google-cloud-secret-manager
Google Cloud Secret Manager API client library
Decision gist · record as of 2026-08-14
Yes. This is the canonical client for Google Cloud Secret Manager, actively maintained with no known vulnerabilities, low install friction, and permissive licensing. Install it if you're building on GCP and need to store or retrieve secrets programmatically. The main prerequisite is GCP project setup and authentication configuration—not a blocker for most teams already on Google Cloud, but a gotcha if you're evaluating it in isolation.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Python >= 3.10; Google Cloud project setup, billing enabled, Secret Manager API enabled, and authentication credentials configured (service account or user credentials).
- Low install friction with a pure-wheel distribution.
- Active maintenance with a release 29 days ago; the repository is actively developed with recent commits and substantial community engagement (5371 stars).
License · maintenance · safety
Apache-2.0 (permissive) — Apache-2.0 permissive license allows commercial use, modification, and distribution with minimal restrictions—suitable for most production environments.
last release 2026-07-16 (29 days) · last repo commit 2026-08-14 · 5,371 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 177,625,752 downloads/mo, #234 on PyPI
Alternatives
Verify before relying
pip install google-cloud-secret-manager
from google.cloud import secretmanager
client = secretmanager.SecretManagerServiceClient()
name = client.secret_version_path('project-id', 'secret-id', 'latest')
response = client.access_secret_version(request={'name': name})- Whether the library supports automatic secret rotation or if rotation must be managed externally.
- Performance characteristics for high-volume secret access patterns.
- Whether caching or local secret storage is supported to reduce API calls.
What it is and what it does
This is the official Python client for Google Cloud Secret Manager, a managed service for storing and accessing sensitive data on Google Cloud Platform. It provides a straightforward API to create, retrieve, and manage secrets without handling encryption or key management yourself—the service handles those concerns. The library wraps Google's gRPC and REST APIs, so it requires a GCP project with billing enabled and the Secret Manager API activated, plus authentication credentials (typically a service account key or Application Default Credentials).
The package depends on google-api-core, google-auth, grpcio, proto-plus, protobuf, and grpc-google-iam-v1, making it part of Google's broader Python ecosystem. It's actively maintained, supports Python 3.10 through 3.14, and carries no known vulnerabilities. Use it when you need centralized, auditable secret storage for production applications—particularly in containerized or serverless environments where managing secrets locally is impractical or insecure.
Use it for
- Store and retrieve database credentials, API keys, and OAuth tokens in production applications without embedding them in code.
- Manage certificate and TLS key material for services running on Google Cloud infrastructure.
- Implement secret rotation workflows by versioning secrets and accessing the latest version through the client.
- Audit secret access in compliance-sensitive environments using Google Cloud's built-in logging and IAM integration.
- Share secrets securely across microservices by centralizing storage and controlling access via IAM policies.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes.
This is the canonical client for Google Cloud Secret Manager, actively maintained with no known vulnerabilities, low install friction, and permissive licensing. Install it if you're building on GCP and need to store or retrieve secrets programmatically. The main prerequisite is GCP project setup and authentication configuration—not a blocker for most teams already on Google Cloud, but a gotcha if you're evaluating it in isolation.
Install
google-cloud-secret-manager on PyPI
Before you install
Low install friction with a pure-wheel distribution. Active maintenance with a release 29 days ago; the repository is actively developed with recent commits and substantial community engagement (5371 stars).
Requires Python >= 3.10; Google Cloud project setup, billing enabled, Secret Manager API enabled, and authentication credentials configured (service account or user credentials).
License in practice
Apache-2.0 permissive license allows commercial use, modification, and distribution with minimal restrictions—suitable for most production environments.
Quickstart
pip install google-cloud-secret-manager
from google.cloud import secretmanager
client = secretmanager.SecretManagerServiceClient()
name = client.secret_version_path('project-id', 'secret-id', 'latest')
response = client.access_secret_version(request={'name': name})
Verify before relying
- Whether the library supports automatic secret rotation or if rotation must be managed externally.
- Performance characteristics for high-volume secret access patterns.
- Whether caching or local secret storage is supported to reduce API calls.
Package facts
| License | Apache-2.0 permissive |
| Python support | Supports the current Python release >=3.10 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 6 packagesgoogle-api-coregoogle-authgrpcioproto-plusprotobufgrpc-google-iam-v1 |
| Maintenance | Actively maintained 29 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 177,625,752 / month, #234 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableIntended Audience :: DevelopersLicense :: OSI Approved :: Apache Software LicenseOperating System :: OS IndependentProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.14Topic :: Internet |
Evidence: google_cloud_secret_manager-2.30.0-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “google cloud secret manager python”
- google-cloud-secret-managerPython client library for Google Cloud Secret Manager, enabling…
- prefect-gcpIntegrates Prefect workflow orchestration with Google Cloud Platform…
- ibm-secrets-manager-sdkA Python client library for programmatically managing secrets stored…
Give your agent the search over MCP, or paste the wish link into any chat.
More Internet packages
Botocore provides low-level, data-driven access to Amazon Web Services APIs, serving as the foundation for the AWS CLI and boto3 libraries.
Install it if you need programmatic access to AWS services.
Provides an async client for AWS services using botocore and aiohttp, allowing you to call AWS APIs asynchronously within asyncio-based applications.
Install it if you need to call AWS services from async Python code; it is the standard way to do so.
Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.
Provides a platform-independent file locking mechanism to coordinate access to files across processes and threads.
FastAPI is a Python web framework for building REST APIs using type hints, with automatic request validation, serialization, and interactive API documentation.
Provides common Protocol Buffer message definitions used across Google Cloud APIs, enabling Python clients to interact with Google services.
See also google-cloud-parametermanager · google-cloud-dlp · SecretStorage · google-cloud-api-keys · google-cloud-resource-manager · google-cloud-access-context-manager · google-cloud-filestore · google-cloud-functions · google-cloud-monitoring · google-cloud-billing