fipsign-sdk
Post-quantum signing SDK for Python. Signs and verifies any payload using ML-DSA-65 (NIST FIPS 204) — resistant to Shor's algorithm, standardized by NIST in August 2024.
Not just for auth. Sign users, orders, documents, devices, AI agents, events — any entity that needs a tamper-proof, quantum-resistant signature.
📖 Full documentation, API reference, and guides →
Install
pip install fipsign-sdk
For async support (httpx-based):
pip install fipsign-sdk[async]
Quick start
- Create a free account at app.fipsign.dev.
- In the dashboard, create a project, then create an API key inside it. Save the key — it won't be shown again.
- Use it:
from fipsign import PQAuth
pq = PQAuth("pqa_your_api_key")
result = pq.sign("user_123", role="admin")
token = result.token
verified = pq.verify(token)
if not verified.valid:
raise PermissionError("invalid token")
print(verified.payload["sub"]) # "user_123"
That's signing and verifying. The SDK also covers async usage (AsyncPQAuth), Flask/FastAPI middleware, offline (in-memory) verification, revocation, webhooks, and a full Certificate Authority module (PQCert + X.509) for issuing post-quantum certificates to devices and services — all in the developer guide.
Why ML-DSA-65?
JWT with RS256/ES256 and standard OAuth tokens rely on ECDSA or RSA — both breakable by Shor's algorithm on a sufficiently powerful quantum computer. ML-DSA-65 is based on lattice problems (Module-LWE / Module-SIS) with no known quantum speedup. Standardized by NIST in August 2024 as FIPS 204.
Links
- 📖 Developer guide — full API reference, error codes, webhooks, CA/X.509
- Dashboard: app.fipsign.dev
- API status: status.fipsign.dev
- NIST FIPS 204: csrc.nist.gov/pubs/fips/204/final
Metadata
Release files for fipsign-sdk 0.11.0
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| fipsign_sdk-0.11.0.tar.gz | 37.4 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| fipsign_sdk-0.11.0-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 79.1 kB
Release files / fipsign_sdk-0.11.0.tar.gz
| Download URL | fipsign_sdk-0.11.0.tar.gz |
|---|---|
| Size | 37.4 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
abc1cce40dcaea08102132df86000b7783549d574affca2dcd33b66a83495826
|
|
BLAKE2b-256 checksum How to use checksums |
c2c7c016383eade7367e10abe44311c4ab7abc577d3e7b1ec90aa1498c7a9607
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.12.1
|
Release files / fipsign_sdk-0.11.0-py3-none-any.whl
| Download URL | fipsign_sdk-0.11.0-py3-none-any.whl |
|---|---|
| Size | 41.6 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
3e2e9b49ff2c536b36364e30ac4deb0cdf69d07cbcfabf7f6132f8d9a9359afd
|
|
BLAKE2b-256 checksum How to use checksums |
d02022161f409bd294a815f115e4892a28b630f3d61b060b282f3a71ede7c90a
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.12.1
|