libthumbor
libthumbor is the python extension to generate thumbor URLs
Decision gist · record as of 2026-08-14
No. The package is abandoned (last release 1597 days ago) and will not receive maintenance or security updates. If you have an active thumbor deployment and need a Python client, consider whether the package's thumbor 3.0.0+ compatibility still holds in practice, or evaluate maintaining a fork or writing URL generation inline. For new projects, thumbor itself may have evolved or alternative image services may be more actively maintained.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires a running thumbor server to process the generated URLs; the package only generates the encrypted request URLs, not the image processing itself.
- Low install friction with a single lightweight dependency (six).
- However, the package is abandoned—last release was 1597 days ago—so it will not receive bug fixes or security updates going forward.
License · maintenance · safety
MIT (permissive) — MIT license is permissive and poses no restrictions on use, modification, or distribution in commercial or private projects.
last release 2022-03-31 (1597 days)
0 known vulnerabilities (OSV.dev, 2026-08-14) · 75,084 downloads/mo, #14,753 on PyPI
Alternatives
Verify before relying
pip install libthumbor
from libthumbor import CryptoURL
crypto = CryptoURL(key='my-security-key')
encrypted_url = crypto.generate(
width=300,
height=200,
smart=True,
image_url='/path/to/my/image.jpg'
)- Whether thumbor 3.0.0+ compatibility is maintained across current thumbor releases or if drift has occurred since the last release in 2022.
- Whether Django integration mentioned in the description is functional or has bitrotted.
What it is and what it does
libthumbor is a Python client library that generates cryptographically signed URLs for the thumbor image processing service. It wraps the URL generation logic so you can specify image dimensions, smart cropping, and other processing parameters, then get back an encrypted URL that thumbor will accept and process. The library is designed to work with thumbor 3.0.0 and later.
The package is a thin wrapper around URL encryption and parameter encoding—it does not perform image processing itself, only prepares requests for a thumbor server to handle. It supports Python 3.6 through 3.10 and depends only on six for Python 2/3 compatibility shims.
Use it for
- Generate secure image resize requests in a web application that delegates image processing to a thumbor service.
- Build thumbnail URLs with smart cropping and dimension constraints without exposing thumbor's internal URL scheme.
- Integrate image resizing into a Django application using thumbor as the backend processor.
- Encrypt image processing parameters so clients cannot manipulate resize logic or access arbitrary images.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
No.
The package is abandoned (last release 1597 days ago) and will not receive maintenance or security updates. If you have an active thumbor deployment and need a Python client, consider whether the package's thumbor 3.0.0+ compatibility still holds in practice, or evaluate maintaining a fork or writing URL generation inline. For new projects, thumbor itself may have evolved or alternative image services may be more actively maintained.
Install
libthumbor on PyPI
Before you install
Low install friction with a single lightweight dependency (six). However, the package is abandoned—last release was 1597 days ago—so it will not receive bug fixes or security updates going forward.
Requires a running thumbor server to process the generated URLs; the package only generates the encrypted request URLs, not the image processing itself.
License in practice
MIT license is permissive and poses no restrictions on use, modification, or distribution in commercial or private projects.
Quickstart
pip install libthumbor
from libthumbor import CryptoURL
crypto = CryptoURL(key='my-security-key')
encrypted_url = crypto.generate(
width=300,
height=200,
smart=True,
image_url='/path/to/my/image.jpg'
)
Verify before relying
- Whether thumbor 3.0.0+ compatibility is maintained across current thumbor releases or if drift has occurred since the last release in 2022.
- Whether Django integration mentioned in the description is functional or has bitrotted.
Package facts
| License | MIT permissive |
| Python support | Supports the current Python release >=3.6,<4.0 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 1 packagesix |
| Maintenance | Abandoned 1,597 days since the last release |
| First released | |
| Downloads | 75,084 / month, #14,753 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | License :: OSI Approved :: MIT LicenseProgramming Language :: Python :: 3Programming Language :: Python :: 3.10Programming Language :: Python :: 3.6Programming Language :: Python :: 3.7Programming Language :: Python :: 3.8Programming Language :: Python :: 3.9 |
Evidence: libthumbor-2.0.2-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “thumbor URL generation”
- libthumborlibthumbor generates encrypted URLs for the thumbor image service,…
- django-js-reverseExposes Django named URLs to JavaScript, allowing frontend code to…
- std-uritemplateExpands RFC 6570 URI Templates (Level 4) by substituting variables…
Give your agent the search over MCP, or paste the wish link into any chat.
More WWW/HTTP packages
urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.
Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.
h11 is a pure-Python HTTP/1.1 protocol implementation that handles parsing and serializing HTTP messages without any built-in I/O, letting you integrate it with any network layer you choose.
HTTPX is a fully featured HTTP client library for Python that provides both sync and async APIs, with support for HTTP/1.1 and HTTP/2, plus an integrated command-line client.
Install it if you are building new projects or modernizing existing ones that rely on HTTP.
A minimal low-level HTTP client library that sends HTTP requests with thread-safe and task-safe connection pooling, supporting HTTP/1.1, HTTP/2, proxies, and both sync and async interfaces.
aiohttp is an async HTTP client and server framework built on asyncio, supporting both WebSockets and middleware-based routing for building concurrent web applications.
Install it if you need async HTTP client or server capabilities in asyncio-based applications.
See also sorl-thumbnail · easy-thumbnails · django-imagekit · libnacl · tink · django-encrypted-model-fields · davey · pyobjc-framework-QuickLookThumbnailing · crypto