.neoUsageLimitsEnabledboolean optionalWhether org-configurable Neo usage limits (monthly dollar caps) are enabled.unlinkedGitHubAppRecoveryEnabledboolean optionalDeprecated. Unlinked GitHub App installation recovery is now always enabled; no longer populated.accessTokenExpiryPolicyEnabledboolean optionalWhether the per-org access token expiry policy (admin-configurable maximum lifetime for personal, organization, and team access tokens) is enabled.neoByokEnabledboolean requiredWhether Neo BYOK (bring-your-own-key) model provider configuration is enabled.neoAgentTaskRbacEnforcementEnabledboolean optionalWhether the create-and-manage-Neo-tasks permission is enforced on Neo task creation for the organization (rollout flag). While unset the permission is evaluated in shadow mode only and denials do not block.linkExpressCheckoutEnabledboolean optionalWhether one-click Link express checkout is enabled for adding a payment method.