boxsdk
Official Box Python SDK
Decision gist · record as of 2026-08-14
Yes. The SDK is actively maintained, has low install friction, carries no known vulnerabilities, and is the recommended choice for new Box integrations. Use v10 if starting fresh; existing v3 users should evaluate migration to v10 or v4 depending on their codebase state.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires a Box Developer Token or other supported authentication credentials (OAuth 2.0, Client Credentials, or JWT); JWT auth requires optional jwt extra dependencies.
- Low install friction with only 2 runtime dependencies (requests and requests-toolbelt).
- Actively maintained with a release 9 days old and recent commits; marked as Production/Stable.
License · maintenance · safety
permissive license (permissive) — Apache-2.0 license is permissive, allowing commercial and private use with minimal restrictions beyond attribution and liability disclaimers.
last release 2026-08-05 (9 days) · last repo commit 2026-08-14 · 458 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 4,661,408 downloads/mo, #2,262 on PyPI
Alternatives
Verify before relying
pip install boxsdk>=10
from boxsdk import BoxClient, BoxDeveloperTokenAuth
auth = BoxDeveloperTokenAuth(token='YOUR_TOKEN')
client = BoxClient(auth=auth)
for item in client.folders.get_folder_items('0').entries:
print(item.name)- Whether all Box API endpoints are fully covered or if some legacy endpoints remain unavailable in v10.
- Performance characteristics and rate-limiting behavior when handling large file operations or bulk requests.
- Compatibility guarantees for PyPy implementation beyond CPython versions listed.
What it is and what it does
The Box Python SDK v10 is a client library for the Box Content Cloud API, built on an auto-generated codebase. It replaces the older manual boxsdk v3 and provides complete API coverage with embedded documentation, automatic retries with exponential backoff, and exception handling. The SDK supports multiple authentication methods including Developer Token, OAuth 2.0, Client Credentials Grant, and JWT.
Developers use it to programmatically interact with Box accounts—listing folders, uploading and downloading files, managing permissions, and accessing other Box features. The library handles HTTP communication through requests and requests-toolbelt, manages authentication state, and abstracts Box's REST API into Python objects and manager classes. It is intended for new applications and for users migrating from earlier SDK versions.
Use it for
- Automate file uploads, downloads, and organization in Box from Python applications.
- Build integrations that list, search, and manage Box folders and files programmatically.
- Implement Box authentication in web or desktop applications using OAuth 2.0 or JWT.
- Create batch operations on Box content without manual API calls.
- Embed Box content management into data pipelines or ETL workflows.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes.
The SDK is actively maintained, has low install friction, carries no known vulnerabilities, and is the recommended choice for new Box integrations. Use v10 if starting fresh; existing v3 users should evaluate migration to v10 or v4 depending on their codebase state.
Install
boxsdk on PyPI
Before you install
Low install friction with only 2 runtime dependencies (requests and requests-toolbelt). Actively maintained with a release 9 days old and recent commits; marked as Production/Stable.
Requires a Box Developer Token or other supported authentication credentials (OAuth 2.0, Client Credentials, or JWT); JWT auth requires optional jwt extra dependencies.
License in practice
Apache-2.0 license is permissive, allowing commercial and private use with minimal restrictions beyond attribution and liability disclaimers.
Quickstart
pip install boxsdk>=10
from boxsdk import BoxClient, BoxDeveloperTokenAuth
auth = BoxDeveloperTokenAuth(token='YOUR_TOKEN')
client = BoxClient(auth=auth)
for item in client.folders.get_folder_items('0').entries:
print(item.name)
Verify before relying
- Whether all Box API endpoints are fully covered or if some legacy endpoints remain unavailable in v10.
- Performance characteristics and rate-limiting behavior when handling large file operations or bulk requests.
- Compatibility guarantees for PyPy implementation beyond CPython versions listed.
Package facts
| License | permissive license permissive |
| Python support | Not specified |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 2 packagesrequestsrequests-toolbelt |
| Maintenance | Actively maintained 9 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 4,661,408 / month, #2,262 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableIntended Audience :: DevelopersLicense :: OSI Approved :: Apache Software LicenseOperating System :: MacOS :: MacOS XOperating System :: Microsoft :: WindowsOperating System :: OS IndependentOperating System :: POSIXProgramming Language :: PythonProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.8Programming Language :: Python :: 3.9Programming Language :: Python :: Implementation :: CPythonProgramming Language :: Python :: Implementation :: PyPyTopic :: Software Development :: Libraries :: Python Modules |
Evidence: boxsdk-10.14.0-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “box api python client”
- boxsdkProvides a Python client library for interacting with Box's cloud…
- box-sdk-genbox-sdk-gen provides a Python client library for the Box Content…
- sfrbox-apiProvides an async Python client for interacting with SFR Box routers…
Give your agent the search over MCP, or paste the wish link into any chat.
More Python Modules packages
Converts domain names between Unicode and ASCII-compatible encoding (Punycode) according to IDNA 2008 and Unicode Technical Standard 46, with security validation and broader script coverage than the standard library.
Install it if you work with internationalized domain names, need to validate domains, or use HTTP clients that depend on it transitively.
Setuptools is a Python build backend and package management tool that handles building, distributing, and installing Python packages, including support for C/C++ extension modules.
PyYAML parses and emits YAML 1.1 data format, enabling serialization and deserialization of configuration files and Python objects to and from human-readable YAML text.
Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.
Provides reusable metadata objects for use with PEP-593 `typing.Annotated` to express common constraints like bounds, collection sizes, and predicates on types.
Install it if you use or build libraries that need to express type constraints in a standardized, inspectable way—or if you want to annotate your own types with…
Provides runtime tools to inspect and introspect Python type annotations, enabling programmatic examination of type hints at execution time.
See also box-sdk-gen · docusign-esign · stytch · qbittorrent-api · supertokens-python · mapbox · sfrbox-api · python-box · openshift-client · Unified-python-sdk