$npx skillfedfor your agent

oss2

Aliyun OSS (Object Storage Service) SDK

With conditionsPyPI InternetReleased Oct 202414.7M downloads / mopermissive licenseSource build

Decision gist · record as of 2026-08-14

sdist only — oss2-2.19.1.tar.gz · builds from source
v2.19.1 · released 2024-10-25 · 6 runtime deps: requests, crcmod, pycryptodome, aliyun-python-sdk-kms, aliyun-python-sdk-core, six

Yes, if you are already using Alibaba Cloud OSS and need a Python client. The package is stable, widely used, and carries no known vulnerabilities. However, the 658-day maintenance gap means no active bug fixes or feature development—install only if you accept that constraint and your use case is stable. Not recommended if you are evaluating cloud storage options or need an actively maintained SDK.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires valid Alibaba Cloud OSS credentials (AccessKeyId and AccessKeySecret) and an active OSS bucket endpoint; Python 2.6, 2.7, 3.3–3.8 are the documented supported versions.
  • High install friction due to six runtime dependencies including cryptographic libraries (pycryptodome) and Alibaba-specific SDK packages (aliyun-python-sdk-kms, aliyun-python-sdk-core).
  • Maintenance is dormant—last release was 658 days ago, so expect no active bug fixes or feature updates.

License · maintenance · safety

permissive license (permissive) — MIT license (permissive) means you can use, modify, and distribute this package freely in commercial and private projects with minimal restrictions.

last release 2024-10-25 (658 days)

0 known vulnerabilities (OSV.dev, 2026-08-14) · 14,673,043 downloads/mo, #1,220 on PyPI

Verify before relying

pip install oss2

import oss2

auth = oss2.Auth('access_key_id', 'access_key_secret')
bucket = oss2.Bucket(auth, 'http://oss-cn-hangzhou.aliyuncs.com', 'bucket_name')
bucket.put_object('key', 'content')
result = bucket.get_object('key')
print(result.read())
  • Whether the package works reliably with Python versions beyond 3.8 (classifiers list 3.8 as the highest, but latest_release is recent).
  • Current status of the aliyun-python-sdk-kms and aliyun-python-sdk-core dependencies and their own maintenance.
  • Whether dormant status reflects intentional stability or abandonment.
Same gist for agents: .md · .json

What it is and what it does

oss2 is the Python SDK for Alibaba Cloud's Object Storage Service, a cloud storage platform operated by Alibaba. It wraps HTTP operations to let you authenticate with OSS, create and manage buckets, and perform standard object operations—upload, download, delete, and list. The SDK depends on requests for HTTP transport, crcmod for checksums, pycryptodome for cryptographic operations, and Alibaba's own SDK packages for KMS integration and core API calls.

The package is mature (Production/Stable classifier, first released in 2015) and widely downloaded (14 million monthly downloads, top 5000 PyPI packages). However, it has been dormant for 658 days with no recent maintenance activity, so it is best suited for stable, production workloads that do not require active support or updates. If you are already committed to Alibaba Cloud OSS and need a straightforward Python client, this is the official choice; if you are evaluating cloud storage options, the lack of recent maintenance may be a concern.

Use it for

  • Upload and download files to Alibaba Cloud OSS buckets from Python applications without writing raw HTTP code.
  • Batch process objects stored in OSS—iterate over bucket contents, delete objects, or manage metadata.
  • Integrate OSS storage into data pipelines or web applications that run on Alibaba Cloud infrastructure.
  • Implement server-side encryption and KMS key management for sensitive data stored in OSS.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you are already using Alibaba Cloud OSS and need a Python client.

The package is stable, widely used, and carries no known vulnerabilities. However, the 658-day maintenance gap means no active bug fixes or feature development—install only if you accept that constraint and your use case is stable. Not recommended if you are evaluating cloud storage options or need an actively maintained SDK.

Install

oss2 on PyPI

Before you install

High install friction due to six runtime dependencies including cryptographic libraries (pycryptodome) and Alibaba-specific SDK packages (aliyun-python-sdk-kms, aliyun-python-sdk-core). Maintenance is dormant—last release was 658 days ago, so expect no active bug fixes or feature updates.

