Heroku Blog
- Ecosystem
- Last Updated: August 25, 2026
- Andy Smith
- News
- Last Updated: August 21, 2026
- Alberto Sigismondi
Fine-Grained Access Controls is now available to all Heroku customers. Heroku’s legacy system gave you predefined roles like admin, member, or collaborator, each with a fixed bundle of permissions. It replaces that system with fine-grained roles like view, deploy, operate, and manage, with specific capability sets. Access control is managed at an app-specific layer, giving your team the capability to tune individual access for each of your apps.
- Engineering
- Last Updated: July 16, 2026
- Andy Smith
- Engineering
- Last Updated: July 01, 2026
- Katy Bowman
Beginning in version 11.8.0, we will be improving the security of the Heroku CLI by storing authentication credentials in your system keychain by default. The Heroku credential manager makes use of OS-native secure storage tools with interfaces designed for sensitive data while maintaining compatibility with existing developer workflows.
- Engineering
- Last Updated: June 24, 2026
- Nick Prey, Andy Smith
- News
- Last Updated: March 19, 2026
- Keshav Pokkuluri
We’ve transitioned to a Sustaining Engineering model to better serve the customers who rely on us every day. Our mission is simple: to provide the most stable, secure, and reliable environment for your apps and data. We will continue releasing features and functionality that align with our Sustaining Engineering goals and provide a more robust and efficient platform to our customers.
Today we are excited to share three recent enhancements:
Subscribe to the full-text feed.