Skip to main content

Flask-Security

https://github.com/pallets-eco/flask-security/actions/workflows/tests.yml/badge.svg?branch=main&event=push Coverage! https://img.shields.io/github/tag/pallets-eco/flask-security.svg Downloads Downloads License Documentation Status https://img.shields.io/badge/code%20style-black-000000.svg pre-commit

Quickly add security features to your Flask application.

Notes on this repo

As of 7/30/2024, the independent fork Flask-Security-Too replaced the archived Flask-Security repo (now called Flask-Security-3.0). This repo is published at PyPI at both Flask-Security and Flask-Security-Too. Please consider changing your requirements file to point to flask-security.

Flask-Security-Too was a fork from the 3.0.0 version of the Original

Pallets Community Ecosystem

This project is part of the Pallets Community Ecosystem. Pallets is the open source organization that maintains Flask; Pallets-Eco enables community maintenance of related projects. If you are interested in helping maintain this project, please reach out on the Pallets Discord server <https://discord.gg/pallets>.

Goals

  • Use OWASP to guide best practice and default configurations.

  • Be more opinionated and ‘batteries’ included by reducing reliance on abandoned projects and bundling in support for common use cases.

  • Follow the Pallets lead on supported versions, documentation standards and any other guidelines for extensions that they come up with.

  • Continue to add newer authentication/authorization standards:
    • Support for Refresh Tokens (5.9)

    • Support username recovery and changing username (5.6)

    • Support for changing email (5.5)

    • ‘Social Login (OAuth)’ integrated (using authlib) (5.1)

    • WebAuthn/Passkey support (5.0)

    • Two-Factor recovery codes (5.0)

    • First-class support for username as identity (4.1)

    • Support for freshness decorator to ensure sensitive operations have new authentication (4.0)

    • Support for email normalization and validation (4.0)

    • Unified signin (username, phone, passwordless) feature (3.4)

    • Two/Multi-Factor authentication supporting SMS, email, authenticator apps (4.0)

Contributing

Issues and pull requests are welcome. Other maintainers are also welcome. Please consult these contributing guidelines.

Installing

Install and update using pip:

pip install -U Flask-Security

Resources

Metadata

Release files for Flask-Security-Too 5.9.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for Flask-Security-Too 5.9.1
File Size Uploaded
flask_security_too-5.9.1.tar.gz 789.0 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for Flask-Security-Too 5.9.1
File Interpreter ABI Platform
flask_security_too-5.9.1-py3-none-any.whl Python 3 none any Details

Total release size: 1.3 MB

Release files / flask_security_too-5.9.1.tar.gz

Download URL flask_security_too-5.9.1.tar.gz
Size 789.0 kB
Tags Source
SHA-256 checksum
How to use checksums
3e4eed39037061efaec370705d81687d30e5a26641944bc08d3524db9ba505e8
BLAKE2b-256 checksum
How to use checksums
8ff44afb2d916dd7b45f36bad4a14b47aea3f49957a178b2560522ee664fa03d
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 30, 2026.

Transparency log

Release files / flask_security_too-5.9.1-py3-none-any.whl

Download URL flask_security_too-5.9.1-py3-none-any.whl
Size 514.8 kB
Tags Python 3
SHA-256 checksum
How to use checksums
77b6b3a48eb2936ae7395a6340211fc323ef3d0221ff6363fca54fc0b5c2b394
BLAKE2b-256 checksum
How to use checksums
5c1fc98870ef4285b18041c0b70926242dca0da71e4a14155d9f9bc5323bbf63
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 30, 2026.

Transparency log

Release history Release notifications | RSS feed

This release

5.9.1 This release

2 release files

5.9.0

2 release files

5.8.3

2 release files

5.8.2

2 release files

5.8.1

2 release files

5.8.0

2 release files

5.7.1

2 release files

5.7.0

2 release files

5.6.2

2 release files

5.6.1

2 release files

5.6.0

2 release files

5.5.2

2 release files

5.5.0

2 release files

5.4.3

2 release files

5.4.2

2 release files

5.4.1

2 release files

5.4.0

2 release files

5.3.3

2 release files

5.3.2

2 release files

5.3.1

2 release files

5.3.0

2 release files

5.2.0

2 release files

5.1.2

2 release files

5.1.1

2 release files

5.1.0

2 release files

5.0.2

2 release files

5.0.1

2 release files

5.0.0

2 release files

4.1.6

2 release files

4.1.5

2 release files

4.1.4

2 release files

4.1.3

2 release files

4.1.2

2 release files

4.1.1

2 release files

4.1.0

2 release files

4.0.1

2 release files

4.0.0

2 release files

3.4.5

2 release files

3.4.4

2 release files

3.4.3

2 release files

3.4.2

2 release files

3.4.1

2 release files

3.4.0

2 release files

3.3.3

2 release files

3.3.2

2 release files

3.3.1

2 release files

3.3.0

2 release files

3.2.0

2 release files

3.0.2

2 release files

3.0.1

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page