Skip to main content

Validation-first SQLAlchemy queries with Pydantic row validation.

Project description

RowGuard

Validation-first database queries for SQLAlchemy and Pydantic.

RowGuard executes SQLAlchemy queries, validates every returned row against a Pydantic model, and explicitly handles rows that fail validation.

Status

0.3.1 — streaming lifecycle fixes, raise-policy stream stats, and planning correctness for field_map / plan cache / compile_plan. Async streaming remains deferred to 0.4.0; ORM remains deferred to 0.5.0.

Install

pip install rowguard

Requires Python 3.10+, Pydantic v2, SQLAlchemy 2.x, and SQLRules.

Quickstart

from typing import Annotated

from pydantic import BaseModel, Field
from sqlalchemy import Column, Integer, MetaData, String, Table, create_engine
from sqlalchemy.orm import Session

import rowguard


class UserRead(BaseModel):
    id: int
    name: str
    age: Annotated[int, Field(ge=18)]


metadata = MetaData()
users = Table(
    "users",
    metadata,
    Column("id", Integer, primary_key=True),
    Column("name", String),
    Column("age", Integer),
)

engine = create_engine("sqlite+pysqlite:///:memory:")
metadata.create_all(engine)

with engine.begin() as connection:
    connection.execute(
        users.insert(),
        [
            {"id": 1, "name": "Ada", "age": 37},
            {"id": 2, "name": "Legacy", "age": 12},
        ],
    )

with Session(engine) as session:
    # Disable SQLRules pushdown so invalid rows reach Pydantic and appear in rejected.
    result = rowguard.select(
        session=session,
        table=users,
        model=UserRead,
        on_reject="collect",
        use_sqlrules=False,
    )
    print(result.models)
    print(result.rejected)

    with rowguard.stream(
        session=session,
        table=users,
        model=UserRead,
        on_reject="skip",
        use_sqlrules=False,
    ) as stream:
        for model in stream:
            print(model)

With use_sqlrules=True (the default), supported constraints such as age >= 18 are pushed into SQL, so invalid candidate rows may never be returned.

Public API (0.3.1)

Function Purpose
select(...) Build and execute a table query with validation
execute(...) Validate rows from an existing Select
validate_rows(...) Validate mappings without SQL
compile_plan(...) Compile an ExecutionPlan without executing
stream(...) Stream validated models without buffering accepted rows

Rejection policies: raise (default), collect, skip.

Optional planning knobs: compiled_rules= (precompiled SQLRules), strict= (Pydantic), field_map= / column_map= (validated at plan time).

Streaming knobs: yield_per=, observers= (StreamObserver / BaseStreamObserver).

Architecture

Pydantic Model
      │
      ▼
SQLRules
      │
      ▼
SQLAlchemy Query
      │
      ▼
Database
      │
      ▼
Row Adapter
      │
      ▼
Pydantic Validation
      │
      ├── Accepted Model
      └── Rejected Row

Documentation

Development

pip install -e ".[dev,async]"
make all          # ruff + mypy + pytest --cov
python examples/basic.py
python examples/streaming.py

License

MIT

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

rowguard-0.3.1.tar.gz (192.3 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

rowguard-0.3.1-py3-none-any.whl (31.1 kB view details)

Uploaded Python 3

File details

Details for the file rowguard-0.3.1.tar.gz.

File metadata

  • Download URL: rowguard-0.3.1.tar.gz
  • Upload date:
  • Size: 192.3 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for rowguard-0.3.1.tar.gz
Algorithm Hash digest
SHA256 609d93cc7040472d7a3ebcef5fb9d16e99c907e67f907d33da80003dcde115c3
MD5 55398825857183817fed039594ce32e4
BLAKE2b-256 2905003a591c12aa5cb4def23d425207b8c6ce190d22464428e19ab80e9cdf80

See more details on using hashes here.

File details

Details for the file rowguard-0.3.1-py3-none-any.whl.

File metadata

  • Download URL: rowguard-0.3.1-py3-none-any.whl
  • Upload date:
  • Size: 31.1 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for rowguard-0.3.1-py3-none-any.whl
Algorithm Hash digest
SHA256 83e0d868c1841adc16099dad3531385b5fc9ab697e7fd82cc9b7f06673ec9cb1
MD5 b73598a02050434902a13b796c8a8ca4
BLAKE2b-256 760f5acdd385e827af036b50990d82fc287911df44bfde3acb3262a0ee8d2c3f

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page