ibm-cos-sdk
IBM SDK for Python
Decision gist · record as of 2026-08-14
Yes, with conditions. The package is production-stable, actively maintained, and carries no known vulnerabilities. Install it if you need to interact with IBM Cloud Object Storage from Python and accept the high dependency footprint. Avoid it if your application requires AWS services beyond S3, or if you are building on a minimal environment where multiple transitive dependencies create friction.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires IBM Cloud credentials (API key, service instance ID, authentication endpoint, and service endpoint) to authenticate and connect to IBM COS.
- High install friction due to multiple runtime dependencies (ibm-cos-sdk-core, ibm-cos-sdk-s3transfer, jmespath).
- Package is actively maintained with recent releases and supports current Python versions, reducing long-term compatibility risk.
License · maintenance · safety
Apache License 2.0 (permissive) — Distributed under Apache License 2.0 (permissive), allowing commercial and private use with minimal restrictions. Users must retain license and copyright notices.
last release 2026-04-14 (122 days) · last repo commit 2026-04-14 · 46 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 1,594,356 downloads/mo, #3,731 on PyPI
Alternatives
Verify before relying
pip install ibm-cos-sdk
from ibm_cos_sdk import ibm_boto3
cos = ibm_boto3.client('s3', ibm_api_key_id='key', ibm_service_instance_id='id', ibm_auth_endpoint='endpoint', endpoint_url='url')
cos.put_object(Bucket='bucket', Key='key', Body=b'data')- Whether the package maintains full boto3 API compatibility or has documented deviations beyond S3-like operations.
- Performance characteristics and throughput limits compared to direct S3 or other cloud storage SDKs.
- Support status for the legacy Aspera high-speed transfer feature and timeline for removal.
What it is and what it does
IBM Cloud Object Storage SDK is a Python library derived from boto3 that enables developers to programmatically interact with IBM Cloud Object Storage using an S3-compatible API. It handles authentication via IBM Cloud IAM credentials, supports bucket and object operations (create, upload, download, delete), and includes features like lifecycle policies, archive tiers, and immutable object storage for compliance use cases. The package can serve as a drop-in replacement for boto3 when applications only need S3-like object storage and do not depend on other AWS services.
The SDK depends on ibm-cos-sdk-core for authentication and request handling, ibm-cos-sdk-s3transfer for multipart uploads and downloads, and jmespath for response parsing. It is actively maintained, supports Python 3.8 through 3.14, and carries no known security vulnerabilities. Installation involves multiple transitive dependencies, which increases setup complexity but is typical for cloud SDKs.
Use it for
- Upload and download files to IBM Cloud Object Storage buckets from Python applications without managing raw HTTP requests.
- Implement automatic archival policies on buckets to move infrequently accessed objects to cheaper storage tiers after a specified period.
- Configure immutable object storage policies to enforce SEC-compliant record retention and prevent accidental or malicious deletion.
- Migrate applications from AWS S3 to IBM COS by using the SDK as a drop-in replacement when no other AWS services are in use.
- Manage bucket lifecycle configurations, access control, and metadata programmatically as part of cloud infrastructure automation.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, with conditions.
The package is production-stable, actively maintained, and carries no known vulnerabilities. Install it if you need to interact with IBM Cloud Object Storage from Python and accept the high dependency footprint. Avoid it if your application requires AWS services beyond S3, or if you are building on a minimal environment where multiple transitive dependencies create friction.
Install
ibm-cos-sdk on PyPI
Before you install
High install friction due to multiple runtime dependencies (ibm-cos-sdk-core, ibm-cos-sdk-s3transfer, jmespath). Package is actively maintained with recent releases and supports current Python versions, reducing long-term compatibility risk.
Requires IBM Cloud credentials (API key, service instance ID, authentication endpoint, and service endpoint) to authenticate and connect to IBM COS.
License in practice
Distributed under Apache License 2.0 (permissive), allowing commercial and private use with minimal restrictions. Users must retain license and copyright notices.
Quickstart
pip install ibm-cos-sdk
from ibm_cos_sdk import ibm_boto3
cos = ibm_boto3.client('s3', ibm_api_key_id='key', ibm_service_instance_id='id', ibm_auth_endpoint='endpoint', endpoint_url='url')
cos.put_object(Bucket='bucket', Key='key', Body=b'data')
Verify before relying
- Whether the package maintains full boto3 API compatibility or has documented deviations beyond S3-like operations.
- Performance characteristics and throughput limits compared to direct S3 or other cloud storage SDKs.
- Support status for the legacy Aspera high-speed transfer feature and timeline for removal.
Package facts
| License | Apache License 2.0 permissive |
| Python support | Supports the current Python release >=3.8 |
| Install friction | High. Source build required |
| Runtime dependencies | 3 packagesibm-cos-sdk-coreibm-cos-sdk-s3transferjmespath |
| Maintenance | Actively maintained 122 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 1,594,356 / month, #3,731 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableIntended Audience :: DevelopersLicense :: OSI Approved :: Apache Software LicenseNatural Language :: EnglishProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3 :: OnlyProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.14Programming Language :: Python :: 3.8Programming Language :: Python :: 3.9 |
Evidence: ibm_cos_sdk-2.16.2.tar.gz
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “IBM Cloud Object Storage SDK”
- ibm-cos-sdkPython SDK for interacting with IBM Cloud Object Storage using an…
- ibm-cos-sdk-coreProvides a low-level Python interface to IBM Cloud Object Storage,…
- ibm-cos-sdk-s3transferManages transfers to and from IBM Cloud Object Storage using an…
Give your agent the search over MCP, or paste the wish link into any chat.
More Internet packages
Botocore provides low-level, data-driven access to Amazon Web Services APIs, serving as the foundation for the AWS CLI and boto3 libraries.
Install it if you need programmatic access to AWS services.
Provides an async client for AWS services using botocore and aiohttp, allowing you to call AWS APIs asynchronously within asyncio-based applications.
Install it if you need to call AWS services from async Python code; it is the standard way to do so.
Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.
Provides a platform-independent file locking mechanism to coordinate access to files across processes and threads.
FastAPI is a Python web framework for building REST APIs using type hints, with automatic request validation, serialization, and interactive API documentation.
Provides common Protocol Buffer message definitions used across Google Cloud APIs, enabling Python clients to interact with Google services.
See also ibm-cos-sdk-core · ibm-cos-sdk-s3transfer · ibm-platform-services · cos-python-sdk-v5 · ibm-vpc · ibm-watson-machine-learning · ibm-secrets-manager-sdk · coscmd · ibmcloudant · ibm-cloud-sdk-core