$npx skillfedfor your agent

azure-keyvault-securitydomain

Microsoft Corporation Azure Keyvault Securitydomain Client Library for Python

With conditionsPyPI CryptographyReleased May 20254.7M downloads / moMIT LicensePure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — azure_keyvault_securitydomain-1.0.0b1-py3-none-any.whl
v1.0.0b1 · released 2025-05-08 · Python >=3.9 · 3 runtime deps: isodate, azure-core, typing-extensions

Yes, if you operate Azure Key Vault Managed HSM and need to manage security domains programmatically. The package has low install friction, active maintenance, no known vulnerabilities, and a permissive license. The Beta status means the API may change, so pin the version in production. If you only use standard Key Vault (not Managed HSM), this library is not relevant.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires Python 3.9 or later; requires an existing Azure Key Vault Managed HSM and valid credentials configured externally.
  • Low install friction with three lightweight runtime dependencies (isodate, azure-core, typing-extensions).
  • Active maintenance with recent commits; marked as Beta (Development Status 4) so expect API evolution.

License · maintenance · safety

MIT License (permissive) — MIT License permits commercial and private use with minimal restrictions; suitable for most projects.

last release 2025-05-08 (463 days) · last repo commit 2026-08-14 · 5,588 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 4,692,628 downloads/mo, #2,252 on PyPI

Verify before relying

pip install azure-keyvault-securitydomain

from azure.keyvault.securitydomain import SecurityDomainClient

client = SecurityDomainClient(vault_url=VAULT_URL, credential=credential)
security_domain = client.begin_download(certificate_info=certs).result()
  • Whether async support (aio module) is fully documented and tested in production scenarios.
  • Performance characteristics and latency for large security domain transfers.
  • Specific error handling and retry behavior for network failures during long-running operations.
Same gist for agents: .md · .json

What it is and what it does

This library provides a Python client for managing security domains in Azure Key Vault Managed HSM. A security domain is an encrypted blob containing HSM backup artifacts, user credentials, signing keys, and encryption keys unique to each managed HSM. The SecurityDomainClient lets you download a security domain from one HSM (to activate it or prepare for disaster recovery), get transfer keys for encrypting domains before upload, and upload a security domain to restore or migrate an HSM.

The package is part of the Azure SDK for Python and integrates with azure-core for HTTP transport and typing-extensions for type support. It supports both synchronous and asynchronous clients, and is actively maintained. The library is currently in Beta, so its API may evolve; it requires Python 3.9 or later and an existing Managed HSM instance in Azure.

Use it for

  • Activate a provisioned Managed HSM by downloading its security domain after initial setup.
  • Prepare a managed HSM for disaster recovery by downloading and securely storing its security domain.
  • Restore a managed HSM from a previously downloaded security domain after a failure or migration.
  • Migrate security domains between managed HSMs in different Azure regions or subscriptions.
  • Obtain transfer keys to encrypt security domains before uploading them to a different HSM.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you operate Azure Key Vault Managed HSM and need to manage security domains programmatically.

The package has low install friction, active maintenance, no known vulnerabilities, and a permissive license. The Beta status means the API may change, so pin the version in production. If you only use standard Key Vault (not Managed HSM), this library is not relevant.

Install

azure-keyvault-securitydomain on PyPI

Before you install

Low install friction with three lightweight runtime dependencies (isodate, azure-core, typing-extensions). Active maintenance with recent commits; marked as Beta (Development Status 4) so expect API evolution.

Requires Python 3.9 or later; requires an existing Azure Key Vault Managed HSM and valid credentials configured externally.

License in practice

MIT License permits commercial and private use with minimal restrictions; suitable for most projects.

Quickstart

pip install azure-keyvault-securitydomain

from azure.keyvault.securitydomain import SecurityDomainClient

client = SecurityDomainClient(vault_url=VAULT_URL, credential=credential)
security_domain = client.begin_download(certificate_info=certs).result()

Verify before relying

  • Whether async support (aio module) is fully documented and tested in production scenarios.
  • Performance characteristics and latency for large security domain transfers.
  • Specific error handling and retry behavior for network failures during long-running operations.

Package facts

LicenseMIT License permissive
Python supportSupports the current Python release >=3.9
Install frictionLow. Pure-Python wheel
Runtime dependencies
3 packages
isodateazure-coretyping-extensions
MaintenanceActively maintained 463 days since the last release
Last repo commit
First released
Downloads4,692,628 / month, #2,252 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 4 - BetaLicense :: OSI Approved :: MIT LicenseProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3 :: OnlyProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.9

Evidence: azure_keyvault_securitydomain-1.0.0b1-py3-none-any.whl

Tags

Capabilities
azure key vault managed hsmsecurity domain managementhsm backup restoreazure disaster recoverymanaged hsm activationsecurity domain download uploadazure key vault sdk
Topics
azure-sdkhsm-managementdisaster-recovery
PyPI keywords
azureazure sdk

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “security domain management”

  • azure-keyvault-securitydomainManages security domains for Azure Key Vault Managed HSM—download,…
  • acmeImplements the ACME protocol to automate certificate provisioning and…
  • dsinternalsInteract with Windows Active Directory by reading and manipulating…

Give your agent the search over MCP, or paste the wish link into any chat.

More Cryptography packages

certifi Worth it
PyPI · Cryptography · released Jul 2026

Certifi provides Mozilla's curated collection of root SSL certificates for Python applications to validate TLS hosts and verify certificate trustworthiness.

MPL-2.0pure Python · 3.7+
1.9Bdownloads / mo
cryptography Worth it
PyPI · Cryptography · released Jul 2026

cryptography provides cryptographic recipes and low-level primitives for symmetric encryption, message digests, key derivation, and other common cryptographic algorithms in Python.

Apache-2.0 OR BSD-3-Clausecompiled wheel
1.5Bdownloads / mo
rsa Skip
PyPI · Cryptography · released Apr 2025

Pure-Python RSA encryption, decryption, signing, and key generation following PKCS#1 v1.5, with command-line and library interfaces.

Apache-2.0pure Pythonabandoned
299.6Mdownloads / mo
pyOpenSSL With conditions
PyPI · Python Modules · released Aug 2026

pyOpenSSL wraps OpenSSL's SSL/TLS functionality for Python, providing high-level connection objects and certificate handling through a Python-friendly interface around OpenSSL's cryptographic operations.

Apache-2.0pure Python · 3.9+
294.2Mdownloads / mo
azure-identity Worth it
PyPI · Cryptography · released Mar 2026

Provides Microsoft Entra ID token-based authentication for Azure SDK clients through a set of TokenCredential implementations that handle OAuth flows and managed identity support.

license unclearpure Python · 3.9+
247.2Mdownloads / mo
PyNaCl Worth it
PyPI · Cryptography · released Jan 2026

PyNaCl provides Python bindings to libsodium for digital signatures, secret-key and public-key encryption, hashing, message authentication, and password-based key derivation.

Apache-2.0compiled wheel · 3.8+
246.6Mdownloads / mo

See also azure-keyvault-administration · azure-keyvault-secrets · azure-keyvault-certificates · azure-mgmt-keyvault · azure-keyvault-keys · azure-keyvault · skyflow · azure-mgmt-recoveryservices · azure-mgmt-domainregistration · azure-appconfiguration-provider