oras
OCI Registry as Storage Python SDK
Decision gist · record as of 2026-08-14
Yes, if you need to push OCI Artifacts to registries from Python. The package has low install friction, active maintenance, no known vulnerabilities, and permissive licensing. It's well-positioned in the top 5000 PyPI packages by download volume, indicating real-world adoption.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Low install friction with only two lightweight runtime dependencies (jsonschema and requests).
- Active maintenance with a release 6 days ago and ongoing commits.
License · maintenance · safety
LICENSE (permissive) — Licensed under Apache 2.0 (permissive), allowing commercial and private use with minimal restrictions.
last release 2026-08-08 (6 days) · last repo commit 2026-08-08 · 67 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 2,431,059 downloads/mo, #3,068 on PyPI
Alternatives
Verify before relying
pip install oras
import oras
# Use oras to push OCI artifacts to a registry- Whether the package supports Python versions beyond 3.7, given classifiers list 3.7 but requires_python is unspecified
- What specific OCI registry implementations are tested or recommended for compatibility
What it is and what it does
ORAS Python is a Python SDK for working with OCI Artifacts in OCI Conformant registries. It enables developers to programmatically push artifacts to registries from within Python applications, treating the registry as a storage backend. The package depends on jsonschema for validation and requests for HTTP communication with registries.
The library is designed for developers who need to integrate artifact storage into Python workflows, particularly in containerized or cloud-native environments where OCI registries serve as centralized artifact storage. It abstracts the complexity of OCI registry APIs behind a Python-friendly interface.
Use it for
- Push custom artifacts or configurations to an OCI registry from a Python application or CI/CD pipeline
- Integrate artifact storage into Python-based deployment or build automation tools
- Store and retrieve non-container artifacts (documents, models, binaries) in OCI registries
- Build Python tools that interact with OCI-conformant registries as a storage backend
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, if you need to push OCI Artifacts to registries from Python.
The package has low install friction, active maintenance, no known vulnerabilities, and permissive licensing. It's well-positioned in the top 5000 PyPI packages by download volume, indicating real-world adoption.
Install
oras on PyPI
Before you install
Low install friction with only two lightweight runtime dependencies (jsonschema and requests). Active maintenance with a release 6 days ago and ongoing commits.
License in practice
Licensed under Apache 2.0 (permissive), allowing commercial and private use with minimal restrictions.
Quickstart
pip install oras
import oras
# Use oras to push OCI artifacts to a registry
Verify before relying
- Whether the package supports Python versions beyond 3.7, given classifiers list 3.7 but requires_python is unspecified
- What specific OCI registry implementations are tested or recommended for compatibility
Package facts
| License | LICENSE permissive |
| Python support | Not specified |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 2 packagesjsonschemarequests |
| Maintenance | Actively maintained 6 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 2,431,059 / month, #3,068 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Intended Audience :: DevelopersIntended Audience :: Science/ResearchLicense :: OSI Approved :: Apache Software LicenseOperating System :: UnixProgramming Language :: PythonProgramming Language :: Python :: 3 :: OnlyProgramming Language :: Python :: 3.7Topic :: Scientific/EngineeringTopic :: Software Development |
Evidence: oras-0.2.43-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “OCI artifact push registry”
- orasORAS Python is an SDK that lets you push OCI Artifacts to OCI…
- azure-containerregistryClient library for managing container images, artifacts, and metadata…
- google-cloud-artifact-registryPython client library for Google Cloud Artifact Registry, enabling…
Give your agent the search over MCP, or paste the wish link into any chat.
More Software Development packages
Provides backported and experimental type hints for Python 3.9+, allowing use of newer typing features on older Python versions and enabling early experimentation with type system PEPs before they enter the standard library.
NumPy provides an N-dimensional array object and a comprehensive suite of mathematical, linear algebra, Fourier transform, and random number functions for scientific computing in Python.
FastAPI is a Python web framework for building REST APIs using type hints, with automatic request validation, serialization, and interactive API documentation.
Provides a way to document function parameters, class attributes, return types, and variables inline using Python's `Annotated` type hint syntax instead of traditional docstrings.
Typer builds command-line applications from Python functions using type hints, automatically generating help text, argument parsing, and shell completion.
Install it if you are building CLIs in Python.
Distlib provides low-level packaging utilities for building, distributing, and managing Python software—including metadata handling, version specifiers, wheel support, script installation, and dependency resolution.
See also google-cloud-artifact-registry · azure-containerregistry · ocifs · keyrings.google-artifactregistry-auth · oci · oci-openai · oci-cli · langchain-oci · borneo · gto