Skip to main content

Minimal JWT creation and validation with zero dependencies.

Project description

philiprehberger-jwt-lite

Tests PyPI version Last updated

Minimal JWT creation and validation with zero dependencies.

Installation

pip install philiprehberger-jwt-lite

Usage

from philiprehberger_jwt_lite import create_token, verify_token

token = create_token({"sub": "user123"}, "my-secret")
payload = verify_token(token, "my-secret")

Token Expiration

from philiprehberger_jwt_lite import create_token, verify_token, ExpiredTokenError

token = create_token({"sub": "user123"}, "my-secret", expires_in=3600)

try:
    payload = verify_token(token, "my-secret")
except ExpiredTokenError:
    print("Token has expired")

Custom Algorithm

from philiprehberger_jwt_lite import create_token, verify_token

token = create_token({"sub": "user123"}, "my-secret", algorithm="HS512")
payload = verify_token(token, "my-secret", algorithm="HS512")

Custom Claims Validation

from philiprehberger_jwt_lite import create_token, verify_token

token = create_token({"sub": "user123", "role": "admin"}, "my-secret")

payload = verify_token(
    token,
    "my-secret",
    validators={"role": lambda r: r == "admin"},
)

Token Refresh

from philiprehberger_jwt_lite import create_token, refresh_token

token = create_token({"sub": "user123"}, "my-secret", expires_in=3600)
new_token = refresh_token(token, "my-secret", extends_by=7200)

JTI Auto-Generation

from philiprehberger_jwt_lite import create_token, decode_token

token = create_token({"sub": "user123"}, "my-secret", include_jti=True)
payload = decode_token(token)
print(payload["jti"])  # e.g. "a1b2c3d4-..."

Token Revocation

from philiprehberger_jwt_lite import create_token, verify_token, TokenRevokedError

revoked: set[str] = set()
token = create_token({"sub": "user123"}, "my-secret", include_jti=True)

# Later, revoke the token by its jti
# revoked.add(jti)

try:
    payload = verify_token(token, "my-secret", is_revoked=lambda jti: jti in revoked)
except TokenRevokedError:
    print("Token has been revoked")

Decode Without Verification

from philiprehberger_jwt_lite import decode_unverified

header, payload = decode_unverified(token)
print(header["alg"])  # "HS256"

API

Function / Class Description
create_token(payload, secret, algorithm, expires_in, include_jti) Create a signed JWT token
verify_token(token, secret, algorithm, validators, is_revoked) Verify signature and expiration, run custom claim validators, return payload
refresh_token(token, secret, extends_by, algorithm) Verify and re-sign a token with a new expiration
decode_token(token) Decode payload without signature verification
decode_unverified(token) Decode header and payload without signature validation
ExpiredTokenError Raised when a token's exp claim is in the past
InvalidTokenError Raised when a token is malformed or signature is invalid
TokenRevokedError Raised when a token has been revoked

Development

pip install -e .
python -m pytest tests/ -v

Support

If you find this project useful:

Star the repo

🐛 Report issues

💡 Suggest features

❤️ Sponsor development

🌐 All Open Source Projects

💻 GitHub Profile

🔗 LinkedIn Profile

License

MIT

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

philiprehberger_jwt_lite-0.3.1.tar.gz (7.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

philiprehberger_jwt_lite-0.3.1-py3-none-any.whl (5.9 kB view details)

Uploaded Python 3

File details

Details for the file philiprehberger_jwt_lite-0.3.1.tar.gz.

File metadata

File hashes

Hashes for philiprehberger_jwt_lite-0.3.1.tar.gz
Algorithm Hash digest
SHA256 1ba5c9ae182bbce9d281163e1fd64ecf6007987a7310230341633cb7583feddd
MD5 f6452a85a7e86ea3d7994d9a803bfcc8
BLAKE2b-256 9a5b2b3aea6fd54d761727454f9874068c35c61e2b0ce998d0ca270afb08e789

See more details on using hashes here.

File details

Details for the file philiprehberger_jwt_lite-0.3.1-py3-none-any.whl.

File metadata

File hashes

Hashes for philiprehberger_jwt_lite-0.3.1-py3-none-any.whl
Algorithm Hash digest
SHA256 88eab93bdd456ded22137fc540bf955a70b47794530a4d96e086ce3661bdafb0
MD5 37dc7aade1804b6921335c14570ef3b8
BLAKE2b-256 304f5632e1ea5f814c789712b50243c11cd61f14bb0c0a4a5efc54a50401897e

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page