1. Registry
  2. Packages
  3. Cloudflare Provider
  4. API Docs
  5. EmailSecurityAllowPolicy
Viewing docs for Cloudflare v6.21.0
published on Thursday, Sep 17, 2026 by Pulumi
cloudflare logo cloudflare logo
Viewing docs for Cloudflare v6.21.0
published on Thursday, Sep 17, 2026 by Pulumi

    Accepted Permissions

    • Cloud Email Security: Read
    • Cloud Email Security: Write

    Example Usage

    import * as pulumi from "@pulumi/pulumi";
    import * as cloudflare from "@pulumi/cloudflare";
    
    const exampleEmailSecurityAllowPolicy = new cloudflare.EmailSecurityAllowPolicy("example_email_security_allow_policy", {
        accountId: "023e105f4ecef8ad9ca31a8372d0c353",
        isAcceptableSender: false,
        isExemptRecipient: false,
        isRegex: false,
        isTrustedSender: true,
        pattern: "test@example.com",
        patternType: "EMAIL",
        verifySender: true,
        comments: "Trust all messages send from test@example.com",
        isRecipient: false,
        isSender: true,
        isSpoof: false,
    });
    
    import pulumi
    import pulumi_cloudflare as cloudflare
    
    example_email_security_allow_policy = cloudflare.EmailSecurityAllowPolicy("example_email_security_allow_policy",
        account_id="023e105f4ecef8ad9ca31a8372d0c353",
        is_acceptable_sender=False,
        is_exempt_recipient=False,
        is_regex=False,
        is_trusted_sender=True,
        pattern="test@example.com",
        pattern_type="EMAIL",
        verify_sender=True,
        comments="Trust all messages send from test@example.com",
        is_recipient=False,
        is_sender=True,
        is_spoof=False)
    
    package main
    
    import (
    	"github.com/pulumi/pulumi-cloudflare/sdk/v6/go/cloudflare"
    	"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
    )
    
    func main() {
    	pulumi.Run(func(ctx *pulumi.Context) error {
    		_, err := cloudflare.NewEmailSecurityAllowPolicy(ctx, "example_email_security_allow_policy", &cloudflare.EmailSecurityAllowPolicyArgs{
    			AccountId:          pulumi.String("023e105f4ecef8ad9ca31a8372d0c353"),
    			IsAcceptableSender: pulumi.Bool(false),
    			IsExemptRecipient:  pulumi.Bool(false),
    			IsRegex:            pulumi.Bool(false),
    			IsTrustedSender:    pulumi.Bool(true),
    			Pattern:            pulumi.String("test@example.com"),
    			PatternType:        pulumi.String("EMAIL"),
    			VerifySender:       pulumi.Bool(true),
    			Comments:           pulumi.String("Trust all messages send from test@example.com"),
    			IsRecipient:        pulumi.Bool(false),
    			IsSender:           pulumi.Bool(true),
    			IsSpoof:            pulumi.Bool(false),
    		})
    		if err != nil {
    			return err
    		}
    		return nil
    	})
    }
    
    using System.Collections.Generic;
    using System.Linq;
    using Pulumi;
    using Cloudflare = Pulumi.Cloudflare;
    
    return await Deployment.RunAsync(() => 
    {
        var exampleEmailSecurityAllowPolicy = new Cloudflare.EmailSecurityAllowPolicy("example_email_security_allow_policy", new()
        {
            AccountId = "023e105f4ecef8ad9ca31a8372d0c353",
            IsAcceptableSender = false,
            IsExemptRecipient = false,
            IsRegex = false,
            IsTrustedSender = true,
            Pattern = "test@example.com",
            PatternType = "EMAIL",
            VerifySender = true,
            Comments = "Trust all messages send from test@example.com",
            IsRecipient = false,
            IsSender = true,
            IsSpoof = false,
        });
    
