aws-cdk.aws-kms
The CDK Construct Library for AWS::KMS
Decision gist · record as of 2026-08-14
No—do not install for new projects. This package is end-of-support as of 2023-06-01 and classified as Inactive. AWS CDK v2 is the current supported version and should be used instead. Only consider installing if you are maintaining an existing v1 CDK application that cannot yet migrate, and understand that you will not receive updates or security patches.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires AWS CDK v1 runtime; this package is end-of-support as of 2023-06-01 and AWS CDK v2 is the current supported version.
- Low friction install with 8 runtime dependencies.
- Active repository with recent commits, but package is classified as Inactive (Development Status 7) and reached End-of-Support on 2023-06-01; users should migrate to AWS CDK v2.
License · maintenance · safety
Apache-2.0 (permissive) — Licensed under Apache-2.0 (permissive), allowing commercial use, modification, and distribution with minimal restrictions.
last release 2023-06-19 (1152 days) · last repo commit 2026-08-14 · 12,868 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 184,031 downloads/mo, #10,049 on PyPI
Alternatives
Verify before relying
pip install aws-cdk.aws-kms
import aws_cdk as cdk
from aws_cdk import aws_kms as kms
class MyStack(cdk.Stack):
def __init__(self, scope, id, **kwargs):
super().__init__(scope, id, **kwargs)
key = kms.Key(self, "MyKey", enable_key_rotation=True)
key.add_alias("alias/my-key")- Whether existing v1 projects can safely remain on this package or if migration to v2 is mandatory for security/stability.
- Performance characteristics or limits when managing large numbers of KMS keys or aliases through CDK constructs.
What it is and what it does
This is the AWS CDK Construct Library for KMS, a Python module that lets you define AWS Key Management Service keys, aliases, and access policies using infrastructure-as-code. It wraps KMS API operations into high-level constructs so you can create encryption keys, set rotation policies, manage aliases, and control key access through IAM and key policies—all declaratively within your CDK application.
The package depends on aws-cdk.core, aws-cdk.aws-iam, constructs, jsii, and several other CDK modules. It is classified as Inactive (Development Status 7) because AWS CDK v1 reached End-of-Support on 2023-06-01; the package is no longer being updated, and AWS recommends migrating to AWS CDK v2 for ongoing support and new features.
Use it for
- Define and provision KMS keys with rotation enabled as part of an AWS CDK stack deployment.
- Create KMS key aliases and manage key policies to control which IAM principals can encrypt, decrypt, or administer keys.
- Share KMS keys between multiple CDK stacks by passing key constructs across stack boundaries.
- Import existing KMS keys (by ARN or alias) into a CDK application to reference them in other constructs without recreating them.
- Specify key spec and key usage (e.g., ECC_SECG_P256K1 for signing) when creating keys with non-default cryptographic properties.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
No—do not install for new projects.
This package is end-of-support as of 2023-06-01 and classified as Inactive. AWS CDK v2 is the current supported version and should be used instead. Only consider installing if you are maintaining an existing v1 CDK application that cannot yet migrate, and understand that you will not receive updates or security patches.
Install
aws-cdk-aws-kms on PyPI
Before you install
Low friction install with 8 runtime dependencies. Active repository with recent commits, but package is classified as Inactive (Development Status 7) and reached End-of-Support on 2023-06-01; users should migrate to AWS CDK v2.
Requires AWS CDK v1 runtime; this package is end-of-support as of 2023-06-01 and AWS CDK v2 is the current supported version.
License in practice
Licensed under Apache-2.0 (permissive), allowing commercial use, modification, and distribution with minimal restrictions.
Quickstart
pip install aws-cdk.aws-kms
import aws_cdk as cdk
from aws_cdk import aws_kms as kms
class MyStack(cdk.Stack):
def __init__(self, scope, id, **kwargs):
super().__init__(scope, id, **kwargs)
key = kms.Key(self, "MyKey", enable_key_rotation=True)
key.add_alias("alias/my-key")
Verify before relying
- Whether existing v1 projects can safely remain on this package or if migration to v2 is mandatory for security/stability.
- Performance characteristics or limits when managing large numbers of KMS keys or aliases through CDK constructs.
Package facts
| License | Apache-2.0 permissive |
| Python support | Supports the current Python release ~=3.7 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 8 packagesaws-cdk.aws-iamaws-cdk.cloud-assembly-schemaaws-cdk.coreaws-cdk.cx-apiconstructsjsiipublicationtypeguard |
| Maintenance | Actively maintained 1,152 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 184,031 / month, #10,049 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 7 - InactiveFramework :: AWS CDKFramework :: AWS CDK :: 1Intended Audience :: DevelopersLicense :: OSI ApprovedOperating System :: OS IndependentProgramming Language :: JavaScriptProgramming Language :: Python :: 3 :: OnlyProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.7Programming Language :: Python :: 3.8Programming Language :: Python :: 3.9Typing :: Typed |
Evidence: aws_cdk.aws_kms-1.204.0-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “AWS KMS key management CDK”
- aws-cdk.aws-kmsProvides AWS CDK constructs for defining and managing AWS Key…
- aws-cdk.aws-secretsmanagerAWS CDK construct library for provisioning and managing AWS Secrets…
- aws-cdk.aws-s3tables-alphaProvides AWS CDK constructs for defining and managing Amazon S3…
Give your agent the search over MCP, or paste the wish link into any chat.
More Build Tools packages
Provides reusable utilities for Python packaging interoperability, including version handling, specifiers, markers, requirements, tags, and metadata parsing according to standards like PEP 440 and PEP 425.
Wraps any iterable to display a real-time progress bar in the terminal or Jupyter notebook, showing iteration count, elapsed time, and estimated time remaining.
pip is the standard installer for Python packages, enabling you to download and install packages from the Python Package Index and other indexes into your Python environment.
Hatchling is a standards-compliant Python build backend that handles packaging, metadata, and distribution of Python projects when configured in a project's pyproject.toml file.
Generates Python gRPC service stubs and message classes from Protocol Buffer definitions, enabling developers to build gRPC clients and servers.
pre-commit is a framework for installing and running git hooks written in any language before commits are made, automating code quality and validation checks across multi-language projects.
Install it if your team needs consistent, automated validation at commit time.
See also aws-cdk.aws-iam · aws-cdk.aws-s3 · aws-cdk.aws-secretsmanager · aws-cdk.core · kappa · aws-cdk.aws-kinesis · aws-encryption-sdk-cli · aws-cdk.aws-location-alpha · aws-cdk.aws-ecr · credstash