# AWS CloudFormation vs OpenTofu

**Leader by Vioscale score:** OpenTofu

| Attribute | AWS CloudFormation | OpenTofu |
|---|---|---|
| **Vioscale score** | 60.3 (73% (medium)) | 68.6 (45% (low)) |
| activity.commits_last_30d | - | 95 |
| adoption.dependent_repos | - | 0 |
| adoption.github_stars | - | 29,933 |
| deployment.options | `{"cloud":true}` | `{"cloud":true,"self_hosted":true}` |
| description.long | A managed service for provisioning and managing AWS and third-party cloud resources through declarative templates (JSON/YAML) or programmatic languages. Automates infrastructure deployment across regions and accounts, detects configuration drift, and provides automatic rollback on errors. | A community-driven infrastructure-as-code platform maintained under the Linux Foundation that enables declarative management of cloud resources. It serves as a compatible alternative to Terraform, preserving existing configurations and workflows while providing access to thousands of providers and reusable infrastructure modules. |
| features.capabilities | `{"hosting":"cloud","language":"JSON, YAML, TypeScript, Python, Java, .NET","paradigm":"declarative_dsl","multicloud":false,"policy_as_code":true,"drift_detection":true,"import_existing":true,"state_management":"vendor_managed","open_source_engine":false,"provider_ecosystem":true,"gitops_reconciliation":true,"managed_saas_offering":true}` | `{"hosting":"self","language":"HCL","paradigm":"declarative_dsl","multicloud":true,"drift_detection":true,"import_existing":true,"state_management":"self_managed","open_source_engine":true,"provider_ecosystem":true,"gitops_reconciliation":true}` |
| integrations.count | 21 | 3,900 |
| integrations.list | `[{"name":"MongoDB"},{"name":"Datadog"},{"name":"Atlassian Opsgenie"},{"name":"JFrog"},{"name":"Trend Micro"},{"name":"Splunk"},{"name":"Aqua Security"},{"name":"FireEye"},{"name":"Sysdig"},{"name":"Snyk"},{"name":"Check Point"},{"name":"Spot by NetApp"},{"name":"Gremlin"},{"name":"Stackery"},{"name":"Iridium"},{"name":"AWS CDK"},{"name":"AWS SAM (Serverless Application Model)"},{"name":"Visual Studio"},{"name":"Kiro"},{"name":"AWS CloudFormation Registry"},{"name":"AWS Partner Network (APN)"}]` | `[{"name":"AWS"},{"name":"Cloudflare"},{"name":"GitHub"},{"name":"Terraform Cloud"},{"name":"Terraform Enterprise"},{"name":"Scalr"},{"name":"Spacelift"},{"name":"env0"},{"name":"Digger"},{"name":"Terrateam"},{"name":"Qovery"},{"name":"Argonaut"},{"name":"Finisterra"},{"name":"AutoCloud"}]` |
| language.primary | - | Go |
| license.spdx | - | MPL-2.0 |
| market.availability | `{"hqCountry":"US","primaryMarkets":[],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | `{"primaryMarkets":[],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` |
| platform.support | `{"cli":true,"web":true}` | `{"cli":true}` |
| pricing | `{"type":"usage","plans":[{"free":false,"name":"Third-party Resources & Custom Hooks","summary":"$0.0009/handler operation after 1,000 free ops/month","features":["Unlimited AWS::* and Alexa::* resource operations (no handler charges)","Third-party resource provisioning","Custom hook support","Handler operation billing after free tier","Duration overage billing"],"components":[{"per":{"qty":1,"unit":"handler operation"},"kind":"metered","amount":0.0009,"currency":"USD"},{"per":{"qty":1,"unit":"second"},"kind":"metered","amount":0.00008,"currency":"USD","description":"Duration overage beyond 30 seconds per operation"}],"description":"Pay-per-operation model for third-party resource providers and custom hooks","contactSales":false,"includedLimits":{"free_handler_operations":"1,000/month","free_duration_per_operation":"30 seconds"}}],"summary":"Usage-based: $0.0009/handler operation + $0.00008/sec overage. 1,000 free operations/month. Data transfer at AWS rates.","currency":"USD","freeTier":true,"sourceUrl":"https://aws.amazon.com/cloudformation/pricing/","retrievedAt":"2026-08-14T16:36:19.015Z","startingPrice":{"amount":0.00008,"period":"month","currency":"USD"}}` | `{"type":"open_source","summary":"Free and open source (MPL-2.0 license)","freeTier":true,"sourceUrl":"https://opentofu.org/docs/v1.10/cli/commands/plan/","retrievedAt":"2026-08-14T21:32:43.822Z"}` |
