$npx skillfedfor your agent

azure-identity-broker

Microsoft Azure Identity Broker plugin for Python

Worth itPyPI SecurityReleased Aug 2025168.4K downloads / moMIT LicensePure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — azure_identity_broker-1.3.0-py3-none-any.whl
v1.3.0 · released 2025-08-07 · Python >=3.9 · 2 runtime deps: azure-identity, msal

Yes. The package is actively maintained, has no known vulnerabilities, uses a permissive MIT license, and requires only two lightweight runtime dependencies (azure-identity and msal). Install it if you are building a desktop application that needs to authenticate against Microsoft Entra ID and can rely on a platform broker being present. Not suitable if you need Azure AD B2C support or if your deployment environment lacks a compatible broker.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires a parent window handle (integer on Windows/macOS, or msal.PublicClientApplication.CONSOLE_WINDOW_HANDLE on macOS).
  • Platform-specific broker must be installed and running on the user's machine.
  • Low install friction with a pure Python wheel.

License · maintenance · safety

MIT License (permissive) — MIT License permits commercial and private use with minimal restrictions—you may use, modify, and distribute the package freely provided you include the license notice.

last release 2025-08-07 (372 days) · last repo commit 2026-08-14 · 5,588 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 168,431 downloads/mo, #10,449 on PyPI

Verify before relying

pip install azure-identity-broker

from azure.identity.broker import InteractiveBrowserBrokerCredential

credential = InteractiveBrowserBrokerCredential(parent_window_handle=window_handle)
# Use credential with Azure SDK clients like BlobServiceClient
  • Whether the package works with all versions of azure-identity or has specific version constraints beyond what the fact sheet shows.
  • Performance characteristics or latency overhead of broker-mediated authentication compared to direct credential flows.
  • Detailed error handling and recovery behavior when the broker is unavailable or authentication fails.
Same gist for agents: .md · .json

What it is and what it does

Azure Identity Broker is a plugin for the Azure Identity library that delegates authentication to platform-native credential brokers already running on a user's machine. Instead of handling authentication directly in your Python application, it uses Web Account Manager (WAM) on Windows and WSL, Company Portal on macOS, or Microsoft Identity Broker on Linux to manage tokens and authentication handshakes. This approach leverages the operating system's built-in security and account management, reducing the burden on individual applications.

The package provides InteractiveBrowserBrokerCredential, which extends Azure Identity's InteractiveBrowserCredential to work with these brokers. You supply a parent window handle so the broker's authentication dialog appears in the correct context, and optionally enable silent authentication to use the default broker account without user interaction. It integrates with any Azure SDK client library that accepts credentials from Azure Identity, making it suitable for desktop applications that need to authenticate users against Microsoft Entra ID.

Use it for

  • Desktop applications on Windows/macOS/Linux that need to authenticate users against Microsoft Entra ID without managing tokens directly.
  • Applications requiring single sign-on (SSO) by leveraging existing platform broker accounts already authenticated on the user's machine.
  • Scenarios where you want to enable MSA passthrough for first-party applications to accept personal Microsoft accounts.
  • Interactive applications that need to show authentication dialogs in the correct window context via a parent window handle.
  • Enterprise deployments where the broker (WAM, Company Portal, or Identity Broker) is already deployed and managed by IT.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

Worth it

Yes.

The package is actively maintained, has no known vulnerabilities, uses a permissive MIT license, and requires only two lightweight runtime dependencies (azure-identity and msal). Install it if you are building a desktop application that needs to authenticate against Microsoft Entra ID and can rely on a platform broker being present. Not suitable if you need Azure AD B2C support or if your deployment environment lacks a compatible broker.

Install

azure-identity-broker on PyPI

Before you install

Low install friction with a pure Python wheel. Actively maintained with recent release (2025-08-07) and ongoing commits. Requires Python 3.9 or later; Python 3.8 support was dropped in version 1.3.0b2.

Requires a parent window handle (integer on Windows/macOS, or msal.PublicClientApplication.CONSOLE_WINDOW_HANDLE on macOS). Platform-specific broker must be installed and running on the user's machine.

