$npx skillfedfor your agent

msldap

Python library to play with MS LDAP

With conditionsPyPI InternetReleased May 202578.6K downloads / mopermissive licensePure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — msldap-0.5.15-py3-none-any.whl
v0.5.15 · released 2025-05-25 · Python >=3.7 · 9 runtime deps: unicrypto, asyauth, asysocks, asn1crypto, winacl, prompt-toolkit, tqdm, wcwidth

Yes, if you need to query or authenticate against Microsoft Active Directory from Python and want a lightweight, flexible library with support for multiple auth schemes. The permissive MIT license and low install friction make it accessible. However, be aware that maintenance is aging (last release 446 days old), there is no formal test suite, and LDAPS certificate verification is incomplete—so validate thoroughly before using in security-critical production systems. For one-off AD queries or integration into security tools, it's a solid choice.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires Python 3.7 or later.
  • For Kerberos authentication, the domain controller IP must be specified via the 'dc' parameter in the connection URL.
  • Low install friction with a pure-Python wheel distribution.

License · maintenance · safety

permissive license (permissive) — Licensed under MIT (permissive), so you can use, modify, and distribute the library freely in both open-source and commercial projects without restriction.

last release 2025-05-25 (446 days) · last repo commit 2026-02-11 · 498 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 78,553 downloads/mo, #14,433 on PyPI

Verify before relying

pip install msldap

from msldap import MSLDAPClient

# Create a client with a connection URL
client = MSLDAPClient('ldap+ntlm-password://DOMAIN\\user:password@10.0.0.1')
# Query AD for users, groups, or other objects
  • Whether LDAPS certificate verification is actually implemented (description notes 'TODO: actually verify certificate').
  • Current test coverage and stability guarantees (description explicitly states 'No testing suite').
  • Whether all advertised authentication methods (especially Kerberos variants) are equally mature and production-ready.
Same gist for agents: .md · .json

What it is and what it does

msldap is a library for programmatic interaction with Microsoft Active Directory through LDAP. It abstracts away the complexity of LDAP protocol details and AD-specific authentication schemes, letting you query users, groups, computers, and other directory objects with minimal boilerplate. The library supports a wide range of authentication methods—NTLM (password or hash), Kerberos (with multiple key types), SSPI (Windows-native), and anonymous/simple bind—all configured through a single connection URL string. It also includes a built-in interactive LDAP console for ad-hoc queries and supports SOCKS5 proxying for remote AD access.

The package depends on cryptographic and authentication libraries (unicrypto, asyauth, asysocks, asn1crypto) and UI helpers (prompt-toolkit, tqdm, tabulate) to handle the complexity of AD protocols and provide a polished command-line experience. It's designed as a library first, though it ships a command-line tool for interactive use. The codebase is stable but aging, with no formal test suite, so production use should be informed by your own validation.

Use it for

  • Enumerate users, groups, and computers in an Active Directory domain for security auditing or inventory purposes.
  • Authenticate to AD-integrated services programmatically using NTLM or Kerberos without external dependencies.
  • Query AD for certificate templates, certificate authorities, or other security-relevant objects.
  • Perform AD reconnaissance through a SOCKS5 proxy when direct access to the domain controller is restricted.
  • Build custom AD management or reporting tools that need to read directory data without relying on Windows-only APIs.
  • Integrate AD queries into penetration testing or security research workflows.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you need to query or authenticate against Microsoft Active Directory from Python and want a lightweight, flexible library with support for multiple auth schemes.

The permissive MIT license and low install friction make it accessible. However, be aware that maintenance is aging (last release 446 days old), there is no formal test suite, and LDAPS certificate verification is incomplete—so validate thoroughly before using in security-critical production systems. For one-off AD queries or integration into security tools, it's a solid choice.

Install

msldap on PyPI

Before you install

Low install friction with a pure-Python wheel distribution. Maintenance is aging—last commit was 2026-02-11 and the latest release 446 days old—but the repository remains active and unarchived with modest community interest (498 stars).

Requires Python 3.7 or later. For Kerberos authentication, the domain controller IP must be specified via the 'dc' parameter in the connection URL.

License in practice

Licensed under MIT (permissive), so you can use, modify, and distribute the library freely in both open-source and commercial projects without restriction.

Quickstart

pip install msldap

from msldap import MSLDAPClient

# Create a client with a connection URL
client = MSLDAPClient('ldap+ntlm-password://DOMAIN\\user:password@10.0.0.1')
# Query AD for users, groups, or other objects

Verify before relying

  • Whether LDAPS certificate verification is actually implemented (description notes 'TODO: actually verify certificate').
  • Current test coverage and stability guarantees (description explicitly states 'No testing suite').
  • Whether all advertised authentication methods (especially Kerberos variants) are equally mature and production-ready.

Package facts

Licensepermissive license permissive
Python supportSupports the current Python release >=3.7
Install frictionLow. Pure-Python wheel
Runtime dependencies
9 packages
unicryptoasyauthasysocksasn1cryptowinaclprompt-toolkittqdmwcwidthtabulate
MaintenanceAging 446 days since the last release
Last repo commit
First released
Downloads78,553 / month, #14,433 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
License :: OSI Approved :: MIT LicenseOperating System :: OS IndependentProgramming Language :: Python :: 3.7Programming Language :: Python :: 3.8

Evidence: msldap-0.5.15-py3-none-any.whl

Tags

Capabilities
active directory ldap clientms ad query libraryldap authentication ntlm kerberoswindows domain controller queriesldap socks5 proxy supportasn1 ldap protocolinteractive ldap console
Topics
active-directoryldap-clientkerberos-ntlm

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “ms ad query library”

  • msldapmsldap is a Python library for querying and interacting with…
  • azure-graphrbacManages Azure Active Directory graph resources (users, groups,…
  • Pinterest-Generated-ClientProvides auto-generated Python bindings for Pinterest's REST API,…

Give your agent the search over MCP, or paste the wish link into any chat.

More Internet packages

botocore Worth it
PyPI · Internet · released Aug 2026

Botocore provides low-level, data-driven access to Amazon Web Services APIs, serving as the foundation for the AWS CLI and boto3 libraries.

Install it if you need programmatic access to AWS services.

permissive licensepure Python · 3.10+
1.5Bdownloads / mo
aiobotocore Worth it
PyPI · Internet · released Aug 2026

Provides an async client for AWS services using botocore and aiohttp, allowing you to call AWS APIs asynchronously within asyncio-based applications.

Install it if you need to call AWS services from async Python code; it is the standard way to do so.

Apache-2.0pure Python · 3.10+
1.2Bdownloads / mo
pydantic Worth it
PyPI · Python Modules · released May 2026

Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.

MITpure Python · 3.9+
1.1Bdownloads / mo
filelock Worth it
PyPI · Libraries · released Aug 2026

Provides a platform-independent file locking mechanism to coordinate access to files across processes and threads.

MITpure Python · 3.10+
717.1Mdownloads / mo
fastapi Worth it
PyPI · Software Development · released Jul 2026

FastAPI is a Python web framework for building REST APIs using type hints, with automatic request validation, serialization, and interactive API documentation.

MITpure Python · 3.10+
568.6Mdownloads / mo
googleapis-common-protos Worth it
PyPI · Internet · released Aug 2026

Provides common Protocol Buffer message definitions used across Google Cloud APIs, enabling Python clients to interact with Google services.

Apache-2.0pure Python · 3.10+
513.7Mdownloads / mo

See also dsinternals · ldapdomaindump · python-active-directory · requests-negotiate-sspi · winacl · python-ldap · ldaptor · winkerberos · impacket · python3-ldap