stapel-video
Video calls: rooms with shareable join codes, an access-level admission model (public / scope-trusted / restricted lobby) with a realtime waiting room over WebSockets, host admit/deny controls, join-token minting through a pluggable video-provider seam (LiveKit by default), a recording-egress seam (start/stop + a video.egress_ended event) that integrates with stapel-recordings by event and never by import, and a presence meter — per-connection spans fed by the media server's own join/leave webhooks, reconciled by a sweeper so a crashed client cannot bill forever, and read back as unioned presence time and a co-presence matrix for whatever prices them, partitioned by an opaque scope_key carried on the join grant so a workspace administrator can read their own people's monthly call time behind their own mandate.
Part of the Stapel framework — composable Django apps that deploy as a monolith or as microservices without changing module code.
Install
pip install stapel-video
At a glance
| Fact | Value |
|---|---|
| Version | 0.11.1 |
| Python | >=3.11 (3.11, 3.12, 3.13, 3.14) |
| HTTP operations | 15 |
| Config axes | 7 |
| Usage surface | 45 |
| Extension points | 16 |
| Error codes | 57 |
| Fleet dependencies | stapel-auth (optional) · stapel-core · stapel-profiles (optional) · stapel-recordings (optional) · stapel-workspaces (optional) |
Documentation
OpenAPI · capabilities.json · llms.txt (for agents)
What this is
- Rooms with human-shareable join codes (
abc-defg-hij). - Admission model —
public(anyone with the code joins),scope_trusted(members of the room's scope join instantly, others wait),restricted(everyone but the host waits in a lobby). - Realtime lobby on the fleet substrate
(stapel-realtime) — one
ephemeral stream
video:lobby:<join_code>carryinglobby.waiting/lobby.admitted/lobby.deniedon the v1 wire envelope, gated on room membership. A browser opens it with its JWT cookie (no header a browser cannot send), behind the origin guard that ambient credential requires. - Host controls — admit / deny waiting guests.
- Provider seam — one
VideoProviderABC (mint join token, create room, start/stop recording egress, verify webhook). Swap vendors without forking. - Recording is a seam, not a pipeline:
start/stop_egressproxy the provider and avideo.egress_endedcomm event carries the storage key to stapel-recordings — by event, never by import. - Presence metering — per-connection spans fed by the media server's own join/leave webhooks (the only departure signal that survives a closed laptop), reconciled by a sweeper so a lost webhook cannot bill forever, and read back as unioned presence time and a co-presence matrix. Raw seconds, no threshold: this instance meters, whatever prices it decides what counts.
- Per-tenant usage — spans carry an opaque
scope_keyset on the join grant, so "who in THIS workspace talked how much, per month" is a read this library answers, gated on the caller's mandate in that very scope. A foreign key answers 404, never 403.
Alpha. See MODULE.md for the agent-facing map of seams.
Quick start
pip install stapel-video # core library
pip install 'stapel-video[livekit]' # + the default LiveKit backend
pip install 'stapel-video[realtime]'# + serving the lobby socket
# urls.py
path("video/", include("stapel_video.urls"))
# settings.py — deliver the lobby signals, and say which pages may open a socket
INSTALLED_APPS = [..., "stapel_realtime", "stapel_video"]
STAPEL_COMM = {"SIGNAL_TRANSPORT": "channels"}
STAPEL_REALTIME = {"ALLOWED_ORIGINS": ["https://app.example.com"]}
# asgi.py (realtime lobby) — routes discovered from INSTALLED_APPS
from django.core.asgi import get_asgi_application
from stapel_realtime.asgi import build_websocket_application
application = build_websocket_application(
http_application=get_asgi_application()
)
API
| Method | Path | What |
|---|---|---|
| POST | /video/api/rooms |
Create a room (creator auto-admitted host, with a token) |
| GET | /video/api/rooms/{join_code} |
Room info |
| POST | /video/api/rooms/{join_code}/join |
Join → admitted / waiting / denied |
| GET | /video/api/rooms/{join_code}/participants |
Participants (anchor-paginated) |
| POST | /video/api/rooms/{join_code}/lobby/admit |
Admit a waiting guest (host-only) |
| POST | /video/api/rooms/{join_code}/lobby/deny |
Deny a waiting guest (host-only) |
| GET | /video/api/v1/scopes/{scope_key}/usage/ |
One tenant's per-month, per-person call time (?months=/?month=, ?tz=) — mandate-gated in that scope |
| POST | /video/api/webhook |
Provider webhook ingress (signed, unauthenticated) |
| WS | ws/video/lobby/{join_code} |
The room's lobby stream — lobby.waiting / lobby.admitted / lobby.denied, read-only (see MODULE.md § Live lobby) |
Configuration (STAPEL_VIDEO)
| Key | Default | What |
|---|---|---|
VIDEO_PROVIDER |
…livekit.LiveKitProvider |
Video backend (dotted path) |
SCOPE_PROVIDER |
…scope.DefaultScopeProvider |
scope_key resolution + membership |
DEFAULT_ACCESS_LEVEL |
restricted |
Access level for a room created without one |
DEFAULT_ADMIT_REQUIRED |
True |
Whether new rooms start with the lobby on |
LIVEKIT_URL / LIVEKIT_API_KEY / LIVEKIT_API_SECRET |
"" |
Default-provider credentials |
WEBHOOK_HANDLERS |
{} |
Provider-event → handler, merged over the builtins |
PRESENCE_SWEEP_INTERVAL_SECONDS |
60 |
How often open presence spans are reconciled |
PRESENCE_SPAN_RETENTION_DAYS |
400 |
When a span is purged (None = never) |
USAGE_MANDATE |
video.usage.read |
Capability a caller must hold in the scope to read its usage |
USAGE_AUTHORIZER |
…usage.staff_only_authorizer |
Fallback gate where there are no workspaces to ask |
USAGE_THROTTLE |
60/min |
Rate for the video-scope-usage throttle scope |
VIDEO_PROVIDER, DEFAULT_ACCESS_LEVEL and DEFAULT_ADMIT_REQUIRED are the
three CTO-facing config axes surfaced in docs/capabilities.json.
