Breakpoint

Heroku engineering blog

Introducing Team Authorizations
Heroku introduces Team Authorizations, allowing admins to create team-owned API tokens and OAuth authorizations instead of tying credentials to individual accounts. The feature improves integration continuity, centralized visibility, and offboarding security with one-year token lifetimes and one-time secret display.
6 Lesser-Known Heroku CLI Commands You Probably Aren’t Using
Andy Smith highlights six lesser-known Heroku CLI commands for exporting configuration, inspecting PostgreSQL queries, debugging dynos, running detached tasks, enabling autocomplete, and opening add-on dashboards. The examples show how these commands can reduce context switching and streamline common operational workflows.
Fine-Grained Access Control Now Available for All Heroku Customers
Heroku has made Fine-Grained Access Control available to all customers, replacing fixed roles with capabilities that can be scoped to organizations, teams, pipelines, and apps. The post explains least-privilege permissions, auditability, CLI commands, Platform API integration, and migration requirements.
Securing Heroku CLI Credentials with System Keychain Storage
Beginning in version 11.8.0, Heroku CLI authentication credentials will be stored in the system keychain by default for improved security. The post explains how the credential manager uses OS-native secure storage while preserving existing developer workflows.
A 15-Second Health Check for Your Heroku Connect Data Pipeline
Heroku Connect is a fully managed, bidirectional data sync service between Salesforce and Heroku Postgres that lets developers read and write Salesforce data using standard SQL. The post explains how to quickly check the health of the pipeline when fields do not update as expected or data appears to lag.
Modernizing the Command Line: Heroku CLI v11
Heroku CLI v11 completes the migration to ECMAScript Modules and oclif v4, improving startup performance, maintainability, and plugin interoperability. The release also adds Node.js 22 support, semantic themes, accessibility controls, new command namespaces, and workflow improvements.
Heroku March 2026 Update
Heroku outlines its sustaining engineering model and three platform updates: a larger 1 GB compressed slug limit, longer build timeouts, and Heroku CLI v11’s migration to ESM and oclif v4. The changes target more capable builds, faster execution, and improved production reliability.
Bigger Slugs and Greater Build Timeout Flexibility
Heroku raises the maximum compressed app slug size from 500MB to 1GB and increases build compile timeouts for complex applications with large dependency sets. The update provides more deployment headroom while warning that larger slugs can increase dyno boot and scaling times.
Behind the Scenes: How Maintaining Cloud Native Buildpacks Powers Platforms Like Heroku
This post explains how maintaining cloud native buildpacks (as pack CLI maintainers) ensures infrastructure reliability across platforms and quickly delivers security patches. It highlights how fixes shipped for one platform protect users across Heroku and many other cloud and platform providers. The article gives an inside look at the maintenance work and its cross-platform impact.
From Fragmented Logs to Full-Stack Visibility with SolarWinds Papertrail
The article discusses the challenges of observability as applications scale, where logs and metrics grow across dynos, databases, and third-party APIs. It explains the need to extract signals from noise and understand system health in context to optimize performance. The post describes how full-stack visibility helps monitor service interactions and resource limits effectively.
Preparing for Shorter SSL/TLS Certificate Lifetimes
Heroku explains the CA/Browser Forum’s phased reduction of publicly trusted TLS certificate lifetimes, beginning with a 200-day maximum in March 2026. The post outlines renewal requirements for manually managed certificates and shows how Heroku Automated Certificate Management can automate compliance.
Whats New in Heroku AI: New Models and a Flexible Standard Plan
Heroku introduces a flexible standard plan for Managed Inference and Agents, allowing one add-on and API key to access its full model catalog. The update adds Claude 4.6, new open-weight models, Cohere Embed V4, and migration guidance for deprecated Claude versions.
Code Execution Sandbox for Agents on Heroku
Heroku explains how ephemeral one-off dynos provide isolated code-execution sandboxes for AI agents. The post demonstrates programmatic tool calling through the Managed Inference and Agents API and deployment of open-source MCP servers for Python, Ruby, Node, and Go.
Heroku and GitHub Enterprise Server: Stronger Security, Seamless Delivery
Heroku’s GitHub Enterprise Server integration replaces personal OAuth credentials with a GitHub App identity, enabling decoupled authentication, granular repository permissions, and reduced service-account overhead. The post explains how the integration supports governed CI/CD pipelines, review apps, Terraform provisioning, and phased enterprise rollout.
An Update on Heroku
Heroku announces a transition to a sustaining engineering model centered on stability, security, reliability, and customer support. Existing customers can continue using the platform without changes, while new Enterprise Account contracts will no longer be offered.
Building AI Search on Heroku
If you’ve built a RAG (Retrieval Augmented Generation) system, you may find many semantically similar results that don’t actually answer the query. This post presents a reference architecture and a Heroku example app that show what comes after vector search to build production-grade AI Search.
Optimize Search Precision with Reranking on Heroku AI
Heroku introduces managed reranking models for its Inference and Agents platform, supporting Cohere Rerank 3.5 and Amazon Rerank 1.0. The post demonstrates integrating the /v1/rerank API into a RAG pipeline, using relevance scores and top-N filtering to improve retrieval quality while reducing context and inference costs.