tools
Pulumi IaC
Pulumi IaC lets teams define, deploy, test, and manage cloud infrastructure using general-purpose programming languages.

In inglese
Pulumi IaC provisions infrastructure across AWS, Azure, Google Cloud, Kubernetes, and other providers. Engineers can use TypeScript, JavaScript, Python, Go, .NET, Java, HCL, or YAML, then manage changes through Git and CI/CD.
It includes reusable components, previews, testing, encrypted state, secrets management, policy as code, and Automation API. The open-source engine is free; Pulumi Cloud plans add collaboration, governance, and usage-based charges for managed resources and related services.
Features
- Define infrastructure with TypeScript, JavaScript, Python, Go, .NET, Java, HCL, or YAML
- Deploy to AWS, Azure, Google Cloud, Kubernetes, and hundreds of providers
- Preview infrastructure changes before deployment
- Run unit tests and integration tests against ephemeral environments
- Create reusable infrastructure components and publish them to package registries
- Manage encrypted state, secrets, version history, and audit trails
- Enforce security and compliance with policy as code
- Use Automation API to embed infrastructure operations in applications
Use cases
- Provision cloud infrastructure from version-controlled programs
- Review infrastructure changes in pull requests
- Test infrastructure in ephemeral pre-production environments
- Build reusable infrastructure components for engineering teams
- Automate deployments through GitHub Actions, GitLab, Jenkins, or other CI/CD systems
- Create internal platforms and custom infrastructure tools with Automation API
Pros
Cons
Latest updates
- Set Up Cloud OIDC From the Pulumi CLI
The Pulumi CLI added the `pulumi env setup` command for guided OIDC onboarding with AWS, Azure, and Google Cloud.
- Pulumi Kubernetes v4.34.0: CRDs as provider extensions (v4.34.0)
Pulumi Kubernetes v4.34.0 added the `--extension` flag to extend the provider with Kubernetes CRD manifests.
- Pulumi Context API: query your infrastructure as a graph
Pulumi launched the read-only Context API in public preview, connecting managed and discovered resources, stacks, and their relationships in a graph.
- Never Miss What Your Infrastructure Is Telling You
Pulumi Cloud introduced the Notification Center, a real-time inbox for notifications that need action.
- Automatic Logging for Faster, Secure Debugging (v3.254.0)
Pulumi v3.254.0 introduced automatic logging of operations to an encrypted log file that can optionally be shared with the Pulumi team.
Capabilities
- Inline completion — “Get autocomplete, type checking, and all your favorite IDE features.” source
- Runs commands — “Run integration tests against ephemeral environments.” source
- Reviews pull requests — “Neo code reviews and Slack integration” source
- Command line — “Use it at the command line, in app code, or in CI/CD pipelines.” source
- Self-hosted — “or self-host if required.” source
- API — “Embed Pulumi in your app.” source
- Official SDKs — “Our CLI, APIs, SDKs, and Kubernetes operator ensure your config is always accessible.” source
Get it
Security
Pricing
- Starting price
- $40/mo
- Prices checked
- 2026-09-24
Free
Free
- 1 user
- IaC state management
- Pulumi Deployments
- Basic Pulumi ESC
- Unlimited projects, stacks, and environments
- Up to 500 workflow minutes
Essentials
- $40 /month
- Includes 40 Credits
- Up to 500 managed resources
- Unlimited users
- Secure collaboration and CI/CD
- Neo code reviews and Slack integration
- Resource Search and Property Search
Pro
- $400 /month
- Includes 400 Credits
- Up to 2,000 managed resources
- SAML/SSO and advanced RBAC
- Organization-managed policy enforcement
- Preventative policies
- Custom policy packs
Enterprise
- $2,000 /month
- Includes 2,000 Credits
- Up to 4,750 managed resources
- Self-hosting available
- Automatic group & user sync (SCIM)
- Unlimited custom policy packs
- Policy remediation