    });
    
    package generated_program;
    
    import com.pulumi.Context;
    import com.pulumi.Pulumi;
    import com.pulumi.core.Output;
    import com.pulumi.cloudflare.EmailSecurityAllowPolicy;
    import com.pulumi.cloudflare.EmailSecurityAllowPolicyArgs;
    import java.util.ArrayList;
    import java.util.Arrays;
    import java.util.Map;
    import java.io.File;
    import java.nio.file.Files;
    import java.nio.file.Paths;
    
    public class App {
        public static void main(String[] args) {
            Pulumi.run(App::stack);
        }
    
        public static void stack(Context ctx) {
            var exampleEmailSecurityAllowPolicy = new EmailSecurityAllowPolicy("exampleEmailSecurityAllowPolicy", EmailSecurityAllowPolicyArgs.builder()
                .accountId("023e105f4ecef8ad9ca31a8372d0c353")
                .isAcceptableSender(false)
                .isExemptRecipient(false)
                .isRegex(false)
                .isTrustedSender(true)
                .pattern("test@example.com")
                .patternType("EMAIL")
                .verifySender(true)
                .comments("Trust all messages send from test@example.com")
                .isRecipient(false)
                .isSender(true)
                .isSpoof(false)
                .build());
    
        }
    }
    
    resources:
      exampleEmailSecurityAllowPolicy:
        type: cloudflare:EmailSecurityAllowPolicy
        name: example_email_security_allow_policy
        properties:
          accountId: 023e105f4ecef8ad9ca31a8372d0c353
          isAcceptableSender: false
          isExemptRecipient: false
          isRegex: false
          isTrustedSender: true
          pattern: test@example.com
          patternType: EMAIL
          verifySender: true
          comments: Trust all messages send from test@example.com
          isRecipient: false
          isSender: true
          isSpoof: false
    
    pulumi {
      required_providers {
        cloudflare = {
          source = "pulumi/cloudflare"
        }
      }
    }
    
    resource "cloudflare_emailsecurityallowpolicy" "example_email_security_allow_policy" {
      account_id           = "023e105f4ecef8ad9ca31a8372d0c353"
      is_acceptable_sender = false
      is_exempt_recipient  = false
      is_regex             = false
      is_trusted_sender    = true
      pattern              = "test@example.com"
      pattern_type         = "EMAIL"
      verify_sender        = true
      comments             = "Trust all messages send from test@example.com"
      is_recipient         = false
      is_sender            = true
      is_spoof             = false
    }
    

    Create EmailSecurityAllowPolicy Resource

    Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.

    Constructor syntax

    new EmailSecurityAllowPolicy(name: string, args: EmailSecurityAllowPolicyArgs, opts?: CustomResourceOptions);
    @overload
    def EmailSecurityAllowPolicy(resource_name: str,
                                 args: EmailSecurityAllowPolicyArgs,
                                 opts: Optional[ResourceOptions] = None)
    
    @overload
    def EmailSecurityAllowPolicy(resource_name: str,
                                 opts: Optional[ResourceOptions] = None,
                                 account_id: Optional[str] = None,
                                 is_acceptable_sender: Optional[bool] = None,
                                 is_exempt_recipient: Optional[bool] = None,
                                 is_regex: Optional[bool] = None,
                                 is_trusted_sender: Optional[bool] = None,
                                 pattern: Optional[str] = None,
                                 pattern_type: Optional[str] = None,
                                 verify_sender: Optional[bool] = None,
                                 comments: Optional[str] = None,
                                 is_recipient: Optional[bool] = None,
                                 is_sender: Optional[bool] = None,
                                 is_spoof: Optional[bool] = None)
    func NewEmailSecurityAllowPolicy(ctx *Context, name string, args EmailSecurityAllowPolicyArgs, opts ...ResourceOption) (*EmailSecurityAllowPolicy, error)
    public EmailSecurityAllowPolicy(string name, EmailSecurityAllowPolicyArgs args, CustomResourceOptions? opts = null)
    public EmailSecurityAllowPolicy(String name, EmailSecurityAllowPolicyArgs args)
    public EmailSecurityAllowPolicy(String name, EmailSecurityAllowPolicyArgs args, CustomResourceOptions options)
    
    type: cloudflare:EmailSecurityAllowPolicy
    properties: # The arguments to resource properties.
    options: # Bag of options to control resource's behavior.
    
    
    resource "cloudflare_email_security_allow_policy" "name" {
        # resource properties
    }

    Parameters

    name string
    The unique name of the resource.
    args EmailSecurityAllowPolicyArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    resource_name str
    The unique name of the resource.
    args EmailSecurityAllowPolicyArgs
    The arguments to resource properties.
    opts ResourceOptions
    Bag of options to control resource's behavior.
    ctx Context
    Context object for the current deployment.
    name string
    The unique name of the resource.
    args EmailSecurityAllowPolicyArgs
    The arguments to resource properties.
    opts ResourceOption
    Bag of options to control resource's behavior.
    name string
    The unique name of the resource.
    args EmailSecurityAllowPolicyArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    name String
    The unique name of the resource.
    args EmailSecurityAllowPolicyArgs
    The arguments to resource properties.
    options CustomResourceOptions
    Bag of options to control resource's behavior.

    Constructor example

    The following reference example uses placeholder values for all input properties.

    var emailSecurityAllowPolicyResource = new Cloudflare.EmailSecurityAllowPolicy("emailSecurityAllowPolicyResource", new()
    {
        AccountId = "string",
        IsAcceptableSender = false,
        IsExemptRecipient = false,
        IsRegex = false,
        IsTrustedSender = false,
        Pattern = "string",
        PatternType = "string",
        VerifySender = false,
        Comments = "string",
    });
    
    example, err := cloudflare.NewEmailSecurityAllowPolicy(ctx, "emailSecurityAllowPolicyResource", &cloudflare.EmailSecurityAllowPolicyArgs{
    	AccountId:          pulumi.String("string"),
    	IsAcceptableSender: pulumi.Bool(false),
    	IsExemptRecipient:  pulumi.Bool(false),
    	IsRegex:            pulumi.Bool(false),
    	IsTrustedSender:    pulumi.Bool(false),
    	Pattern:            pulumi.String("string"),
    	PatternType:        pulumi.String("string"),
    	VerifySender:       pulumi.Bool(false),
    	Comments:           pulumi.String("string"),
    })
    
    resource "cloudflare_email_security_allow_policy" "emailSecurityAllowPolicyResource" {
      lifecycle {
        create_before_destroy = true
      }
      account_id           = "string"
      is_acceptable_sender = false
      is_exempt_recipient  = false
      is_regex             = false
      is_trusted_sender    = false
      pattern              = "string"
      pattern_type         = "string"
      verify_sender        = false
      comments             = "string"
    }
    
    var emailSecurityAllowPolicyResource = new EmailSecurityAllowPolicy("emailSecurityAllowPolicyResource", EmailSecurityAllowPolicyArgs.builder()
        .accountId("string")
        .isAcceptableSender(false)
        .isExemptRecipient(false)
        .isRegex(false)
        .isTrustedSender(false)
        .pattern("string")
        .patternType("string")
        .verifySender(false)
        .comments("string")
        .build());
    
    email_security_allow_policy_resource = cloudflare.EmailSecurityAllowPolicy("emailSecurityAllowPolicyResource",
        account_id="string",
        is_acceptable_sender=False,
        is_exempt_recipient=False,
        is_regex=False,
        is_trusted_sender=False,
        pattern="string",
        pattern_type="string",
        verify_sender=False,
        comments="string")
    
    const emailSecurityAllowPolicyResource = new cloudflare.EmailSecurityAllowPolicy("emailSecurityAllowPolicyResource", {
        accountId: "string",
        isAcceptableSender: false,
        isExemptRecipient: false,
        isRegex: false,
        isTrustedSender: false,
        pattern: "string",
        patternType: "string",
        verifySender: false,
        comments: "string",
    });
    
    type: cloudflare:EmailSecurityAllowPolicy
    properties:
        accountId: string
        comments: string
        isAcceptableSender: false
        isExemptRecipient: false
        isRegex: false
        isTrustedSender: false
        pattern: string
        patternType: string
        verifySender: false
    

    EmailSecurityAllowPolicy Resource Properties

    To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.

    Inputs

    In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.

    The EmailSecurityAllowPolicy resource accepts the following input properties:

    AccountId string
    Identifier.
    IsAcceptableSender bool
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    IsExemptRecipient bool
    Bypasses all detections for messages to this recipient.
    IsRegex bool
    IsTrustedSender bool
    Bypasses all detections and link following for messages from this sender.
    Pattern string
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    PatternType string
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    VerifySender bool
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    Comments string
    IsRecipient bool
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    IsSender bool
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    IsSpoof bool
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    AccountId string
    Identifier.
    IsAcceptableSender bool
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    IsExemptRecipient bool
    Bypasses all detections for messages to this recipient.
    IsRegex bool
    IsTrustedSender bool
    Bypasses all detections and link following for messages from this sender.
    Pattern string
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    PatternType string
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    VerifySender bool
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    Comments string
    IsRecipient bool
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    IsSender bool
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    IsSpoof bool
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    account_id string
    Identifier.
    is_acceptable_sender bool
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    is_exempt_recipient bool
    Bypasses all detections for messages to this recipient.
    is_regex bool
    is_trusted_sender bool
    Bypasses all detections and link following for messages from this sender.
    pattern string
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    pattern_type string
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verify_sender bool
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    comments string
    is_recipient bool
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    is_sender bool
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    is_spoof bool
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    accountId String
    Identifier.
    isAcceptableSender Boolean
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    isExemptRecipient Boolean
    Bypasses all detections for messages to this recipient.
    isRegex Boolean
    isTrustedSender Boolean
    Bypasses all detections and link following for messages from this sender.
    pattern String
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    patternType String
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verifySender Boolean
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    comments String
    isRecipient Boolean
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    isSender Boolean
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    isSpoof Boolean
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    accountId string
    Identifier.
    isAcceptableSender boolean
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    isExemptRecipient boolean
    Bypasses all detections for messages to this recipient.
    isRegex boolean
    isTrustedSender boolean
    Bypasses all detections and link following for messages from this sender.
    pattern string
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    patternType string
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verifySender boolean
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    comments string
    isRecipient boolean
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    isSender boolean
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    isSpoof boolean
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    account_id str
    Identifier.
    is_acceptable_sender bool
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    is_exempt_recipient bool
    Bypasses all detections for messages to this recipient.
    is_regex bool
    is_trusted_sender bool
    Bypasses all detections and link following for messages from this sender.
    pattern str
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    pattern_type str
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verify_sender bool
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    comments str
    is_recipient bool
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    is_sender bool
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    is_spoof bool
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    accountId String
    Identifier.
    isAcceptableSender Boolean
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    isExemptRecipient Boolean
    Bypasses all detections for messages to this recipient.
    isRegex Boolean
    isTrustedSender Boolean
    Bypasses all detections and link following for messages from this sender.
    pattern String
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    patternType String
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verifySender Boolean
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    comments String
    isRecipient Boolean
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    isSender Boolean
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    isSpoof Boolean
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    Outputs

    All input properties are implicitly available as output properties. Additionally, the EmailSecurityAllowPolicy resource produces the following output properties:

