cloudsmith-cli
Cloudsmith Command-Line Interface (CLI)
Decision gist · record as of 2026-08-14
Yes. The package is actively maintained, carries no known vulnerabilities, supports current Python versions, and has low install friction. It is well-suited for teams already using Cloudsmith who need to automate package management or integrate repository operations into CI/CD and DevOps workflows. The permissive Apache-2.0 license poses no restrictions.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Python 3.10 or later.
- API credentials (via login or CLOUDSMITH_API_KEY environment variable) needed for most operations.
- Low install friction with a pure Python wheel distribution.
License · maintenance · safety
Apache-2.0 (permissive) — Licensed under Apache-2.0 (permissive), allowing free use, modification, and distribution with minimal restrictions—suitable for both commercial and open-source projects.
last release 2026-08-14 (0 days) · last repo commit 2026-08-14 · 75 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 370,209 downloads/mo, #7,182 on PyPI
Alternatives
Verify before relying
pip install cloudsmith-cli
cloudsmith --version
cloudsmith login
cloudsmith push python ./my-package.tar.gz my-org/my-repo- Whether the 17 runtime dependencies introduce any transitive security concerns beyond the 0 known OSV vulnerabilities in cloudsmith-cli itself.
- Performance characteristics when managing large numbers of packages or repositories.
- Whether keyring integration works reliably across all supported platforms (Linux, macOS, Windows).
What it is and what it does
Cloudsmith CLI is a Python 3 text-based interface to the Cloudsmith package repository API, allowing teams to automate package management workflows without building custom integrations. It supports uploading, downloading, copying, and deleting packages across multiple formats (Python, npm, Docker, Maven, Debian, RPM, and many others), plus managing repositories, entitlements, metadata, and policies programmatically.
The tool is designed for DevOps automation and system administration tasks. It handles authentication via login, API keys, or keyring storage, and provides subcommands for nearly every operation available through the web API—from listing distributions and packages to managing quarantines, quotas, and vulnerability policies. With 17 runtime dependencies including click for CLI scaffolding, requests for HTTP, and rich for terminal output, it trades a moderate dependency footprint for a polished, feature-complete command-line experience.
Use it for
- Automate package uploads in CI/CD pipelines for multiple package formats without writing format-specific scripts.
- Manage repository entitlements and access tokens programmatically across an organization.
- Promote or copy packages between repositories as part of release workflows.
- Query package metadata, dependencies, and vulnerability information from the command line.
- Integrate Cloudsmith operations into shell scripts or infrastructure-as-code tools.
- Retrieve bandwidth and storage metrics for repositories and entitlement tokens.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes.
The package is actively maintained, carries no known vulnerabilities, supports current Python versions, and has low install friction. It is well-suited for teams already using Cloudsmith who need to automate package management or integrate repository operations into CI/CD and DevOps workflows. The permissive Apache-2.0 license poses no restrictions.
Install
cloudsmith-cli on PyPI
Before you install
Low install friction with a pure Python wheel distribution. Active maintenance with a release on 2026-08-14 and recent commits. Supports current Python versions (3.10–3.14) and carries 17 runtime dependencies including click, requests, and keyring for credential handling.
Requires Python 3.10 or later. API credentials (via login or CLOUDSMITH_API_KEY environment variable) needed for most operations.
License in practice
Licensed under Apache-2.0 (permissive), allowing free use, modification, and distribution with minimal restrictions—suitable for both commercial and open-source projects.
Quickstart
pip install cloudsmith-cli
cloudsmith --version
cloudsmith login
cloudsmith push python ./my-package.tar.gz my-org/my-repo
Verify before relying
- Whether the 17 runtime dependencies introduce any transitive security concerns beyond the 0 known OSV vulnerabilities in cloudsmith-cli itself.
- Performance characteristics when managing large numbers of packages or repositories.
- Whether keyring integration works reliably across all supported platforms (Linux, macOS, Windows).
Package facts
| License | Apache-2.0 permissive |
| Python support | Supports the current Python release >=3.10.0 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 17 packagesclickclick-configfileclick-didyoumeanclick-spinnerjson5cloudsmith-apikeyringkeyrings-altkeyrings-cryptfilemcpPyJWTpython-toonrequestsrequests_toolbeltrichsemverurllib3 |
| Maintenance | Actively maintained 0 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 370,209 / month, #7,182 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableEnvironment :: ConsoleIntended Audience :: DevelopersIntended Audience :: System AdministratorsOperating System :: POSIX :: LinuxProgramming Language :: PythonProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.14Topic :: InternetTopic :: System :: Systems AdministrationTopic :: Utilities |
Evidence: cloudsmith_cli-1.23.0-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “cloudsmith cli package management”
- cloudsmith-cliA command-line interface to the Cloudsmith package repository API,…
- cloudsmith-apiProvides Python bindings to the Cloudsmith API (v1) for programmatic…
- azure-cli-coreProvides the core Python library and CLI framework for Microsoft…
Give your agent the search over MCP, or paste the wish link into any chat.
More Internet packages
Botocore provides low-level, data-driven access to Amazon Web Services APIs, serving as the foundation for the AWS CLI and boto3 libraries.
Install it if you need programmatic access to AWS services.
Provides an async client for AWS services using botocore and aiohttp, allowing you to call AWS APIs asynchronously within asyncio-based applications.
Install it if you need to call AWS services from async Python code; it is the standard way to do so.
Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.
Provides a platform-independent file locking mechanism to coordinate access to files across processes and threads.
FastAPI is a Python web framework for building REST APIs using type hints, with automatic request validation, serialization, and interactive API documentation.
Provides common Protocol Buffer message definitions used across Google Cloud APIs, enabling Python clients to interact with Google services.
See also cloudsmith-api · ms-fabric-cli · pephubclient · b2 · speedtest-cli · devpi-client · codecov-cli · ansible-sign · azure-cli-acr · awscliv2