djoser
REST implementation of Django authentication system.
Decision gist · record as of 2026-08-14
Yes. Djoser is a production-stable library (Development Status 5) with active maintenance, no known vulnerabilities, permissive MIT licensing, and low install friction. Use it if you're building a REST API with Django and need standard authentication endpoints; skip it only if you require highly custom authentication flows that the library's configuration cannot accommodate.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Django 3.2+, Django REST Framework 3.14+, and Python 3.9+; social authentication and WebAuthn features require their respective optional dependencies.
- Low friction: pure Python wheel with four runtime dependencies (django, djangorestframework, djangorestframework-simplejwt, social-auth-app-django).
- Actively maintained with a recent release 13 days ago and 2683 repository stars.
License · maintenance · safety
MIT (permissive) — MIT license (permissive) allows commercial and private use with minimal restrictions—you may use, modify, and distribute djoser freely provided you include the license notice.
last release 2026-08-01 (13 days) · last repo commit 2026-08-01 · 2,683 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 404,283 downloads/mo, #6,912 on PyPI
Alternatives
Verify before relying
pip install djoser
# In Django settings.py, add to INSTALLED_APPS:
# 'djoser'
# 'rest_framework'
# 'rest_framework_simplejwt'
# In urls.py:
from django.urls import path, include
urlpatterns = [path('auth/', include('djoser.urls'))]
# Then use endpoints like POST /auth/users/ for registration- Whether WebAuthn support requires additional system libraries or browser-side code beyond what djoser provides.
- Performance characteristics when handling high volumes of authentication requests.
- Extent of customization available for email templates and authentication workflows.
What it is and what it does
Djoser is a Django REST Framework library that reimplements Django's built-in authentication system as REST API endpoints, designed specifically for single-page applications and modern frontend architectures. Instead of server-side form rendering, it provides JSON-based endpoints for user registration, login, logout, password reset, and account activation—eliminating the need to reuse Django's traditional form-based authentication code.
It supports multiple authentication strategies: token-based authentication, JWT (via djangorestframework-simplejwt), social authentication (via social-auth-app-django), and WebAuthn. The library works with Django's custom user models and is actively maintained across Django versions 3.2 through 5.2 and Python 3.9 through 3.13. Its four runtime dependencies are all widely-used, stable packages in the Django ecosystem.
Use it for
- Building a single-page application (React, Vue, Angular) that needs user registration and login endpoints instead of server-rendered forms.
- Adding JWT-based authentication to a Django REST API without writing custom views.
- Integrating social login (Google, GitHub, etc.) into a REST API using social-auth-app-django.
- Implementing password reset workflows that return JSON responses instead of HTML emails.
- Supporting WebAuthn/passkey authentication for modern security-first applications.
- Migrating a traditional Django app to a decoupled frontend architecture while keeping the same authentication logic.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes.
Djoser is a production-stable library (Development Status 5) with active maintenance, no known vulnerabilities, permissive MIT licensing, and low install friction. Use it if you're building a REST API with Django and need standard authentication endpoints; skip it only if you require highly custom authentication flows that the library's configuration cannot accommodate.
Install
djoser on PyPI
Before you install
Low friction: pure Python wheel with four runtime dependencies (django, djangorestframework, djangorestframework-simplejwt, social-auth-app-django). Actively maintained with a recent release 13 days ago and 2683 repository stars.
Requires Django 3.2+, Django REST Framework 3.14+, and Python 3.9+; social authentication and WebAuthn features require their respective optional dependencies.
License in practice
MIT license (permissive) allows commercial and private use with minimal restrictions—you may use, modify, and distribute djoser freely provided you include the license notice.
Quickstart
pip install djoser
# In Django settings.py, add to INSTALLED_APPS:
# 'djoser'
# 'rest_framework'
# 'rest_framework_simplejwt'
# In urls.py:
from django.urls import path, include
urlpatterns = [path('auth/', include('djoser.urls'))]
# Then use endpoints like POST /auth/users/ for registration
Verify before relying
- Whether WebAuthn support requires additional system libraries or browser-side code beyond what djoser provides.
- Performance characteristics when handling high volumes of authentication requests.
- Extent of customization available for email templates and authentication workflows.
Package facts
| License | MIT permissive |
| Python support | Supports the current Python release >=3.9 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 4 packagesdjangodjangorestframework-simplejwtdjangorestframeworksocial-auth-app-django |
| Maintenance | Actively maintained 13 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 404,283 / month, #6,912 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableFramework :: DjangoFramework :: Django :: 3.2Framework :: Django :: 4.0Framework :: Django :: 4.1Framework :: Django :: 4.2Framework :: Django :: 5.0Framework :: Django :: 5.1Framework :: Django :: 5.2Intended Audience :: DevelopersLicense :: OSI Approved :: MIT LicenseOperating System :: OS IndependentProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.9 |
Evidence: djoser-2.3.4-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “jwt login endpoint”
- djoserProvides Django REST Framework views for user registration, login,…
- fastapi-loginAdds session and token-based user authentication to FastAPI…
- okta-jwt-verifierVerifies JWT tokens issued by Okta, checking signatures, claims, and…
Give your agent the search over MCP, or paste the wish link into any chat.
More Dynamic Content packages
MarkupSafe provides a text object that escapes special characters so untrusted strings can be safely embedded in HTML and XML without injection attacks.
Jinja2 is a templating engine that renders dynamic content by combining templates with Python-like syntax and data, supporting template inheritance, macros, autoescaping, and sandboxed execution.
Soupsieve is a CSS selector library designed to work with Beautiful Soup 4 to select, match, and filter HTML and XML elements using modern CSS selectors from CSS level 1 through CSS level 4 specifications.
Install it if you use Beautiful Soup for HTML or XML parsing and want modern CSS selector support.
Werkzeug is a WSGI utility library providing request/response objects, URL routing, an interactive debugger, HTTP utilities, and a development server for building web applications.
Flask is a lightweight WSGI web application framework for building web applications in Python, from simple single-page sites to complex multi-route applications.
Mako compiles Python-embedded templates into Python modules for fast rendering, supporting layout inheritance, custom functions, and direct Python expressions within template syntax.
See also dj-rest-auth · social-auth-app-django · dbapi · djangorestframework-simplejwt · django-registration-redux · social-auth-core · fastapi-users · django-allauth · webauthn · django-registration