Skip to main content

FogHTTP logo

FogHTTP

Rust-powered HTTP client for Python with sync and asyncio APIs.

FogHTTP is an early MVP HTTP client. The public API is Python-first, while the transport core is implemented in Rust on top of hyper.

FogHTTP is positioned as an observable, high-concurrency Rust-powered transport for Python services. It is built for controlled service-to-service HTTP workloads where explicit lifecycle, predictable resource usage, cancellation, redirect history, and request backpressure visibility matter more than browser-like feature parity.

Until version 0.5.0, backward compatibility is not guaranteed. I will still try to keep public interfaces stable and avoid unnecessary breaking changes.

Why FogHTTP

  • Rust hyper transport with a Python-first API
  • sync and asyncio clients with the same request model
  • explicit close()/aclose() lifecycle for Rust transport resources
  • graceful sync close() for in-flight requests and cancellable async requests
  • bounded global/per-origin request backpressure, FIFO pending-acquire limits, explicit HTTP/1.1 connection caps, and per-origin pressure diagnostics
  • typed telemetry event hooks with redacted request/response lifecycle events
  • versioned telemetry snapshots that separate alert-oriented stats from diagnostic dump APIs
  • opt-in Rust-owned retries with replayability gates and immutable attempt traces, plus opt-in per-hop and post-DNS SSRF destination controls
  • opt-in async lifecycle debug snapshots for staging and tests
  • lazy process-wide shared Tokio runtime by default, opt-in dedicated runtime tuning, and fail-closed client ownership across fork()
  • focused HTTP surface for JSON, form, streaming upload, and multipart API workloads in internal services, workers, and benchmarks

Install

pip install foghttp

Runtime requirements:

  • Python >=3.11
  • orjson>=3.11,<4

Published CPython wheels use the stable cp311-abi3 ABI: each supported OS/architecture pair has one wheel for the currently validated GIL-enabled CPython 3.11 through 3.14 range. Newer Python versions are not part of the compatibility claim until they pass the same release checks. See Packaging and Python compatibility for the complete wheel matrix and validation policy.

Quick Start

import foghttp


with foghttp.Client(
    base_url="https://api.example.com",
    headers={"accept": "application/json"},
    params={"api-version": "1"},
) as client:
    response = client.get(
        "users",
        params={"limit": 10},
    )

    response.raise_for_status()
    print(response.status_code)
    print(response.json())

Async clients use the same request API:

import foghttp


async with foghttp.AsyncClient() as client:
    response = await client.post(
        "https://api.example.com/users",
        json={"name": "Ada Lovelace"},
    )
    response.raise_for_status()

What Works Today

  • sync Client and async AsyncClient
  • GET, HEAD, POST, PUT, PATCH, DELETE, and RFC 10008 QUERY
  • base_url for reusable API clients and relative request paths
  • default client headers and query params for reusable API clients
  • query params with repeated keys, JSON, form-urlencoded data, buffered bytes/text bodies, binary file-like request bodies, and streaming bytes-like upload providers
  • multipart files= uploads with bytes-like parts, binary file-like objects, direct byte streams, and replayable byte-stream factories
  • buffered Response with status flags, charset-aware text, json(), raise_for_status(), and request metadata
  • transparent gzip, deflate, and br decoding for buffered responses
  • sync and async bytes/text/line response streaming with explicit context-managed lifecycle
  • prepared Request objects with build_request() and send()
  • immutable request extensions for policy/application metadata outside the HTTP message
  • case-insensitive Headers with repeated values
  • safe policy for transport-managed request headers
  • redacted repr/error surfaces for sensitive headers, URL credentials, token-like URL params, and buffered body bytes
  • normalized URL model with origin comparison and relative joins
  • GET/HEAD/POST/QUERY redirects with final URL, history, typed same-origin and cross-origin header policy, and no cross-origin body replay
  • HTTP proxy routing and HTTPS proxy CONNECT tunnelling through explicit proxy= or trust_env=True when the proxy endpoint uses http://
  • HTTPS with default WebPKI roots, explicit custom CA certificates, and custom-only CA trust
  • graceful sync close() that waits for in-flight sync requests
  • async request cancellation that aborts the in-flight Rust request
  • bounded global and per-origin request slots with a bounded FIFO pending queue
  • opt-in global/per-origin HTTP/1.1 connection caps with separate connection acquire pressure and idle lifecycle diagnostics
  • opt-in typed telemetry event hooks for request, redirect, response headers, response body, and request completion lifecycle
  • opt-in typed transport policy hooks for lightweight request admission and response-head checks without default-path Python callbacks
  • opt-in Rust-owned retry policy for selected statuses and pre-header network failures, with safe methods, replayable bodies, and immutable attempt traces
  • opt-in Rust-owned SSRF destination policy with per-hop allowlists, post-resolution IP checks, and DNS rebinding mitigation
  • versioned telemetry snapshot metadata for stats(), dump_transport_state(), and dump_pool_diagnostics()
  • opt-in async lifecycle debug mode for active request snapshots, strict leak checks, and unclosed-client diagnostics
  • default per-response and aggregate buffered response body limits for memory safety
  • shared Tokio runtime by default, with opt-in dedicated runtime worker tuning
  • grouped HTTP status constants and reusable HTTP method constants
  • client-level Basic and synchronous callable authentication with retry refresh and cross-origin credential stripping
  • opt-in client-owned cookie jar with bounded domain/path/expiry matching, redirect/retry coordination, and redacted diagnostics