License in practice

MIT License permits commercial and private use with minimal restrictions—you may use, modify, and distribute the package freely provided you include the license notice.

Quickstart

pip install azure-identity-broker

from azure.identity.broker import InteractiveBrowserBrokerCredential

credential = InteractiveBrowserBrokerCredential(parent_window_handle=window_handle)
# Use credential with Azure SDK clients like BlobServiceClient

Verify before relying

  • Whether the package works with all versions of azure-identity or has specific version constraints beyond what the fact sheet shows.
  • Performance characteristics or latency overhead of broker-mediated authentication compared to direct credential flows.
  • Detailed error handling and recovery behavior when the broker is unavailable or authentication fails.

Package facts

LicenseMIT License permissive
Python supportSupports the current Python release >=3.9
Install frictionLow. Pure-Python wheel
Runtime dependencies
2 packages
azure-identitymsal
MaintenanceActively maintained 372 days since the last release
Last repo commit
First released
Downloads168,431 / month, #10,449 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 5 - Production/StableLicense :: OSI Approved :: MIT LicenseProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3 :: OnlyProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.9

Evidence: azure_identity_broker-1.3.0-py3-none-any.whl

Tags

Capabilities
azure authentication brokerWAM windows account managerazure identity brokered authinteractive browser credentialazure entra broker supportplatform native authenticationazure msal broker
Topics
azure-sdkauthenticationentra-id
PyPI keywords
azureazure sdk

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “azure authentication broker”

  • azure-identity-brokerExtends Azure Identity to enable authentication through…
  • azure-servicebusAzure Service Bus client library for Python that enables sending and…
  • uamqpuAMQP is an AMQP 1.0 client library for Python that enables…

Give your agent the search over MCP, or paste the wish link into any chat.

More Security packages

SecretStorage With conditions
PyPI · Python Modules · released Nov 2025

Provides Python bindings to the FreeDesktop.org Secret Service API for securely storing and retrieving passwords and secrets through GNOME Keyring, KWallet, or KeePassXC.

BSD-3-Clausepure Python · 3.10+aging
226.9Mdownloads / mo
msal Worth it
PyPI · Security · released May 2026

MSAL for Python handles OAuth2 and OpenID Connect authentication with Microsoft identity services, managing token acquisition, caching, and refresh for applications integrating with Microsoft Entra ID, Microsoft Accounts, and Azure AD B2C.

MITpure Python · 3.9+
223.0Mdownloads / mo
joserfc Worth it
PyPI · Security · released Jul 2026

joserfc implements JOSE standards (JWS, JWE, JWK, JWT, and related RFCs) for signing, encrypting, and managing JSON-based cryptographic tokens in Python.

BSD-3-Clausepure Python · 3.10+
155.5Mdownloads / mo
Authlib Worth it
PyPI · Security · released May 2026

Authlib provides a complete implementation of OAuth 1.0, OAuth 2.0, and OpenID Connect 1.0 for building both authentication clients and servers, with built-in support for JWS, JWK, JWA, and JWT standards.

BSD-3-Clausepure Python · 3.10+
155.1Mdownloads / mo
argon2-cffi-bindings With conditions
PyPI · Python Modules · released Jul 2025

Provides low-level CFFI bindings to the official Argon2 password hashing algorithm for use by libraries and applications that need direct access to Argon2 without higher-level abstractions.

MITcompiled wheel · 3.9+
74.2Mdownloads / mo
adal Skip
PyPI · Security · released Apr 2021

ADAL for Python authenticates applications with Azure Active Directory to obtain tokens for accessing Azure AD-protected resources.

Install only if maintaining existing code that already depends on it, and plan a migration.

MITpure Pythonabandoned
44.5Mdownloads / mo

See also identity · azure-identity · redis-entraid · azure-mgmt-msi · microsoft-kiota-authentication-azure · azure-mgmt-core · fastapi-azure-auth · microsoft-agents-authentication-msal · azure-communication-identity