    CreatedAt string
    Id string
    The provider-assigned unique ID for this managed resource.
    LastModified string
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    ModifiedAt string
    CreatedAt string
    Id string
    The provider-assigned unique ID for this managed resource.
    LastModified string
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    ModifiedAt string
    created_at string
    id string
    The provider-assigned unique ID for this managed resource.
    last_modified string
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modified_at string
    createdAt String
    id String
    The provider-assigned unique ID for this managed resource.
    lastModified String
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modifiedAt String
    createdAt string
    id string
    The provider-assigned unique ID for this managed resource.
    lastModified string
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modifiedAt string
    created_at str
    id str
    The provider-assigned unique ID for this managed resource.
    last_modified str
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modified_at str
    createdAt String
    id String
    The provider-assigned unique ID for this managed resource.
    lastModified String
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modifiedAt String

    Look up Existing EmailSecurityAllowPolicy Resource

    Get an existing EmailSecurityAllowPolicy resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.

    public static get(name: string, id: Input<ID>, state?: EmailSecurityAllowPolicyState, opts?: CustomResourceOptions): EmailSecurityAllowPolicy
    @staticmethod
    def get(resource_name: str,
            id: str,
            opts: Optional[ResourceOptions] = None,
            account_id: Optional[str] = None,
            comments: Optional[str] = None,
            created_at: Optional[str] = None,
            is_acceptable_sender: Optional[bool] = None,
            is_exempt_recipient: Optional[bool] = None,
            is_recipient: Optional[bool] = None,
            is_regex: Optional[bool] = None,
            is_sender: Optional[bool] = None,
            is_spoof: Optional[bool] = None,
            is_trusted_sender: Optional[bool] = None,
            last_modified: Optional[str] = None,
            modified_at: Optional[str] = None,
            pattern: Optional[str] = None,
            pattern_type: Optional[str] = None,
            verify_sender: Optional[bool] = None) -> EmailSecurityAllowPolicy
    func GetEmailSecurityAllowPolicy(ctx *Context, name string, id IDInput, state *EmailSecurityAllowPolicyState, opts ...ResourceOption) (*EmailSecurityAllowPolicy, error)
    public static EmailSecurityAllowPolicy Get(string name, Input<string> id, EmailSecurityAllowPolicyState? state, CustomResourceOptions? opts = null)
    public static EmailSecurityAllowPolicy get(String name, Output<String> id, EmailSecurityAllowPolicyState state, CustomResourceOptions options)
    resources:  _:    type: cloudflare:EmailSecurityAllowPolicy    get:      id: ${id}
    import {
      to = cloudflare_email_security_allow_policy.example
      id = "${id}"
    }
    
