diff --git a/pom.xml b/pom.xml
index e54d0fa..4c39295 100644
--- a/pom.xml
+++ b/pom.xml
@@ -86,6 +86,11 @@
orai18n
${oracle.jdbc.version}
+
+ com.oracle.database.security
+ oraclepki
+ ${oracle.jdbc.version}
+
com.google.code.findbugs
jsr305
diff --git a/src/test/java/org/utplsql/api/OracleWalletSupportTest.java b/src/test/java/org/utplsql/api/OracleWalletSupportTest.java
new file mode 100644
index 0000000..55a86fd
--- /dev/null
+++ b/src/test/java/org/utplsql/api/OracleWalletSupportTest.java
@@ -0,0 +1,19 @@
+package org.utplsql.api;
+
+import org.junit.jupiter.api.Test;
+
+import static org.junit.jupiter.api.Assertions.assertDoesNotThrow;
+
+/**
+ * utPLSQL-cli and utPLSQL-maven-plugin rely on this API to bring the classes ojdbc needs
+ * for Oracle Wallet (Secure External Password Store) connections.
+ * Without them, connecting with "/@TNS_ALIAS" fails with ORA-17167.
+ */
+class OracleWalletSupportTest {
+
+ @Test
+ void oraclePkiIsOnClasspath() {
+ assertDoesNotThrow(() -> Class.forName("oracle.security.pki.OracleWallet"));
+ assertDoesNotThrow(() -> Class.forName("oracle.security.pki.OracleSecretStore"));
+ }
+}