| pricing.free_tier | yes | yes |
| pricing.model | freemium | commercial |
| pricing.price_level | low | free |
| pricing.transparent | yes | yes |
| release.cadence_days | - | 4 |
| release.history | - | `[{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.6","date":"2026-08-19T11:40:07Z","type":"stable","version":"v1.12.6"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.14","date":"2026-08-19T11:39:12Z","type":"stable","version":"v1.11.14"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.5","date":"2026-07-21T11:39:19Z","type":"stable","version":"v1.12.5"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.13","date":"2026-07-21T11:39:02Z","type":"stable","version":"v1.11.13"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.4","date":"2026-07-13T16:07:42Z","type":"stable","version":"v1.12.4"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.12","date":"2026-07-13T16:07:11Z","type":"stable","version":"v1.11.12"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.11","date":"2026-06-23T13:24:06Z","type":"stable","version":"v1.11.11"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.3","date":"2026-06-18T15:03:59Z","type":"stable","version":"v1.12.3"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.10","date":"2026-06-18T15:03:51Z","type":"stable","version":"v1.11.10"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.2","date":"2026-06-12T15:26:49Z","type":"stable","version":"v1.12.2"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.9","date":"2026-06-12T16:11:30Z","type":"stable","version":"v1.11.9"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.1","date":"2026-05-27T10:44:28Z","type":"stable","version":"v1.12.1"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.0","date":"2026-05-14T11:57:20Z","type":"stable","version":"v1.12.0"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.8","date":"2026-05-14T09:47:13Z","type":"stable","version":"v1.11.8"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.7","date":"2026-05-11T12:16:08Z","type":"stable","version":"v1.11.7"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.10.10","date":"2026-05-11T11:29:11Z","type":"stable","version":"v1.10.10"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.0-rc1","date":"2026-04-29T19:56:42Z","type":"prerelease","version":"v1.12.0-rc1"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.12.0-beta1","date":"2026-04-08T14:54:54Z","type":"prerelease","version":"v1.12.0-beta1"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.6","date":"2026-04-08T11:48:19Z","type":"stable","version":"v1.11.6"},{"url":"https://github.com/opentofu/opentofu/releases/tag/v1.11.5","date":"2026-02-12T15:43:04Z","type":"stable","version":"v1.11.5"}]` |
| reliability.status_page | yes | yes |
| security.disclosure_policy | yes | - |
| security.fedramp | yes | - |
| security.gdpr | yes | yes |
| security.hipaa | yes | - |
| security.pci | yes | - |
| security.vulnerabilities | - | `{"count":9,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2Fopentofu%2Fopentofu&per_page=100","last_12m":8,"max_severity":"HIGH"}` |

## Capabilities (Infrastructure as Code Tools)

| Capability | AWS CloudFormation | OpenTofu |
|---|:--:|:--:|
| **Core** |  |  |
| Paradigm | Declarative DSL | Declarative DSL |
| Language | JSON, YAML, TypeScript, Python, Java, .NET | HCL |
| **Portability** |  |  |
| Multicloud / cloud-agnostic | ✗ | ✓ |
| **Architecture** |  |  |
| State management | Vendor-managed | Self-managed |
| **Extensibility** |  |  |
| Pluggable provider ecosystem | ✓ | ✓ |
| **Governance** |  |  |
| Policy as code | ✓ | - |
| **Ops** |  |  |
| Drift detection | ✓ | ✓ |
| GitOps continuous reconciliation | ✓ | ✓ |
| **Deployment** |  |  |
| Managed SaaS offering | ✓ | - |
| Hosting | Cloud only | Self-hosted only |
| **Adoption** |  |  |
| Import existing resources | ✓ | ✓ |
| **Licensing** |  |  |
| Open-source engine | ✗ | ✓ |
| **Ecosystem** |  |  |
| CNCF maturity | - | - |

*Source: Vioscale. Generated 2026-09-01T16:36:08.358Z. "-" = undocumented, not absent.*
