Product Overview
Pulumi ESC
Pulumi ESC (Environments, Secrets, Configuration) is a secrets and configuration platform that lets you compose environments from multiple secret sources (AWS, Vault, Doppler, 1Password) and expose them as environment variables, files, or direct SDK calls. ESC is tightly integrated with Pulumi's infrastructure-as-code platform but works as a standalone tool too.
Last updated
Founded
2024
Pricing
Free tier; Team from $50/user/mo; Business from $90/user/mo
Verify with vendor
Deployment
Cloud
Secrets Management
SOC 2 Type 2
Key Features
+Compose environments from multiple secret sources
+Providers for AWS, Azure, GCP, Vault, Doppler, 1Password, GitHub
+Environment variables, file, or SDK access modes
+Versioned environments with rollback
+Rotation schedules and OIDC-based auth
+Native integration with Pulumi IaC
+ESC CLI and REST API
+Works with non-Pulumi workflows (CI/CD, runtime apps)
+Audit logs and access policies
+RBAC with role-based environment access
Pros & Cons
Pros
- +Sits cleanly on top of existing secrets stores — no migration needed
- +Composition model makes multi-cloud environments simple
- +Strong fit if you already use Pulumi for IaC
- +OIDC-based auth eliminates static Pulumi tokens
Cons
- –Newer product; smaller community than Doppler/Infisical
- –Best value only realized if you adopt Pulumi IaC too
- –Per-user pricing at the Team tier is steep
- –No self-hosted option
Best For
Teams using Pulumi for IaC who need a secrets layer that composes multiple backends
Community & Practitioner Evidence
Community Sources
🔗 GitHub
- →Pulumi ESC discussions on Pulumi Community[GitHub]
User Reviews
No reviews yet. Be the first to share your experience!
Sources & References
- Pulumi ESC (Official Site)[Vendor]
- Pulumi ESC Reviews on G2[User Reviews]
- Pulumi ESC Reviews on TrustRadius[User Reviews]
- Pulumi ESC Reviews on PeerSpot[User Reviews]
- Pulumi ESC discussions on Pulumi Community[Open Source Project]
- Gartner Market Guide for Secrets Management[Analyst Report]
- Forrester Wave: Secrets Management, Q4 2023[Analyst Report]
- GigaOm Radar for Key Management[Analyst Report]
- NIST SP 800-57: Recommendation for Key Management[Government Standard]
- CIS Controls: Safeguard 3.11 – Encrypt Sensitive Data at Rest[Industry Framework]
Related Comparisons & Categories
Are you from Pulumi ESC?
Claim this listing to update your product information, respond to reviews, and ensure accuracy.