$npx skillfedfor your agent

libpass

Fork of passlib, a comprehensive password hashing framework supporting over 30 schemes

With conditionsPyPI LibrariesReleased Oct 2025554.5K downloads / moBSDPure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — libpass-1.9.3-py3-none-any.whl
v1.9.3 · released 2025-10-09 · Python >=3.9

Yes, if you need a straightforward, dependency-free password hashing library with broad algorithm support. The permissive BSD license and low install friction make it accessible. However, verify whether this fork is actively maintained and confirm that the specific hashing schemes you need are production-ready rather than legacy.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires Python 3.9 or later.
  • Low install friction with no runtime dependencies.
  • Maintenance status is aging—last commit was 2025-10-27 and the package reached version 1.9.3 on 2025-10-09, roughly 309 days before the fact sheet date.

License · maintenance · safety

BSD (permissive) — Licensed under BSD (permissive), which allows commercial and private use with minimal restrictions, making it suitable for most application contexts.

last release 2025-10-09 (309 days) · last repo commit 2025-10-27 · 40 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 554,451 downloads/mo, #6,034 on PyPI

Verify before relying

pip install libpass

from passlib.context import CryptContext

context = CryptContext(schemes=["sha512_crypt"])
hash = context.hash("password")
is_valid = context.verify("password", hash)
  • Whether this fork is actively maintained or if upstream is the recommended source.
  • Performance characteristics or benchmarks for the 30+ supported hashing schemes.
  • Whether all schemes are equally production-ready or if some are legacy/deprecated.
Same gist for agents: .md · .json

What it is and what it does

Libpass is a password hashing library for Python 3 that centralizes support for over 30 password hashing algorithms under a single, consistent API. It handles both hashing new passwords and verifying existing hashes, making it useful for tasks ranging from validating system files to implementing full-strength password storage in multi-user applications.

The library is distributed as a pure-Python wheel with no runtime dependencies, keeping installation lightweight. It supports Python 3.9 through 3.13 and is licensed permissively under BSD. The package is classified as Alpha and has been maintained since 2024-09-11; it is a fork of an upstream project.

Use it for

  • Hash and verify user passwords in web applications or APIs using a configurable hashing scheme.
  • Migrate or validate existing password hashes from legacy systems by supporting multiple algorithms.
  • Implement two-factor authentication workflows that require secure password verification alongside TOTP.
  • Verify password hashes from system files or htpasswd files for administrative tools.
  • Support htdigest authentication schemes in HTTP-based applications or services.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you need a straightforward, dependency-free password hashing library with broad algorithm support.

The permissive BSD license and low install friction make it accessible. However, verify whether this fork is actively maintained and confirm that the specific hashing schemes you need are production-ready rather than legacy.

Install

libpass on PyPI

Before you install

Low install friction with no runtime dependencies. Maintenance status is aging—last commit was 2025-10-27 and the package reached version 1.9.3 on 2025-10-09, roughly 309 days before the fact sheet date. The repository is not archived and has 40 stars.

Requires Python 3.9 or later.

License in practice

Licensed under BSD (permissive), which allows commercial and private use with minimal restrictions, making it suitable for most application contexts.

Quickstart

pip install libpass

from passlib.context import CryptContext

context = CryptContext(schemes=["sha512_crypt"])
hash = context.hash("password")
is_valid = context.verify("password", hash)

Verify before relying

  • Whether this fork is actively maintained or if upstream is the recommended source.
  • Performance characteristics or benchmarks for the 30+ supported hashing schemes.
  • Whether all schemes are equally production-ready or if some are legacy/deprecated.

Package facts

LicenseBSD permissive
Python supportSupports the current Python release >=3.9
Install frictionLow. Pure-Python wheel
Runtime dependenciesNone
MaintenanceAging 309 days since the last release
Last repo commit
First released
Downloads554,451 / month, #6,034 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 3 - AlphaIntended Audience :: DevelopersLicense :: OSI Approved :: BSD LicenseNatural Language :: EnglishOperating System :: OS IndependentProgramming Language :: Python :: 3Programming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.9Programming Language :: Python :: Implementation :: CPythonTopic :: Security :: CryptographyTopic :: Software Development :: Libraries

Evidence: libpass-1.9.3-py3-none-any.whl

Tags

Capabilities
password hashing librarypassword verification frameworkmulti-scheme password hashingsecure password storagepassword hash managementcrypt hash algorithmspassword hashing framework
Topics
password-hashingcryptographyauthentication
PyPI keywords
2faapacheargon2bcryptcrypthashhtdigesthtpasswdmd5-cryptpasslibpasswordpbkdf2scryptsecretsecuritysha256-cryptsha512-crypttotp

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “password hashing library”

  • libpassA password hashing library providing implementations of over 30…
  • argon2-cffiProvides a simple Python interface to Argon2, a modern password…
  • argon2-cffi-bindingsProvides low-level CFFI bindings to the official Argon2 password…

Give your agent the search over MCP, or paste the wish link into any chat.

More Libraries packages

urllib3 Worth it
PyPI · Libraries · released May 2026

urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.

MITpure Python · 3.10+
1.8Bdownloads / mo
requests Worth it
PyPI · Libraries · released May 2026

Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.

Apache-2.0pure Python · 3.10+
1.8Bdownloads / mo
pluggy Worth it
PyPI · Libraries · released May 2025

Pluggy provides a plugin system that lets you define hook specifications and register implementations to be called in sequence, enabling extensible Python applications without tight coupling.

Install it if you're building an extensible application or framework.

MITpure Python · 3.9+aging
1.3Bdownloads / mo
python-dateutil Worth it
PyPI · Libraries · released Mar 2024

Provides parsing, arithmetic, and recurrence rule computation for dates and times, with timezone support and iCalendar RFC compliance.

Install it if you need to parse flexible date strings, compute relative dates, handle timezones, or work with recurrence rules—it's the de facto choice for these tasks.

Apache-2.0pure Python
1.2Bdownloads / mo
six With conditions
PyPI · Libraries · released Dec 2024

Six provides utility functions to write Python code that runs on both Python 2.7 and Python 3.3+, smoothing over language differences between the two versions.

MITpure Python
1.2Bdownloads / mo
pytest Worth it
PyPI · Libraries · released Jun 2026

pytest is a testing framework that lets you write test functions using plain assert statements and automatically discovers and runs them, with detailed failure reporting.

MITpure Python · 3.10+
1.1Bdownloads / mo

See also passlib · pwdlib · types-passlib · Flask-Bcrypt · bcrypt · argon2-cffi · AuthEncoding · murmurhash · siphash · hashring