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    resource_name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    The following state arguments are supported:
    AccountId string
    Identifier.
    Comments string
    CreatedAt string
    IsAcceptableSender bool
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    IsExemptRecipient bool
    Bypasses all detections for messages to this recipient.
    IsRecipient bool
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    IsRegex bool
    IsSender bool
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    IsSpoof bool
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    IsTrustedSender bool
    Bypasses all detections and link following for messages from this sender.
    LastModified string
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    ModifiedAt string
    Pattern string
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    PatternType string
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    VerifySender bool
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    AccountId string
    Identifier.
    Comments string
    CreatedAt string
    IsAcceptableSender bool
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    IsExemptRecipient bool
    Bypasses all detections for messages to this recipient.
    IsRecipient bool
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    IsRegex bool
    IsSender bool
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    IsSpoof bool
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    IsTrustedSender bool
    Bypasses all detections and link following for messages from this sender.
    LastModified string
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    ModifiedAt string
    Pattern string
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    PatternType string
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    VerifySender bool
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    account_id string
    Identifier.
    comments string
    created_at string
    is_acceptable_sender bool
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    is_exempt_recipient bool
    Bypasses all detections for messages to this recipient.
    is_recipient bool
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    is_regex bool
    is_sender bool
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    is_spoof bool
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    is_trusted_sender bool
    Bypasses all detections and link following for messages from this sender.
    last_modified string
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modified_at string
    pattern string
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    pattern_type string
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verify_sender bool
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    accountId String
    Identifier.
    comments String
    createdAt String
    isAcceptableSender Boolean
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    isExemptRecipient Boolean
    Bypasses all detections for messages to this recipient.
    isRecipient Boolean
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    isRegex Boolean
    isSender Boolean
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    isSpoof Boolean
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    isTrustedSender Boolean
    Bypasses all detections and link following for messages from this sender.
    lastModified String
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modifiedAt String
    pattern String
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    patternType String
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verifySender Boolean
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    accountId string
    Identifier.
    comments string
    createdAt string
    isAcceptableSender boolean
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    isExemptRecipient boolean
    Bypasses all detections for messages to this recipient.
    isRecipient boolean
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    isRegex boolean
    isSender boolean
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    isSpoof boolean
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    isTrustedSender boolean
    Bypasses all detections and link following for messages from this sender.
    lastModified string
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modifiedAt string
    pattern string
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    patternType string
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verifySender boolean
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    account_id str
    Identifier.
    comments str
    created_at str
    is_acceptable_sender bool
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    is_exempt_recipient bool
    Bypasses all detections for messages to this recipient.
    is_recipient bool
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    is_regex bool
    is_sender bool
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    is_spoof bool
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    is_trusted_sender bool
    Bypasses all detections and link following for messages from this sender.
    last_modified str
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modified_at str
    pattern str
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    pattern_type str
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verify_sender bool
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
    accountId String
    Identifier.
    comments String
    createdAt String
    isAcceptableSender Boolean
    Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
    isExemptRecipient Boolean
    Bypasses all detections for messages to this recipient.
    isRecipient Boolean
    Deprecated as of July 1, 2025. Use isExemptRecipient instead. End of life: July 1, 2026.

    Deprecated: Use isExemptRecipient instead.

    isRegex Boolean
    isSender Boolean
    Deprecated as of July 1, 2025. Use isTrustedSender instead. End of life: July 1, 2026.

    Deprecated: Use isTrustedSender instead.

    isSpoof Boolean
    Deprecated as of July 1, 2025. Use isAcceptableSender instead. End of life: July 1, 2026.

    Deprecated: Use isAcceptableSender instead.

    isTrustedSender Boolean
    Bypasses all detections and link following for messages from this sender.
    lastModified String
    Deprecated, use modifiedAt instead. End of life: November 1, 2026.

    Deprecated: Use modifiedAt instead.

    modifiedAt String
    pattern String
    The pattern value to match. The format depends on patternType: a valid email address for EMAIL (e.g. user@example.com), a valid domain name for DOMAIN (e.g. example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g. 1.2.3.4, 1.2.3.0/24, 2606:4700:4700::1111, or 2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    patternType String
    Type of pattern matching.

    • EMAIL: matches a full email address (e.g. user@example.com)
    • DOMAIN: matches a domain name (e.g. example.com)
    • IP: matches a plain IPv4 or IPv6 address (e.g. 1.2.3.4 or 2606:4700:4700::1111) or CIDR block (e.g. 1.2.3.0/24 or 2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents.
    • UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
    verifySender Boolean
    Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.

    Import

    $ pulumi import cloudflare:index/emailSecurityAllowPolicy:EmailSecurityAllowPolicy example '<account_id>/<policy_id>'
    

    To learn more about importing existing cloud resources, see Importing resources.

    Package Details

    Repository
    Cloudflare pulumi/pulumi-cloudflare
    License
    Apache-2.0
    Notes
    This Pulumi package is based on the cloudflare Terraform Provider.
    cloudflare logo cloudflare logo
    Viewing docs for Cloudflare v6.21.0
    published on Thursday, Sep 17, 2026 by Pulumi

      Try Pulumi Cloud free.
      Your team will thank you.

      Start free trial