HashiCorp Boundary
Session broker from HashiCorp, pairs with Vault for JIT credential injection
Pricing: Free and open source; paid tiers on the vendor site.
Reviewed by the CyberSecTool editorial team against the public sources cited below · Last reviewed February 2026 · How we review listings
What is HashiCorp Boundary?
HashiCorp Boundary is an identity-aware session broker for remote access to infrastructure. It pairs naturally with HashiCorp Vault to provide just-in-time credential brokering: users authenticate with Boundary using their identity provider, Boundary requests short-lived credentials from Vault, and injects them into the session without exposing them. Boundary is open source (MPL 2.0) with a commercial HCP Boundary cloud offering.
- ✓ Natural fit for teams already running HashiCorp Vault
- ✓ Open source core with no license cost
- ✓ Terraform-native workflow for declarative access policies
- ✓ HCP option removes operational overhead
- • Younger product; smaller community than Teleport
- • Session recording requires Enterprise tier
- • Best value comes bundled with Vault. Less compelling standalone
- • Fewer enterprise integrations than legacy PAM
Reported in public reviews and vendor documentation. See sources below.
Key Features
Are you HashiCorp Boundary? Improve this listing with screenshots, case studies and more.
Sources & references
Where the information on this listing comes from. Always verify pricing and capabilities against the vendor before a purchasing decision.
Spot an error, or do you represent HashiCorp Boundary? Request a correction.
Quick Info
| Pricing | Free and open source; paid tiers on the vendor site. |
| Model | Open Source + HCP cloud tiers |
| Founded | 2020 |
| Cloud | Yes |
| Self-Hosted | Yes |
| Open Source | Yes |
Last updated: Feb 20, 2026
HashiCorp Boundary Alternatives
View All AlternativesFeaturedSplitSecureDistributed secrets management. No vault, no vendor dependen...