1. Docs
  2. Pulumi ESC

Pulumi ESC docs

Pulumi ESC is a secrets management & orchestration service for environments, secrets, and configurations.

Overview

Pulumi ESC (Environments, Secrets, and Configuration) allows teams to tackle secrets and configuration complexity for modern cloud environments, alleviating maintenance burden and reducing costly mistakes, and creating a “secure by default” posture.

Pulumi ESC is a new category of configuration as code product, motivated by our experience working with hundreds of Pulumi IaC customers to address their needs in managing secrets and configuration at scale within their Pulumi infrastructure and across other cloud applications and infrastructure projects.

Secrets Integrations

Pulumi ESC integrates with all of the most popular secrets stores to pull and synchronize secrets and configuration data, including AWS Secrets Manager, Azure Key Vault, GCP Secret Manager, HashiCorp Vault, and 1Password.

Languages

Manage configuration and secrets intuitively on any cloud using familiar languages.

Learn more about managing environments using Pulumi ESC.

Pulumi ESC integrates with Docker to manage configuration and secrets while running docker commands.

Learn about the major differences between Pulumi ESC and HashiCorp Vault.

Why Pulumi ESC?

Pulumi ESC is a centralized secrets management & orchestration service. Easily access, share, and manage secrets securely on any cloud using your favorite programming languages. Pull and sync secrets with any secrets store, and consume secrets in any application, tool, or CI/CD platform.

Have questions?

For questions or feedback, reach out on community Slack, GitHub, or contact support.

Was this page helpful?

PulumiUP May 6, 2025. Register Now.