Documentation

Current Limitations

FogHTTP is currently focused on controlled HTTP workloads. Buffered responses are the broadest supported response path; sync and async response streaming are available as bytes/text/line context-managed APIs. Streaming content= uploads and multipart files= uploads are available with explicit replayability and cleanup rules. HTTP proxy routing and HTTPS proxy CONNECT tunnelling are available through proxy= and trust_env=True when the proxy endpoint itself uses http://. Proxy-routed requests fail closed when SSRFPolicy is enabled because the client cannot prove which target address a remote proxy resolves. Provider-specific OAuth flows, HTTP/2, automatic Accept-Encoding negotiation, streaming decompression, and per-request connect timeout reconfiguration are planned for later versions. Physical connection caps currently apply to the HTTP/1.1 connector path; HTTP/2 will require separate stream-level limits. Response body read timeout is available for buffered and streaming response bodies; request body write timeout is available for buffered and streaming request bodies. Socket lifecycle telemetry is available for the current HTTP/1 path. Disabling TLS verification is intentionally not supported.

Development

Development requires a Rust toolchain with cargo available in PATH.

uv run --extra dev --with "maturin>=1.7,<2" maturin develop --locked --skip-install
uv run --extra dev coverage run -m pytest
uv run --extra dev coverage report -m
uv run --extra dev pre-commit run --all-files --show-diff-on-failure

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

foghttp-0.3.9.tar.gz (1.6 MB view details)

Uploaded Source

Built Distributions

If you're not sure about the file name format, learn more about wheel file names.

foghttp-0.3.9-cp311-abi3-win_amd64.whl (2.2 MB view details)

Uploaded CPython 3.11+Windows x86-64

foghttp-0.3.9-cp311-abi3-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (2.5 MB view details)

Uploaded CPython 3.11+manylinux: glibc 2.17+ x86-64

foghttp-0.3.9-cp311-abi3-manylinux_2_17_aarch64.manylinux2014_aarch64.whl (2.6 MB view details)

Uploaded CPython 3.11+manylinux: glibc 2.17+ ARM64

foghttp-0.3.9-cp311-abi3-macosx_11_0_arm64.whl (2.3 MB view details)

Uploaded CPython 3.11+macOS 11.0+ ARM64

foghttp-0.3.9-cp311-abi3-macosx_10_12_x86_64.whl (2.3 MB view details)

Uploaded CPython 3.11+macOS 10.12+ x86-64

File details

Details for the file foghttp-0.3.9.tar.gz.

File metadata

  • Download URL: foghttp-0.3.9.tar.gz
  • Upload date:
  • Size: 1.6 MB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.14

File hashes

Hashes for foghttp-0.3.9.tar.gz
Algorithm Hash digest
SHA256 a93ed64fa01a4367748df3194fcf2efda07acfc71446eac223c2b70c20361c1d
MD5 20f0a3d9fd114ab8c976e46c5b118491
BLAKE2b-256 bf75c0f7c342d585329b3e24bba8076c9e0848ff3f9c513efde8af2825791457

See more details on using hashes here.

Provenance

The following attestation bundles were made for foghttp-0.3.9.tar.gz:

Publisher: release.yml on AmberFog/foghttp

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file foghttp-0.3.9-cp311-abi3-win_amd64.whl.

