DreamLake

Vault import

Status: Released in CLI 0.13.0 / Python 0.10.0, including selected TOTP upload. Production acceptance is recorded in the runtime note. The dated migration record below describes its earlier preview-only scope. Tracking: Vault #241, master #247.

2026-09-12 — canonical import interface

The CLI uses dreamlake vault import --ssh for selected SSH imports and dreamlake vault import --pass-otp for a redacted local OTP preview. Python uses client.vault.import_entries(source="ssh" | "pass-otp", prefix=...).

SSH starts with an empty checklist. Profiles, private keys and jump-host entries require separate selections. Python never prompts and requires an explicit selection for uploads. Unknown write outcomes are reconciled without replaying the write; completed entries remain saved if a later entry fails.

Pass OTP supports dry-run preview only. Upload remains unsupported, and ordinary pass passwords are not imported. The old CLI spellings remain compatibility aliases. Python retains pass_store.sync for the existing preview.

ComponentChangeValidation
CLIPR #33, merged as 77a637cFinal CI passed. Review reran type checking and 35 import tests, including real CLI subprocesses, SSH checklist PTY scenarios and synthetic GPG preview.
PythonPR #26, merged as 8afb85dReview reran the full suite: 410 passed, 60 remote tests skipped.

Tests use synthetic credentials. These review checks do not establish production vault availability or a published package version. The PRs record separate build and isolated HTTP/Mongo integration evidence.

Subsequent delivery

Package publication, production activation and selected TOTP upload subsequently passed in #307. Host enrollment saving, HOTP and remote credential lifecycle remain open. See the credential guide for current CLI/Python usage.