$npx skillfedfor your agent

pulumi-policy

Pulumi's Policy Python SDK

Worth itPyPI Quality AssuranceReleased May 2026316.5K downloads / moApache 2.0Pure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — pulumi_policy-1.21.0-py2.py3-none-any.whl
v1.21.0 · released 2026-05-20 · 4 runtime deps: pulumi, protobuf, grpcio, setuptools

Yes. The package is actively maintained, has low install friction, carries a permissive license, and solves a real need for infrastructure governance in Pulumi deployments. It is stable and widely adopted (top 15000 PyPI packages). Install if you use Pulumi and need to enforce policy on cloud resources.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Low install friction with a pure-Python wheel distribution.
  • Actively maintained as of 2026-08-09 with regular releases; last update 86 days ago.

License · maintenance · safety

Apache 2.0 (permissive) — Licensed under Apache 2.0 (permissive), allowing free use, modification, and distribution with minimal restrictions.

last release 2026-05-20 (86 days) · last repo commit 2026-08-09 · 44 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 316,453 downloads/mo, #7,677 on PyPI

Verify before relying

pip install pulumi-policy

from pulumi_policy import (
    EnforcementLevel,
    PolicyPack,
    ResourceValidationPolicy,
)

PolicyPack(
    name="my-policy",
    enforcement_level=EnforcementLevel.MANDATORY,
    policies=[
        ResourceValidationPolicy(
            name="my-rule",
            description="Example policy rule",
            validate=lambda args: [],
        ),
    ],
)
  • Whether Python version constraints exist beyond what the fact sheet specifies (requires_python is unspecified)
  • Whether the package works with all Pulumi stack languages or has language-specific limitations in practice
Same gist for agents: .md · .json

What it is and what it does

Pulumi Policy SDK is a Python library for writing and enforcing policy rules on infrastructure deployed through Pulumi. It runs during `pulumi preview` and `pulumi up` to validate that cloud resources comply with organizational standards before creation or update. Rules can be set to advisory (warnings), mandatory (errors), or remediate (automatic fixes), with violations batched during preview and halting deployment on first error during update.

The package depends on pulumi, protobuf, grpcio, and setuptools. Policies written in Python can be applied to Pulumi stacks written in any language, making it a cross-language governance tool. It is actively maintained and widely used in the Pulumi ecosystem.

Use it for

  • Enforce tagging standards on all cloud resources before deployment to ensure compliance and cost tracking.
  • Validate that databases and storage are encrypted and publicly accessible resources are restricted.
  • Automatically remediate common misconfigurations like missing backup policies or non-compliant naming conventions.
  • Prevent deployment of resources that violate security or cost policies during preview phase.
  • Implement organizational standards across teams using Pulumi in different languages.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

Worth it

Yes.

The package is actively maintained, has low install friction, carries a permissive license, and solves a real need for infrastructure governance in Pulumi deployments. It is stable and widely adopted (top 15000 PyPI packages). Install if you use Pulumi and need to enforce policy on cloud resources.

Install

pulumi-policy on PyPI

Before you install

Low install friction with a pure-Python wheel distribution. Actively maintained as of 2026-08-09 with regular releases; last update 86 days ago.

License in practice

Licensed under Apache 2.0 (permissive), allowing free use, modification, and distribution with minimal restrictions.

Quickstart

pip install pulumi-policy

from pulumi_policy import (
    EnforcementLevel,
    PolicyPack,
    ResourceValidationPolicy,
)

PolicyPack(
    name="my-policy",
    enforcement_level=EnforcementLevel.MANDATORY,
    policies=[
        ResourceValidationPolicy(
            name="my-rule",
            description="Example policy rule",
            validate=lambda args: [],
        ),
    ],
)

Verify before relying

  • Whether Python version constraints exist beyond what the fact sheet specifies (requires_python is unspecified)
  • Whether the package works with all Pulumi stack languages or has language-specific limitations in practice

Package facts

LicenseApache 2.0 permissive
Python supportNot specified
Install frictionLow. Pure-Python wheel
Runtime dependencies
4 packages
pulumiprotobufgrpciosetuptools
MaintenanceActively maintained 86 days since the last release
Last repo commit
First released
Downloads316,453 / month, #7,677 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14

Evidence: pulumi_policy-1.21.0-py2.py3-none-any.whl

Tags

Capabilities
pulumi policy enforcementcloud resource compliance rulespolicy as code for infrastructurepulumi crossguard policiesinfrastructure policy validationautomated policy remediationdeployment policy checks
Topics
policy-as-codeinfrastructure-governancepulumi-ecosystem

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “pulumi policy enforcement”

  • pulumi-policyDefines and enforces policy rules on cloud resources during Pulumi…
  • oslo.policyoslo.policy enforces role-based access control (RBAC) policies across…
  • sqlalchemy-adapterBridges PyCasbin access-control policies with SQLAlchemy-supported…

Give your agent the search over MCP, or paste the wish link into any chat.

More Quality Assurance packages

coverage Worth it
PyPI · Testing · released Aug 2026

Coverage.py measures which lines of Python code are executed during test runs, reporting coverage percentages and identifying untested code paths.

Install it if you want to measure test completeness or enforce coverage thresholds in your project.

permissive licensepure Python · 3.10+
335.8Mdownloads / mo
ruff Worth it
PyPI · Python Modules · released Aug 2026

Ruff is a Python linter and code formatter written in Rust that combines linting, formatting, and code fixing into a single tool, replacing Flake8, Black, isort, and related utilities.

MITcompiled wheel · 3.7+
316.1Mdownloads / mo
pexpect With conditions
PyPI · Software Development · released Nov 2023

Pexpect spawns and controls interactive console applications by sending input and matching output patterns, automating tasks that would otherwise require manual interaction.

ISCpure Pythonaging
200.8Mdownloads / mo
black Worth it
PyPI · Python Modules · released May 2026

Black reformats Python source code to a consistent style by parsing entire files and rewriting them according to an opinionated, deterministic set of rules, eliminating manual formatting decisions.

MITpure Python · 3.10+
179.9Mdownloads / mo
pytest-xdist Worth it
PyPI · Utilities · released Jul 2025

pytest-xdist distributes pytest tests across multiple CPU cores or machines to speed up test execution, with the simplest usage being `pytest -n auto` to spawn workers equal to available CPUs.

Install it if your test suite takes long enough that parallelization would save meaningful time.

MITpure Python · 3.9+
177.1Mdownloads / mo
cfn-lint Worth it
PyPI · Quality Assurance · released Aug 2026

Validates AWS CloudFormation templates in YAML or JSON format against resource provider schemas and best practices, checking property values and configuration correctness.

Install it if you work with CloudFormation templates.

MIT-0pure Python
114.9Mdownloads / mo

See also pulumi-docker · pulumi-google-native · pulumi-gcp · pulumi-tls · pulumi-pulumiservice · pulumi · c7n-azure · invenio-records-permissions · c7n · regopy