Skip to main content

Add users to your app and decide what they can access.

Project description

plain.auth

Add users to your app and decide what they can access.

Overview

The plain.auth package provides user authentication and authorization for Plain applications. Here's a basic example of checking if a user is logged in:

# In a view
from plain.auth import get_request_user

user = get_request_user(request)
if user:
    print(f"Hello, {user.email}!")
else:
    print("You are not logged in.")

And restricting a view to logged-in users:

from plain.auth.views import AuthViewMixin
from plain.views import View

class ProfileView(AuthViewMixin, View):
    login_required = True

    def get(self):
        return f"Welcome, {self.user.email}!"

Authentication setup

Settings configuration

Configure your authentication settings in app/settings.py:

INSTALLED_PACKAGES = [
    # ...
    "plain.auth",
    "plain.sessions",
    "plain.passwords",  # Or another auth method
]

MIDDLEWARE = [
    "plain.sessions.middleware.SessionMiddleware",
]

AUTH_USER_MODEL = "users.User"
AUTH_LOGIN_URL = "login"

Creating a user model

Create your own user model using plain create users or manually:

# app/users/models.py
from plain import models
from plain.passwords.models import PasswordField


class User(models.Model):
    email = models.EmailField()
    password = PasswordField()
    is_admin = models.BooleanField(default=False)
    created_at = models.DateTimeField(auto_now_add=True)

    def __str__(self):
        return self.email

Login views

To log users in, you'll need to pair this package with an authentication method:

  • plain-passwords - Username/password authentication
  • plain-oauth - OAuth provider authentication
  • plain-passkeys (TBD) - WebAuthn/passkey authentication
  • plain-passlinks (TBD) - Magic link authentication

Example with password authentication:

# app/urls.py
from plain.auth.views import LogoutView
from plain.urls import path
from plain.passwords.views import PasswordLoginView


class LoginView(PasswordLoginView):
    template_name = "login.html"


urlpatterns = [
    path("logout/", LogoutView, name="logout"),
    path("login/", LoginView, name="login"),
]

Checking if a user is logged in

In templates, use the get_current_user() function:

{% if get_current_user() %}
    <p>Hello, {{ get_current_user().email }}!</p>
{% else %}
    <p>You are not logged in.</p>
{% endif %}

In Python code, use get_request_user():

from plain.auth import get_request_user

user = get_request_user(request)
if user:
    print(f"Hello, {user.email}!")
else:
    print("You are not logged in.")

Restricting views

Use the AuthViewMixin to restrict views to logged-in users, admin users, or custom logic:

from plain.auth.views import AuthViewMixin
from plain.exceptions import PermissionDenied
from plain.views import View


class LoggedInView(AuthViewMixin, View):
    login_required = True


class AdminOnlyView(AuthViewMixin, View):
    login_required = True
    admin_required = True


class CustomPermissionView(AuthViewMixin, View):
    def check_auth(self):
        super().check_auth()
        if not self.user.is_special:
            raise PermissionDenied("You're not special!")

The AuthViewMixin provides:

  • login_required - Requires a logged-in user
  • admin_required - Requires user.is_admin to be True
  • check_auth() - Override for custom authorization logic

Installation

Install the plain.auth package from PyPI:

uv add plain.auth

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

plain_auth-0.20.1.tar.gz (10.9 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

plain_auth-0.20.1-py3-none-any.whl (13.3 kB view details)

Uploaded Python 3

File details

Details for the file plain_auth-0.20.1.tar.gz.

File metadata

  • Download URL: plain_auth-0.20.1.tar.gz
  • Upload date:
  • Size: 10.9 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: uv/0.8.22

File hashes

Hashes for plain_auth-0.20.1.tar.gz
Algorithm Hash digest
SHA256 7fc0868c17214c8cc57c6d7d4d9a3a3f2c9383532ac2bd7431f05174e9e1d5c8
MD5 d4a2e94d4c7a09cdcaa3b8808346e240
BLAKE2b-256 c905be4b970871f66798e2c5c034901ebd8c849e2729079a61969372377f6338

See more details on using hashes here.

File details

Details for the file plain_auth-0.20.1-py3-none-any.whl.

File metadata

File hashes

Hashes for plain_auth-0.20.1-py3-none-any.whl
Algorithm Hash digest
SHA256 f881ec341f841daf27a0667455487c5d7e021781647bc4e1e558bec2e22985a5
MD5 93fdfa7c9a0c3e0ad800b0cffb65c2dd
BLAKE2b-256 27fbd331d035861d9a28249aa4193aa54dfed3159247c87aaaa167c35fa23e9c

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page