Credential access
Reads cloud credentials, Pulumi tokens, stack config, and secret providers.
brew / Protected-Tool-Abdeckung / Rang 755
Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für pulumi in AI-Agent-Workflows.
agent safety
pulumi is an infrastructure-as-code CLI that can mutate cloud resources from local state and credentials.
Reads cloud credentials, Pulumi tokens, stack config, and secret providers.
Can create, update, and destroy cloud infrastructure.
Can deploy application infrastructure and write stack outputs.
Gate pulumi up, destroy, refresh with writes, and config secret changes.
Allow preview only by default; require approval for any state-changing operation.
Installation
sudo av install brew:pulumibrew install pulumilocal Homebrew formula metadata
sudo port install pulumiMacPorts ports tree · sysutils/pulumi/Portfile · source: api.github.com
sudo apk add pulumiAlpine Linux edge package indexes · pulumi · source: dl-cdn.alpinelinux.org
nix profile install nixpkgs#puluminixpkgs package indexes · pkgs/by-name/pu/pulumi/package.nix · source: api.github.com
sudo pacman -S pulumiArch Linux sync databases · pulumi · source: geo.mirror.pkgbuild.com
choco install pulumiChocolatey community package catalog · pulumi · source: community.chocolatey.org
scoop install main/pulumiScoop official bucket manifest trees · bucket/pulumi.json · source: api.github.com
winget install --id Pulumi.Pulumi -eWindows Package Manager source index · Pulumi.Pulumi · source: cdn.winget.microsoft.com
Überblick
Cloud native development platform
Protected-Tool-Abdeckung
Pulumi stores cloud access tokens in credentials.json under the Pulumi home directory. Our isotope stores a single access token in the macOS keychain, removes accessTokens from the persisted credentials file, and injects PULUMI_ACCESS_TOKEN only while `pulumi` runs. Non-secret credentials metadata stays on disk.
orange risk · high confidence · infrastructure
Lokaler README-Auszug
Pulumi stores cloud access tokens in credentials.json under the Pulumi home directory. The protected-tool coverage moves a single access token into the macOS keychain, removes accessTokens from the persisted credentials file, and injects PULUMI_ACCESS_TOKEN only while pulumi runs.
Non-secret credentials metadata such as the current backend remains on disk. The detector reports the credentials file if access tokens reappear.
credentials.json files with exactly one non-empty access token aremigrated.
because one PULUMI_ACCESS_TOKEN cannot safely represent every backend.
Quelle: local coverage notes
Quellauszug
Executables
| Befehl | Art | Sichtbarkeit | Hinweis |
|---|---|---|---|
pulumi | cli | global executable | |
pulumi-language-bun | cli | global executable | |
pulumi-language-dotnet | cli | global executable | |
pulumi-language-go | cli | global executable | |
pulumi-language-hcl | cli | global executable | |
pulumi-language-java | cli | global executable | |
pulumi-language-nodejs | cli | global executable | |
pulumi-language-pcl | cli | global executable | |
pulumi-language-python | cli | global executable | |
pulumi-language-python-exec | cli | global executable | |
pulumi-language-yaml | cli | global executable | |
pulumi-resource-pulumi-nodejs | cli | global executable | |
pulumi-resource-pulumi-python | cli | global executable | |
pulumi-watch | cli | global executable |
Aktualität
Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.
https://github.com/pulumi/pulumi
Installationsmetadaten
| Package key | brew:pulumi |
|---|---|
| Version | 3.245.0 |
| Package manager | Homebrew |
| Package manager page | https://formulae.brew.sh/formula/pulumi |
| Homepage | https://www.pulumi.com/ |
| Repository | https://github.com/pulumi/pulumi |
| Upstream docs | https://www.pulumi.com/docs |
| License | Apache-2.0 |
| Source archive | https://github.com/pulumi/pulumi.git |
| Last updated | 2026-06-04T10:10:14Z |
| Pulse | updated |
| Build dependencies | go |
| Bottle | available (arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux) |
| Homebrew post-install | not defined |
| Service | none declared |
registry facts
| Source Database | Homebrew formula API |
|---|---|
| Tap | homebrew/core |
| Full Name | pulumi |
| Version Scheme | 0 |
| Revision | 0 |
| Head Version | HEAD |
| Bottle Stable Root URL | https://ghcr.io/v2/homebrew/core |
| Deprecated | no |
| Disabled | no |
| Keg Only | no |
| URL Keys |
|
source database matches
Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.
pulumi
nix profile install nixpkgs#pulumipulumi 3.243.0-r0
Infrastructure as Code SDK
sudo apk add pulumipulumi-bash-completion 3.243.0-r0
Bash completions for pulumi
sudo apk add pulumi-bash-completionpulumi-fish-completion 3.243.0-r0
Fish completions for pulumi
sudo apk add pulumi-fish-completionpulumi-language-go 3.243.0-r0
Infrastructure as Code SDK (Go language provider)
sudo apk add pulumi-language-gopulumi-language-nodejs 3.243.0-r0
Infrastructure as Code SDK (NodeJS language provider)
sudo apk add pulumi-language-nodejspulumi-language-pcl 3.243.0-r0
Infrastructure as Code SDK (PCL language provider)
sudo apk add pulumi-language-pclpulumi-language-python 3.243.0-r0
Infrastructure as Code SDK (Python language provider)
sudo apk add pulumi-language-pythonpulumi-zsh-completion 3.243.0-r0
Zsh completions for pulumi
sudo apk add pulumi-zsh-completionpulumi 3.242.0-1
Modern Infrastructure as Code
https://github.com/pulumi/pulumi
sudo pacman -S pulumipulumi
sudo port install pulumipulumi
choco install pulumimain/pulumi
scoop install main/pulumiPulumi.Pulumi
winget install --id Pulumi.Pulumi -epulumi-language-dotnet 3.106.2-r0
Infrastructure as Code SDK (.NET language provider)
sudo apk add pulumi-language-dotnetpulumi-language-hcl 0.4.0-r0
Infrastructure as Code SDK (HCL language provider)
sudo apk add pulumi-language-hclQuellspur
Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.