$npx skillfedfor your agent

pulumi-vault

A Pulumi package for creating and managing HashiCorp Vault cloud resources.

Worth itPyPI Build ToolsReleased Aug 2026105.1K downloads / moApache-2.0Pure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — pulumi_vault-7.11.1-py3-none-any.whl
v7.11.1 · released 2026-08-11 · Python >=3.9 · 4 runtime deps: parver, pulumi, semver, typing-extensions

Yes. Active maintenance, low install friction, permissive license, and no known vulnerabilities make it safe to adopt. Install it if you use Pulumi and need to manage Vault resources programmatically; the tight integration with Pulumi's config and secret handling is its main value. Verify that the specific Vault resource types you need are supported in this version before committing to it in production.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires Pulumi CLI to be installed first and a running Vault server with valid address and authentication token (set via VAULT_ADDR and VAULT_TOKEN environment variables or Pulumi config).
  • Low install friction; pure Python wheel with four lightweight runtime dependencies.
  • Active maintenance with a release 3 days ago; repository shows ongoing commits and is not archived.

License · maintenance · safety

Apache-2.0 (permissive) — Apache-2.0 permissive license allows commercial and private use with minimal restrictions; you must include a copy of the license and state significant changes.

last release 2026-08-11 (3 days) · last repo commit 2026-08-14 · 28 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 105,062 downloads/mo, #12,723 on PyPI

Verify before relying

pip install pulumi_vault

import pulumi
import pulumi_vault as vault

# Configure provider with Vault address and token
config = pulumi.Config()
vault_addr = config.require_secret('vault:address')
vault_token = config.require_secret('vault:token')
  • Specific Vault resource types and operations supported by this provider version
  • Whether child token creation and TTL management work as documented in all Vault configurations
  • TLS certificate authentication support status (description suggests it may not be implemented)
Same gist for agents: .md · .json

What it is and what it does

pulumi-vault is a Pulumi resource provider that bridges Pulumi's infrastructure-as-code framework with HashiCorp Vault, allowing you to declare and manage Vault resources (secrets engines, auth methods, policies, tokens) as part of your Pulumi stack. It requires the Pulumi CLI and a running Vault server; you authenticate by providing a Vault address and token, optionally with TLS certificate validation and namespace configuration. The provider automatically creates child tokens with limited TTL to reduce secret exposure.

You use it by installing the package, configuring your Vault connection details through Pulumi config or environment variables, and then writing Pulumi code in Python (or other supported languages) to create and manage Vault resources declaratively. It handles authentication, certificate validation, and retry logic, letting you version-control your Vault configuration alongside the rest of your infrastructure.

Use it for

  • Automate Vault secret engine and auth method provisioning as part of infrastructure deployment pipelines
  • Define Vault policies and token roles declaratively alongside application infrastructure in Pulumi stacks
  • Manage Vault namespaces and configuration in multi-tenant or enterprise Vault deployments
  • Integrate Vault secret management into GitOps workflows by storing Vault resource definitions in version control
  • Programmatically configure Vault certificate authentication and TLS settings during infrastructure setup

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

Worth it

Yes.

Active maintenance, low install friction, permissive license, and no known vulnerabilities make it safe to adopt. Install it if you use Pulumi and need to manage Vault resources programmatically; the tight integration with Pulumi's config and secret handling is its main value. Verify that the specific Vault resource types you need are supported in this version before committing to it in production.

Install

pulumi-vault on PyPI

Before you install

Low install friction; pure Python wheel with four lightweight runtime dependencies. Active maintenance with a release 3 days ago; repository shows ongoing commits and is not archived.

Requires Pulumi CLI to be installed first and a running Vault server with valid address and authentication token (set via VAULT_ADDR and VAULT_TOKEN environment variables or Pulumi config).

License in practice

Apache-2.0 permissive license allows commercial and private use with minimal restrictions; you must include a copy of the license and state significant changes.

Quickstart

pip install pulumi_vault

import pulumi
import pulumi_vault as vault

# Configure provider with Vault address and token
config = pulumi.Config()
vault_addr = config.require_secret('vault:address')
vault_token = config.require_secret('vault:token')

Verify before relying

  • Specific Vault resource types and operations supported by this provider version
  • Whether child token creation and TTL management work as documented in all Vault configurations
  • TLS certificate authentication support status (description suggests it may not be implemented)

Package facts

LicenseApache-2.0 permissive
Python supportSupports the current Python release >=3.9
Install frictionLow. Pure-Python wheel
Runtime dependencies
4 packages
parverpulumisemvertyping-extensions
MaintenanceActively maintained 3 days since the last release
Last repo commit
First released
Downloads105,062 / month, #12,723 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14

Evidence: pulumi_vault-7.11.1-py3-none-any.whl

Tags

Capabilities
pulumi vault providerinfrastructure as code vaultmanage vault resources programmaticallypulumi secret managementvault automation with pulumihashicorp vault sdkdeclarative vault configuration
Topics
infrastructure-as-codesecrets-managementvault-integration
PyPI keywords
pulumivault

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “pulumi vault provider”

  • pulumi-vaultPulumi resource provider for HashiCorp Vault that lets you define and…
  • pulumi-azurePulumi provider for Azure Classic that lets you define and manage…
  • pulumiverse-timeA Pulumi resource provider that lets you manage time-based resources…

Give your agent the search over MCP, or paste the wish link into any chat.

More Build Tools packages

packaging Worth it
PyPI · Build Tools · released Aug 2026

Provides reusable utilities for Python packaging interoperability, including version handling, specifiers, markers, requirements, tags, and metadata parsing according to standards like PEP 440 and PEP 425.

Apache-2.0 OR BSD-2-Clausepure Python · 3.9+
2.2Bdownloads / mo
tqdm Worth it
PyPI · Libraries · released Jul 2026

Wraps any iterable to display a real-time progress bar in the terminal or Jupyter notebook, showing iteration count, elapsed time, and estimated time remaining.

copyleftpure Python · 3.8+
648.6Mdownloads / mo
pip Worth it
PyPI · Build Tools · released Aug 2026

pip is the standard installer for Python packages, enabling you to download and install packages from the Python Package Index and other indexes into your Python environment.

MITpure Python · 3.10+
617.5Mdownloads / mo
hatchling Worth it
PyPI · Python Modules · released Aug 2026

Hatchling is a standards-compliant Python build backend that handles packaging, metadata, and distribution of Python projects when configured in a project's pyproject.toml file.

MITpure Python · 3.10+
484.2Mdownloads / mo
grpcio-tools Worth it
PyPI · Build Tools · released Jul 2026

Generates Python gRPC service stubs and message classes from Protocol Buffer definitions, enabling developers to build gRPC clients and servers.

Apache-2.0compiled wheel · 3.10+
278.2Mdownloads / mo
pre-commit Worth it
PyPI · Build Tools · released Aug 2026

pre-commit is a framework for installing and running git hooks written in any language before commits are made, automating code quality and validation checks across multi-language projects.

Install it if your team needs consistent, automated validation at commit time.

permissive licensepure Python · 3.10+
179.9Mdownloads / mo

See also pulumi-tls · pulumi-docker · saltext.vault · pulumi-postgresql · pulumi-gitlab · pulumi-datadog · pulumi-pulumiservice · pulumi-github · hvac · pulumi-keycloak