File metadata

  • Download URL: foghttp-0.3.9-cp311-abi3-win_amd64.whl
  • Upload date:
  • Size: 2.2 MB
  • Tags: CPython 3.11+, Windows x86-64
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.14

File hashes

Hashes for foghttp-0.3.9-cp311-abi3-win_amd64.whl
Algorithm Hash digest
SHA256 4c34207d69bfe13f90768f65aaa5d985c4945db259b7b1fb24a96becceb17774
MD5 d5b0b7a13014e9fd15d9333ef0f528eb
BLAKE2b-256 871fa53a3b577d33abd802e82d7883bde99da54e6e0e73653be7b4e130052b57

See more details on using hashes here.

Provenance

The following attestation bundles were made for foghttp-0.3.9-cp311-abi3-win_amd64.whl:

Publisher: release.yml on AmberFog/foghttp

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file foghttp-0.3.9-cp311-abi3-manylinux_2_17_x86_64.manylinux2014_x86_64.whl.

File metadata

File hashes

Hashes for foghttp-0.3.9-cp311-abi3-manylinux_2_17_x86_64.manylinux2014_x86_64.whl
Algorithm Hash digest
SHA256 ec0da4b1272529b86783555407f440318f0453ffd2e68f4ad36b9f4dd881a307
MD5 ca2773794e5278b39eb4085e8f51d986
BLAKE2b-256 15d5b144105f482e47e288fc94f846c57ac8d98f2a68a41591b2ecb4fc0401be

See more details on using hashes here.

Provenance

The following attestation bundles were made for foghttp-0.3.9-cp311-abi3-manylinux_2_17_x86_64.manylinux2014_x86_64.whl:

Publisher: release.yml on AmberFog/foghttp

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file foghttp-0.3.9-cp311-abi3-manylinux_2_17_aarch64.manylinux2014_aarch64.whl.

File metadata

File hashes

Hashes for foghttp-0.3.9-cp311-abi3-manylinux_2_17_aarch64.manylinux2014_aarch64.whl
Algorithm Hash digest
SHA256 b52adac4a361517935ff554311703f93a001cdd61283366856a302bbda8bfd72
MD5 0ce24ea07d219e5dea2a9d47e16c4d72
BLAKE2b-256 552254b7402efc9b7dc2c6092c6c0791a29953cf5dcd8aa6bea3a2c6329b311e

See more details on using hashes here.

Provenance

The following attestation bundles were made for foghttp-0.3.9-cp311-abi3-manylinux_2_17_aarch64.manylinux2014_aarch64.whl:

Publisher: release.yml on AmberFog/foghttp

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file foghttp-0.3.9-cp311-abi3-macosx_11_0_arm64.whl.

File metadata

File hashes

Hashes for foghttp-0.3.9-cp311-abi3-macosx_11_0_arm64.whl
Algorithm Hash digest
SHA256 50be9dca6b4cd9988c3ca5e3b010e34b888ce3c7f74736a66ba238ed5235c25f
MD5 5156f51e296b6509b90c37d49ada4c73
BLAKE2b-256 161016fff733ba75da3d269db12701fc7cb116d8edb574ead058ad7d9dc53fad

See more details on using hashes here.

Provenance

The following attestation bundles were made for foghttp-0.3.9-cp311-abi3-macosx_11_0_arm64.whl:

Publisher: release.yml on AmberFog/foghttp

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file foghttp-0.3.9-cp311-abi3-macosx_10_12_x86_64.whl.

File metadata

File hashes

Hashes for foghttp-0.3.9-cp311-abi3-macosx_10_12_x86_64.whl
Algorithm Hash digest
SHA256 085e11a57fa027684c8c2f0db33f04a424ad23b6be99abdafa87a232fffab732
MD5 dfc84207f4e9c11b0525b786bc89be87
BLAKE2b-256 bbc69de07e5988df757c41f01b7a3a3bb69c92b63775f56752fd61ad78a16333

See more details on using hashes here.

Provenance

The following attestation bundles were made for foghttp-0.3.9-cp311-abi3-macosx_10_12_x86_64.whl:

Publisher: release.yml on AmberFog/foghttp

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Release history Release notifications | RSS feed

0.4.0

6 files

This release

0.3.9 This release

6 files

0.3.8

6 files

0.3.7

6 files

0.3.6

6 files

0.3.5

21 files

0.3.4

21 files

0.3.3

21 files

0.3.2

21 files

0.3.1

21 files

0.3.0

21 files

0.2.1

21 files

0.2.0

21 files

0.1.3

21 files

0.1.2

21 files

0.1.1

21 files

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page