Requires valid Alibaba Cloud OSS credentials (AccessKeyId and AccessKeySecret) and an active OSS bucket endpoint; Python 2.6, 2.7, 3.3–3.8 are the documented supported versions.

License in practice

MIT license (permissive) means you can use, modify, and distribute this package freely in commercial and private projects with minimal restrictions.

Quickstart

pip install oss2

import oss2

auth = oss2.Auth('access_key_id', 'access_key_secret')
bucket = oss2.Bucket(auth, 'http://oss-cn-hangzhou.aliyuncs.com', 'bucket_name')
bucket.put_object('key', 'content')
result = bucket.get_object('key')
print(result.read())

Verify before relying

  • Whether the package works reliably with Python versions beyond 3.8 (classifiers list 3.8 as the highest, but latest_release is recent).
  • Current status of the aliyun-python-sdk-kms and aliyun-python-sdk-core dependencies and their own maintenance.
  • Whether dormant status reflects intentional stability or abandonment.

Package facts

Licensepermissive license permissive
Python supportNot specified
Install frictionHigh. Source build required
Runtime dependencies
6 packages
requestscrcmodpycryptodomealiyun-python-sdk-kmsaliyun-python-sdk-coresix
MaintenanceDormant 658 days since the last release
First released
Downloads14,673,043 / month, #1,220 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 5 - Production/StableIntended Audience :: DevelopersLicense :: OSI Approved :: MIT LicenseOperating System :: OS IndependentProgramming Language :: PythonProgramming Language :: Python :: 2Programming Language :: Python :: 2.6Programming Language :: Python :: 2.7Programming Language :: Python :: 3Programming Language :: Python :: 3.3Programming Language :: Python :: 3.4Programming Language :: Python :: 3.5Programming Language :: Python :: 3.6Programming Language :: Python :: 3.7Programming Language :: Python :: 3.8

Evidence: oss2-2.19.1.tar.gz

Tags

Capabilities
alibaba cloud oss sdkobject storage python clientaliyun oss upload downloadcloud storage management sdkoss bucket operations
Topics
alibaba-cloudobject-storagecloud-sdk

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “oss bucket operations”

  • oss2Python SDK for uploading, downloading, and managing objects in…
  • aiooss2Aiooss2 provides an async client for Aliyun OSS (Object Storage…
  • alibabacloud-gateway-oss-utilProvides utility functions for working with Alibaba Cloud OSS (Object…

Give your agent the search over MCP, or paste the wish link into any chat.

More Internet packages

botocore Worth it
PyPI · Internet · released Aug 2026

Botocore provides low-level, data-driven access to Amazon Web Services APIs, serving as the foundation for the AWS CLI and boto3 libraries.

Install it if you need programmatic access to AWS services.

permissive licensepure Python · 3.10+
1.5Bdownloads / mo
aiobotocore Worth it
PyPI · Internet · released Aug 2026

Provides an async client for AWS services using botocore and aiohttp, allowing you to call AWS APIs asynchronously within asyncio-based applications.

Install it if you need to call AWS services from async Python code; it is the standard way to do so.

Apache-2.0pure Python · 3.10+
1.2Bdownloads / mo
pydantic Worth it
PyPI · Python Modules · released May 2026

Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.

MITpure Python · 3.9+
1.1Bdownloads / mo
filelock Worth it
PyPI · Libraries · released Aug 2026

Provides a platform-independent file locking mechanism to coordinate access to files across processes and threads.

MITpure Python · 3.10+
717.1Mdownloads / mo
fastapi Worth it
PyPI · Software Development · released Jul 2026

FastAPI is a Python web framework for building REST APIs using type hints, with automatic request validation, serialization, and interactive API documentation.

MITpure Python · 3.10+
568.6Mdownloads / mo
googleapis-common-protos Worth it
PyPI · Internet · released Aug 2026

Provides common Protocol Buffer message definitions used across Google Cloud APIs, enabling Python clients to interact with Google services.

Apache-2.0pure Python · 3.10+
513.7Mdownloads / mo

See also alibabacloud-oss-v2 · ossfs · tablestore · aiooss2 · alibabacloud-oss20190517 · alibabacloud-gateway-oss · alibabacloud-gateway-oss-util · alibabacloud-oss-util · aliyun-python-sdk-core · aliyun-python-sdk-core-v3