django-crum
Django middleware to capture current request and user.
Decision gist · record as of 2026-08-14
Yes, if you are on Django versions up to 3.1 and do not need active maintenance. The package is stable and lightweight for its intended use case, but dormant since 2020 means no support for newer Django releases. Install only if your project's Django version is within the tested range and you accept that updates will not arrive.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires django as a runtime dependency; thread-local storage behavior in async contexts is not documented in the fact sheet.
- Low install friction with a single dependency on django.
- Maintenance is dormant—last release was 2020-11-10 with no commits since 2024-02-22—so expect no active bug fixes or updates.
License · maintenance · safety
BSD (permissive) — BSD license (permissive) places no restrictions on use, modification, or distribution in your own projects.
last release 2020-11-10 (2103 days) · last repo commit 2024-02-22 · 102 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 441,301 downloads/mo, #6,644 on PyPI
Alternatives
Verify before relying
pip install django-crum
# In Django settings.py, add to MIDDLEWARE:
# 'crum.CurrentRequestUserMiddleware'
from crum import get_current_user
user = get_current_user()- Whether the package works reliably with Django versions released after 2020-11-10
- Current behavior and support status in async Django contexts
- Whether the custom user model signal extension works with all modern Django authentication backends
What it is and what it does
Django-CRUM is a middleware package that captures the current HTTP request and authenticated user into thread-local storage, allowing your code to access them anywhere in your application without threading the request object through function calls. It's particularly useful for audit logging, permission checks, and other cross-cutting concerns that need to know who made the current request.
The package includes a context manager for temporarily impersonating another user and exposes a signal to customize how the current user is determined, which can help when using custom authentication methods or non-standard user models. It depends only on django and installs as a simple wheel with no compiled dependencies.
Use it for
- Audit logging: capture which user performed an action without passing request through every function layer
- Permission checks: verify user permissions in business logic without request object available
- Temporary user impersonation: switch context to another user for a specific operation block
- Custom authentication: extend the current-user detection via signals for non-standard auth backends
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, if you are on Django versions up to 3.1 and do not need active maintenance.
The package is stable and lightweight for its intended use case, but dormant since 2020 means no support for newer Django releases. Install only if your project's Django version is within the tested range and you accept that updates will not arrive.
Install
django-crum on PyPI
Before you install
Low install friction with a single dependency on django. Maintenance is dormant—last release was 2020-11-10 with no commits since 2024-02-22—so expect no active bug fixes or updates.
Requires django as a runtime dependency; thread-local storage behavior in async contexts is not documented in the fact sheet.
License in practice
BSD license (permissive) places no restrictions on use, modification, or distribution in your own projects.
Quickstart
pip install django-crum
# In Django settings.py, add to MIDDLEWARE:
# 'crum.CurrentRequestUserMiddleware'
from crum import get_current_user
user = get_current_user()
Verify before relying
- Whether the package works reliably with Django versions released after 2020-11-10
- Current behavior and support status in async Django contexts
- Whether the custom user model signal extension works with all modern Django authentication backends
Package facts
| License | BSD permissive |
| Python support | Not specified |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 1 packagedjango |
| Maintenance | Dormant 2,103 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 441,301 / month, #6,644 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 4 - BetaEnvironment :: Web EnvironmentFramework :: DjangoFramework :: Django :: 1.11Framework :: Django :: 2.0Framework :: Django :: 2.1Framework :: Django :: 2.2Framework :: Django :: 3.0Framework :: Django :: 3.1Intended Audience :: DevelopersLicense :: OSI Approved :: BSD LicenseOperating System :: OS IndependentProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3.4Programming Language :: Python :: 3.5Programming Language :: Python :: 3.6Programming Language :: Python :: 3.7Programming Language :: Python :: 3.8Programming Language :: Python :: 3.9Topic :: Internet :: WWW/HTTPTopic :: Software Development :: LibrariesTopic :: Software Development :: Libraries :: Python Modules |
Evidence: django_crum-0.7.9-py2.py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “django current request middleware”
- django-crumDjango-CRUM stores the current request and user in thread-local…
- django-currentuserStores a reference to the currently logged-in request user at the…
- django-request-idAttaches a unique request ID to each Django HTTP request and…
Give your agent the search over MCP, or paste the wish link into any chat.
More Libraries packages
urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.
Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.
Pluggy provides a plugin system that lets you define hook specifications and register implementations to be called in sequence, enabling extensible Python applications without tight coupling.
Install it if you're building an extensible application or framework.
Provides parsing, arithmetic, and recurrence rule computation for dates and times, with timezone support and iCalendar RFC compliance.
Install it if you need to parse flexible date strings, compute relative dates, handle timezones, or work with recurrence rules—it's the de facto choice for these tasks.
Six provides utility functions to write Python code that runs on both Python 2.7 and Python 3.3+, smoothing over language differences between the two versions.
pytest is a testing framework that lets you write test functions using plain assert statements and automatically discovers and runs them, with detailed failure reporting.
See also dj-inmemorystorage · django-currentuser · django-easy-audit · django-hijack · django-safedelete · django-logentry-admin · django-session-timeout · django-pghistory · django-impersonate