Vault import
Status: Released in CLI 0.13.0 / Python 0.10.0, including selected TOTP upload. Production acceptance is recorded in the runtime note. The dated migration record below describes its earlier preview-only scope. Tracking: Vault #241, master #247.
2026-09-12 — canonical import interface
The CLI uses dreamlake vault import --ssh for selected SSH imports and
dreamlake vault import --pass-otp for a redacted local OTP preview. Python uses
client.vault.import_entries(source="ssh" | "pass-otp", prefix=...).
SSH starts with an empty checklist. Profiles, private keys and jump-host entries require separate selections. Python never prompts and requires an explicit selection for uploads. Unknown write outcomes are reconciled without replaying the write; completed entries remain saved if a later entry fails.
Pass OTP supports dry-run preview only. Upload remains unsupported, and ordinary
pass passwords are not imported. The old CLI spellings remain compatibility
aliases. Python retains pass_store.sync for the existing preview.
| Component | Change | Validation |
|---|---|---|
| CLI | PR #33, merged as 77a637c | Final CI passed. Review reran type checking and 35 import tests, including real CLI subprocesses, SSH checklist PTY scenarios and synthetic GPG preview. |
| Python | PR #26, merged as 8afb85d | Review reran the full suite: 410 passed, 60 remote tests skipped. |
Tests use synthetic credentials. These review checks do not establish production vault availability or a published package version. The PRs record separate build and isolated HTTP/Mongo integration evidence.
Subsequent delivery
Package publication, production activation and selected TOTP upload subsequently passed in #307. Host enrollment saving, HOTP and remote credential lifecycle remain open. See the credential guide for current CLI/Python usage.