Pulumi
Read post

Enforce Access Token Expiry Policies in Pulumi Cloud

Pulumi Cloud now lets organization admins enforce a maximum expiry cap (in days) on personal, organization, and team access tokens. Tokens without an expiration or with remaining lifetime exceeding the cap are rejected with a 403 error. The policy applies to existing tokens based on remaining lifetime rather than original creation date. A preview tool shows which tokens would be affected before the policy is saved, enabling safe rollouts. Web console sessions and OIDC-issued short-lived tokens are exempt.

    #security#iac#pulumi
Jul 27•4m read time•From pulumi.com
Post cover image
Table of contents
Why cap token lifetimesHow it worksRolling it out without breaking CIGet started
121 Impressions
Pulumi's image
Pulumi

The Pulumi blog provides developers with resources, tutorials, and best practices for infrastructure...

92 Followers

•

924 Upvotes

Would you recommend this post?

Copy link
WhatsApp
Facebook
X
New Squad
  • © 2026 Daily Dev Ltd.
  • Guidelines
  • Explore
  • Tags
  • Sources
  • Squads
  • Leaderboard