oauth2
library for OAuth version 1.9
Decision gist · record as of 2026-08-14
No, unless you are maintaining legacy code that already depends on this package. The library is dormant (last release 2015, last commit April 2024) and only declares support for Python 2.6–3.4. Modern Python applications should use oauth2-compatible alternatives or migrate to OAuth 2.0. If you must use OAuth 1.0, verify compatibility with your Python version first.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Package supports Python 2.6, 2.7, 3.3, and 3.4 only; compatibility with modern Python versions is not declared and likely absent.
- Low install friction with no runtime dependencies.
- Maintenance is dormant—last release was in 2015 and the last commit in April 2024, though the repository remains active and the package is still widely depended upon downstream.
License · maintenance · safety
MIT License (permissive) — MIT License (permissive) allows commercial and private use with minimal restrictions, requiring only attribution and inclusion of the license text.
last release 2015-09-12 (3989 days) · last repo commit 2024-04-09 · 3,009 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 611,788 downloads/mo, #5,760 on PyPI
Alternatives
Verify before relying
pip install oauth2
import oauth2 as oauth
client = oauth.Client(oauth.Consumer(key='consumer_key', secret='consumer_secret'))
resp, content = client.request('http://example.com/api', 'GET')- Whether the package works reliably with Python versions beyond 3.4 despite no declared support.
- Current security posture relative to modern OAuth 1.0 best practices and known attack vectors.
- Whether downstream packages like Flask-Oauth have migrated away or continue active use.
What it is and what it does
oauth2 is a Python library that implements the OAuth 1.0 protocol (not OAuth 2.0) for authenticating requests to OAuth-protected APIs. It provides a thin wrapper around HTTP clients, automatically signing requests with consumer credentials and handling the OAuth signature generation. The library has no external runtime dependencies and is designed to work as a low-level building block for higher-level OAuth integrations.
The package was originally forked from earlier OAuth implementations and has been refined with 100% unit test coverage and a simplified API. It extends from httplib2 for HTTP transport and uses a Request class based on dict for flexibility. However, the package is dormant—its last release was in 2015 and it only declares support for Python 2.6, 2.7, 3.3, and 3.4, making it unsuitable for modern Python environments without verification of compatibility.
Use it for
- Integrating with legacy OAuth 1.0 APIs that have not migrated to OAuth 2.0.
- Building a custom OAuth 1.0 client when higher-level libraries are not available or suitable.
- Maintaining existing applications that depend on oauth2 as a transitive dependency.
- Signing HTTP requests for services that require OAuth 1.0 authentication (e.g., Twitter API v1.1).
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
No, unless you are maintaining legacy code that already depends on this package.
The library is dormant (last release 2015, last commit April 2024) and only declares support for Python 2.6–3.4. Modern Python applications should use oauth2-compatible alternatives or migrate to OAuth 2.0. If you must use OAuth 1.0, verify compatibility with your Python version first.
Install
oauth2 on PyPI
Before you install
Low install friction with no runtime dependencies. Maintenance is dormant—last release was in 2015 and the last commit in April 2024, though the repository remains active and the package is still widely depended upon downstream.
Package supports Python 2.6, 2.7, 3.3, and 3.4 only; compatibility with modern Python versions is not declared and likely absent.
License in practice
MIT License (permissive) allows commercial and private use with minimal restrictions, requiring only attribution and inclusion of the license text.
Quickstart
pip install oauth2
import oauth2 as oauth
client = oauth.Client(oauth.Consumer(key='consumer_key', secret='consumer_secret'))
resp, content = client.request('http://example.com/api', 'GET')
Verify before relying
- Whether the package works reliably with Python versions beyond 3.4 despite no declared support.
- Current security posture relative to modern OAuth 1.0 best practices and known attack vectors.
- Whether downstream packages like Flask-Oauth have migrated away or continue active use.
Package facts
| License | MIT License permissive |
| Python support | Not specified |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | None |
| Maintenance | Dormant 3,989 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 611,788 / month, #5,760 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableIntended Audience :: DevelopersLicense :: OSI Approved :: MIT LicenseNatural Language :: EnglishProgramming Language :: Python :: 2Programming Language :: Python :: 2.6Programming Language :: Python :: 2.7Programming Language :: Python :: 3Programming Language :: Python :: 3.3Programming Language :: Python :: 3.4Programming Language :: Python :: Implementation :: CPython |
Evidence: oauth2-1.9.0.post1-py2.py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “oauth 1.0a protocol”
- oauth2Implements OAuth 1.0 authentication for Python applications,…
- Flask-OAuthlibFlask-OAuthlib adds OAuth 1.0a and OAuth 2.0 client and provider…
- mastercard-oauth1-signerGenerates OAuth 1.0a-compliant signatures for Mastercard API requests…
Give your agent the search over MCP, or paste the wish link into any chat.
More WWW/HTTP packages
urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.
Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.
h11 is a pure-Python HTTP/1.1 protocol implementation that handles parsing and serializing HTTP messages without any built-in I/O, letting you integrate it with any network layer you choose.
HTTPX is a fully featured HTTP client library for Python that provides both sync and async APIs, with support for HTTP/1.1 and HTTP/2, plus an integrated command-line client.
Install it if you are building new projects or modernizing existing ones that rely on HTTP.
A minimal low-level HTTP client library that sends HTTP requests with thread-safe and task-safe connection pooling, supporting HTTP/1.1, HTTP/2, proxies, and both sync and async interfaces.
aiohttp is an async HTTP client and server framework built on asyncio, supporting both WebSockets and middleware-based routing for building concurrent web applications.
Install it if you need async HTTP client or server capabilities in asyncio-based applications.
See also Flask-OAuthlib · oauthlib · requests-oauth · Authlib · requests-oauthlib · rauth · oauth2-client · google-auth-oauthlib · mohawk · python-upwork-oauth2