shouldiuse.io

Report

Should I Use Perforce Puppet: Infrastructure Automation & Operations at Scale?

puppet.com·Analyzed 1 day ago··Based on 9 sources

Perforce Puppet is the leading modern infrastructure ops platform for automation, configuration management, DevSecOps, compliance, CI/CD, patching & more.

Depends

Depends

Evidence is thin (no real user reviews found), but this is clearly enterprise-scale tooling: buy only with hundreds-plus servers, compliance requirements, and dedicated ops staff.

Enterprise infra automation at scale; contact-sales pricing and ops overhead make it overkill for small teams.

Confidence: Low

Contact sales

Starting price

No public numbers; Enterprise & Advanced tiers

None listed

Self-serve free tier

Both tiers require contacting sales

1

Public CVEs in sources

CVE-2023-2530 privesc in Puppet Enterprise

Apr 2025

Latest noted update

Faster vulnerability remediation

Value for money2

Custom sales-only pricing; zero public numbers.

Ease of use2

Guess: code-based DSL demands specialist ops skills.

Feature depth5

Config, compliance, patching, CI/CD in one platform.

Security posture3

Compliance tooling, but one serious enterprise CVE.

Pros

  • Automates config management, patching, and compliance at fleet scale.²
  • Continuous compliance and drift remediation built in.²
  • April 2025 update speeds remediation of known vulnerabilities.
  • Code-based desired-state management across IT systems.³

Cons

  • No public pricing; every tier requires a sales call.
  • Sales-only buying slows evaluation and comparison.
  • Had a privilege-escalation flaw (CVE-2023-2530) in Puppet Enterprise.

Gotchas

  • highGuess: Puppet DSL configs create lock-in; migrating to other tools means rewriting.
  • mediumZero self-serve pricing; no number without a sales conversation.
  • mediumTwo tiers (Enterprise, Advanced) but feature differences undisclosed before the call.
  • mediumPatch promptly: CVE-2023-2530 enabled privilege escalation to remote code execution.

Best for

  • Large fleets, hundreds-plus servers
  • Regulated teams needing continuous compliance
  • Orgs standardizing config as code
  • Companies with dedicated ops/platform staff

Not for

  • Small teams with a handful of servers
  • Anyone wanting transparent, self-serve pricing
  • Teams without ops staff to learn the DSL
  • Startups that can run on Ansible and scripts

Pricing

Enterprise

Not disclosed

  • Custom quote only
  • Full platform, details via sales

Advanced

Not disclosed

  • Custom quote only
  • Feature set unclear without sales call

Security

Compliance-focused platform with a security page; one notable past privilege-escalation CVE in Puppet Enterprise.

  • CVE-2023-2530: Puppet Enterprise privilege escalationPrivilege escalation flaw in the orchestration service that enables remote code execution.

What users say

No verbatim user reviews surfaced; sources are mostly vendor pages and SEO directory listings.

Alternatives

Compare Perforce Puppet: Infrastructure Automation & Operations at Scale with each alternative.

Ansible

Agentless, easier start; Red Hat's direct Puppet competitor.

Automox

Simpler, patching-first endpoint automation.

Full analysis

Based on 9 public sources; mostly vendor and directory pages — no verbatim user reviews or ratings found.

Sources

  1. official
  2. official
  3. review
  4. review
  5. security
  6. news
  7. review
  8. review
  9. review

Rate this review

Anonymous. You can change your vote.

Loading votes…

Ask a follow-up

Ask if a use case fits. Answers stay inside this report and its sources.

    Comments

    One queue. No replies. Give a display name first. Limit: 7 comments per day.

    Save a name to write a comment.

    No comments yet.