Presence metering
Turn the provider's webhooks on (they point at POST /video/api/webhook), and
schedule the two jobs — a meter without the sweeper measures an upper bound,
not a duration:
from stapel_video.tasks import get_video_beat_schedule
CELERY_BEAT_SCHEDULE = {**get_video_beat_schedule(), ...}
Celery is optional: manage.py video_sweep_presence and manage.py video_purge_spans are the cron form. Then read the numbers by comm Function:
from stapel_core.comm import call
call("video.presence.aggregate", {"user_id": uid, "period": "2026-08"})
# {"presence_seconds": 5400, "rooms_count": 3, ...} — unioned, so a laptop
# and a phone are one person present, not two.
call("video.presence.pairs_export", {"period": "2026-08", "limit": 500})
# {"rows": [{"room_key", "user_a", "user_b", "co_presence_seconds"}, ...],
# "cursor": ..., "total": None} — raw overlaps; the "counts as a real
# conversation" threshold belongs to whoever asks, not to the meter.
Per-tenant usage
Pass the partition on the grant and the provider echoes it back onto every span it reports:
provider.mint_join_token(room_ref, user.pk, name, scope_key=str(workspace_id))
Spans recorded before you did that are the host's to place — only you know
which tenant a room_key belonged to:
manage.py video_backfill_scope --resolver myapp.reporting.scope_for_room
Then read a workspace's own numbers, over the bus or over HTTP:
call("video.presence.usage_rollup_by_month",
{"scope_key": str(workspace_id), "months": 6, "tz": "Europe/Berlin"})
# {"months": [{"month": "2026-08", "users": [{"user_id", "presence_seconds",
# "rooms", "connections", ...}]}]} — newest month first, buckets cut at LOCAL
# midnight, so a DST month is genuinely an hour short.
GET /video/api/v1/scopes/{scope_key}/usage/?months=6&tz=Europe/Berlin is the
same answer for a workspace-administration screen. It is not staff-gated: the
caller must hold STAPEL_VIDEO["USAGE_MANDATE"] (default video.usage.read)
in the workspace they are asking about, resolved through the workspaces
access registry — register it on the roles you mean to grant it to. Asking
about somebody else's workspace answers 404, identically to a workspace that
does not exist: a 403 would confirm the id is real. Without workspaces in the
picture, USAGE_AUTHORIZER decides (staff-only unless you replace it).
Rows carry user ids. This library never learns anybody's name; the host resolves it from the roster it already has.
License
MIT — see LICENSE.
This page is assembled by stapel-readme from docs/readme.md plus the contract artifacts in docs/. Edit the prose in docs/readme.md; the badges, facts and links above and below it are generated — do not hand-edit README.md.
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file stapel_video-0.11.1.tar.gz.
File metadata
- Download URL: stapel_video-0.11.1.tar.gz
- Upload date:
- Size: 215.5 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
9af1cd0206905dd47a08c64709ae569ad5c109fcad9daa2f041aa014e1711582
|
|
| MD5 |
71b3824f1a0c2a91d6e09c0d0e9d87bb
|
|
| BLAKE2b-256 |
cc3e0f0f997806c842911ab548eb6b964927198b7b9045c2c9fd6b635e6ab60b
|
Provenance
The following attestation bundles were made for stapel_video-0.11.1.tar.gz:
Publisher:
publish.yml on usestapel/stapel-video
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
stapel_video-0.11.1.tar.gz -
Subject digest:
9af1cd0206905dd47a08c64709ae569ad5c109fcad9daa2f041aa014e1711582 - Sigstore transparency entry: 2731083791
- Sigstore integration time:
-
Permalink:
usestapel/stapel-video@6c5dc878fc2bc2a844f26a2797157a723743801a -
Branch / Tag:
refs/tags/v0.11.1 - Owner: https://github.com/usestapel
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@6c5dc878fc2bc2a844f26a2797157a723743801a -
Trigger Event:
push
-
Statement type:
File details
Details for the file stapel_video-0.11.1-py3-none-any.whl.
File metadata
- Download URL: stapel_video-0.11.1-py3-none-any.whl
- Upload date:
- Size: 195.6 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
a9ce6fd3f61430f01769fb82d41f33f73d47933dd3714debed4a7a1587dcc055
|
|
| MD5 |
e0c0fe8b9e79e5d9bf60cf252c884730
|
|
| BLAKE2b-256 |
0fcedfa12f5ab970a2f93af7732a15bde8008644be76b47bb67bf37b6ac43013
|
Provenance
The following attestation bundles were made for stapel_video-0.11.1-py3-none-any.whl:
Publisher:
publish.yml on usestapel/stapel-video
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
stapel_video-0.11.1-py3-none-any.whl -
Subject digest:
a9ce6fd3f61430f01769fb82d41f33f73d47933dd3714debed4a7a1587dcc055 - Sigstore transparency entry: 2731083954
- Sigstore integration time:
-
Permalink:
usestapel/stapel-video@6c5dc878fc2bc2a844f26a2797157a723743801a -
Branch / Tag:
refs/tags/v0.11.1 - Owner: https://github.com/usestapel
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@6c5dc878fc2bc2a844f26a2797157a723743801a -
Trigger Event:
push
-
Statement type: