yawsso
Yet Another AWS SSO - sync up AWS CLI v2 SSO login session to legacy CLI v1 credentials
Decision gist · record as of 2026-08-14
Yes. If you use AWS SSO with CLI v2 but also rely on tools that only read legacy credentials, this solves a real friction point with no dependencies and active maintenance. The MIT license and zero security vulnerabilities make it safe to adopt. Install it if you're bridging SSO and older AWS tooling.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Python >= 3.7 and AWS CLI v2 already installed and configured with SSO.
- Low friction installation with no runtime dependencies.
- Active maintenance with recent commits and a stable release history since 2020.
License · maintenance · safety
MIT (permissive) — MIT license is permissive; you can use this freely in commercial and private projects with minimal restrictions.
last release 2026-04-21 (115 days) · last repo commit 2026-04-21 · 324 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 73,865 downloads/mo, #14,918 on PyPI
Alternatives
Verify before relying
pip install yawsso
# After AWS SSO login
aws sso login --profile dev
# Sync credentials to legacy format
yawsso -p dev- Whether pyperclip integration (optional dependency for clipboard support) is included in the base install or requires explicit installation.
- Exact behavior and security implications of ROT13 token export when used on shared systems.
What it is and what it does
yawsso bridges the gap between AWS CLI v2's SSO authentication and tools that only understand AWS CLI v1 credential files. When you log in via AWS SSO with CLI v2, your session is cached locally but not automatically written to the legacy credentials file that older tools expect. This package reads your active SSO session and writes temporary credentials into the standard AWS credentials file, making them available to any tool that reads that file.
The tool runs as a command-line utility with no runtime dependencies, offering flexible profile selection (single, multiple, pattern-matched, or all profiles), credential renaming on sync, token export with ROT13 encoding, and integrated login-then-sync workflows. It's designed for teams already using AWS SSO who need to work with tools like Terraform, CDK, or custom scripts that predate or don't support SSO natively.
Use it for
- Sync SSO credentials to legacy format so Terraform, CDK, or other tools can authenticate without SSO support.
- Export temporary credentials as environment variables for use on ephemeral instances or CI/CD runners.
- Rename SSO profiles during sync to match tool-specific naming conventions or avoid conflicts.
- Automate credential refresh in shell scripts by running yawsso before invoking AWS-dependent tools.
- Copy time-gated access tokens to clipboard for manual use on external systems or shared machines.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes.
If you use AWS SSO with CLI v2 but also rely on tools that only read legacy credentials, this solves a real friction point with no dependencies and active maintenance. The MIT license and zero security vulnerabilities make it safe to adopt. Install it if you're bridging SSO and older AWS tooling.
Install
yawsso on PyPI
Before you install
Low friction installation with no runtime dependencies. Active maintenance with recent commits and a stable release history since 2020.
Requires Python >= 3.7 and AWS CLI v2 already installed and configured with SSO.
License in practice
MIT license is permissive; you can use this freely in commercial and private projects with minimal restrictions.
Quickstart
pip install yawsso
# After AWS SSO login
aws sso login --profile dev
# Sync credentials to legacy format
yawsso -p dev
Verify before relying
- Whether pyperclip integration (optional dependency for clipboard support) is included in the base install or requires explicit installation.
- Exact behavior and security implications of ROT13 token export when used on shared systems.
Package facts
| License | MIT permissive |
| Python support | Supports the current Python release >=3.7 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | None |
| Maintenance | Actively maintained 115 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 73,865 / month, #14,918 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableOperating System :: OS IndependentProgramming Language :: Python :: 3 |
Evidence: yawsso-1.4.0-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “aws sso credentials sync”
- yawssoSyncs AWS CLI v2 SSO login sessions into legacy AWS CLI v1…
- gimme-aws-credsA CLI tool that obtains temporary AWS credentials by authenticating…
- aws-sso-libProgrammatically interact with AWS IAM Identity Center to obtain…
Give your agent the search over MCP, or paste the wish link into any chat.
More Utilities packages
Converts domain names between Unicode and ASCII-compatible encoding (Punycode) according to IDNA 2008 and Unicode Technical Standard 46, with security validation and broader script coverage than the standard library.
Install it if you work with internationalized domain names, need to validate domains, or use HTTP clients that depend on it transitively.
Detects and normalizes text encoding from unknown or ambiguous sources, supporting all IANA character sets that Python's core library provides codecs for, with the ability to register custom codecs.
Setuptools is a Python build backend and package management tool that handles building, distributing, and installing Python packages, including support for C/C++ extension modules.
Pluggy provides a plugin system that lets you define hook specifications and register implementations to be called in sequence, enabling extensible Python applications without tight coupling.
Install it if you're building an extensible application or framework.
Pygments is a syntax highlighter that colorizes source code and text in over 500 languages and formats, outputting to HTML, LaTeX, RTF, SVG, images, or ANSI terminal sequences.
Install it if you need to display or transform source code.
Six provides utility functions to write Python code that runs on both Python 2.7 and Python 3.3+, smoothing over language differences between the two versions.
See also aws-sso-lib · gimme-aws-creds · aws-sso-util · requests-aws-sign · awscliv2 · grafana-django-saml2-auth · aws-assume-role-lib · django-google-sso · docker-pycreds · awscurl