veracode-api-py
Python helper library for working with the Veracode APIs. Handles retries, pagination, and other features of the modern Veracode REST APIs.
Decision gist · record as of 2026-08-14
Yes. The package is actively maintained, has low install friction, carries a permissive MIT license, and solves a real problem for teams using Veracode. It has no known security vulnerabilities and is widely downloaded. Install it if you need to programmatically interact with Veracode APIs; skip it if you only use Veracode's web UI.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Veracode API credentials via ~/.veracode/credentials file or VERACODE_API_KEY_ID and VERACODE_API_KEY_SECRET environment variables.
- Low install friction with a pure-Python wheel distribution.
- Actively maintained with recent releases; repository shows ongoing development and accepts contributions.
License · maintenance · safety
MIT (permissive) — MIT license permits commercial and private use with minimal restrictions; suitable for most projects without licensing concerns.
last release 2026-06-02 (73 days) · last repo commit 2026-06-02 · 27 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 125,537 downloads/mo, #11,809 on PyPI
Alternatives
Verify before relying
pip install veracode-api-py
from veracode_api_py import VeracodeAPI
api = VeracodeAPI()
result = api.get_applications()- Completeness of Veracode API method coverage and whether all current REST API endpoints are supported.
- Proxy authentication support details and any limitations with corporate proxy setups.
- Whether the library enforces role-based access control or relies entirely on Veracode account configuration.
What it is and what it does
Veracode-api-py is a Python client library that abstracts the complexity of calling Veracode's REST APIs for application security scanning and analysis. It handles credential management from files or environment variables, automatic retries, pagination across large result sets, and response parsing. The library is not an official Veracode product but is actively maintained and widely used for integrating Veracode scanning into CI/CD pipelines and custom security workflows.
The package depends on requests for HTTP communication, veracode-api-signing for request authentication, and standard libraries like Pygments, idna, and certifi. It supports Python versions greater than 3.7. Most API methods return structured data, and the library provides both a unified VeracodeAPI class and individual API classes for granular control. Different Veracode API calls require different user roles or permissions, which the library does not enforce—that responsibility falls to the Veracode account configuration.
Use it for
- Integrate Veracode security scans into CI/CD pipelines to automate application security testing.
- Build custom dashboards or reporting tools that aggregate Veracode scan results across multiple applications.
- Query Veracode APIs from behind corporate proxies without manually handling authentication headers.
- Develop internal security tools that fetch application metadata or scan status from Veracode.
- Automate security workflows that depend on Veracode API responses in custom scripts.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes.
The package is actively maintained, has low install friction, carries a permissive MIT license, and solves a real problem for teams using Veracode. It has no known security vulnerabilities and is widely downloaded. Install it if you need to programmatically interact with Veracode APIs; skip it if you only use Veracode's web UI.
Install
veracode-api-py on PyPI
Before you install
Low install friction with a pure-Python wheel distribution. Actively maintained with recent releases; repository shows ongoing development and accepts contributions.
Requires Veracode API credentials via ~/.veracode/credentials file or VERACODE_API_KEY_ID and VERACODE_API_KEY_SECRET environment variables.
License in practice
MIT license permits commercial and private use with minimal restrictions; suitable for most projects without licensing concerns.
Quickstart
pip install veracode-api-py
from veracode_api_py import VeracodeAPI
api = VeracodeAPI()
result = api.get_applications()
Verify before relying
- Completeness of Veracode API method coverage and whether all current REST API endpoints are supported.
- Proxy authentication support details and any limitations with corporate proxy setups.
- Whether the library enforces role-based access control or relies entirely on Veracode account configuration.
Package facts
| License | MIT permissive |
| Python support | Supports the current Python release >3.7 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 5 packagesrequestsveracode-api-signingPygmentsidnacertifi |
| Maintenance | Actively maintained 73 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 125,537 / month, #11,809 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 4 - BetaIntended Audience :: DevelopersLicense :: OSI Approved :: MIT LicenseProgramming Language :: Python :: 3Topic :: Software Development :: Build Tools |
Evidence: veracode_api_py-0.9.67-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “veracode api client”
- veracode-api-pyProvides a Python wrapper for Veracode REST APIs with built-in…
- veracode-api-signingSigns HTTP requests destined for the Veracode API Gateway, handling…
- codewords-clientA Python client library for the Codewords API with built-in FastAPI…
Give your agent the search over MCP, or paste the wish link into any chat.
More Build Tools packages
Provides reusable utilities for Python packaging interoperability, including version handling, specifiers, markers, requirements, tags, and metadata parsing according to standards like PEP 440 and PEP 425.
Wraps any iterable to display a real-time progress bar in the terminal or Jupyter notebook, showing iteration count, elapsed time, and estimated time remaining.
pip is the standard installer for Python packages, enabling you to download and install packages from the Python Package Index and other indexes into your Python environment.
Hatchling is a standards-compliant Python build backend that handles packaging, metadata, and distribution of Python projects when configured in a project's pyproject.toml file.
Generates Python gRPC service stubs and message classes from Protocol Buffer definitions, enabling developers to build gRPC clients and servers.
pre-commit is a framework for installing and running git hooks written in any language before commits are made, automating code quality and validation checks across multi-language projects.
Install it if your team needs consistent, automated validation at commit time.
See also veracode-api-signing · meraki · vonage-http-client · pipedream · vapi-server-sdk · auth0-python · opencode-ai · retrying · byteplus-python-sdk-v2 · apify-client