oauth2client
OAuth 2.0 client library
Decision gist · record as of 2026-08-14
No. oauth2client is abandoned and explicitly deprecated by Google in favor of google-auth and oauthlib. Do not install this package for new projects. If you are maintaining legacy code that already uses it, plan a migration to google-auth; if you cannot migrate immediately, accept that you are running unsupported software with no active maintenance or security updates.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Package is abandoned and no longer maintained; Google explicitly recommends migrating to google-auth and oauthlib instead.
- Installation is straightforward with low friction, but the package is abandoned as of 2019-11-01 with no active maintenance.
- The repository is archived and the core team has explicitly deprecated this library in favor of google-auth and oauthlib.
License · maintenance · safety
Apache 2.0 (permissive) — Licensed under Apache 2.0 (permissive), which allows broad use and modification, but this permissive license does not offset the maintenance risk of an abandoned package.
last release 2018-09-07 (2898 days) · last repo commit 2019-11-01 · 793 stars · archived
0 known vulnerabilities (OSV.dev, 2026-08-14) · 37,346,291 downloads/mo, #726 on PyPI
Alternatives
Verify before relying
pip install oauth2client
import oauth2client
from oauth2client.client import OAuth2WebServerFlow
flow = OAuth2WebServerFlow(
client_id='your_client_id',
client_secret='your_client_secret',
scope='https://www.googleapis.com/auth/drive',
redirect_uri='http://localhost/')- Whether existing deployments using oauth2client face unpatched security risks or compatibility issues with modern Python versions.
- Whether the five runtime dependencies (httplib2, pyasn1, pyasn1-modules, rsa, six) themselves receive security updates or are similarly stalled.
What it is and what it does
oauth2client is a Python library for handling OAuth 2.0 authentication flows and managing credentials to access resources protected by OAuth 2.0. It was originally developed by Google and handles the token exchange, refresh, and storage workflows that OAuth 2.0 requires. The library depends on httplib2 for HTTP transport, pyasn1 and pyasn1-modules for cryptographic operations, rsa for RSA key handling, and six for Python 2/3 compatibility.
However, this package has been formally deprecated and abandoned since 2019-11-01. The Google team explicitly recommends that new projects use google-auth and oauthlib instead. The repository is archived, no new features are being added, and the core team has stopped providing support. Installing this package today means adopting a library with no active maintenance, no security updates, and no path forward for bug fixes or compatibility improvements.
Use it for
- Maintaining legacy applications that were built on oauth2client and cannot be immediately refactored to use google-auth.
- Accessing Google APIs in older codebases where oauth2client is already deeply integrated and migration is deferred.
- Running Python 2.7 or early Python 3 applications that depend on oauth2client's specific token storage or credential handling patterns.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
No.
oauth2client is abandoned and explicitly deprecated by Google in favor of google-auth and oauthlib. Do not install this package for new projects. If you are maintaining legacy code that already uses it, plan a migration to google-auth; if you cannot migrate immediately, accept that you are running unsupported software with no active maintenance or security updates.
Install
oauth2client on PyPI
Before you install
Installation is straightforward with low friction, but the package is abandoned as of 2019-11-01 with no active maintenance. The repository is archived and the core team has explicitly deprecated this library in favor of google-auth and oauthlib.
Package is abandoned and no longer maintained; Google explicitly recommends migrating to google-auth and oauthlib instead.
License in practice
Licensed under Apache 2.0 (permissive), which allows broad use and modification, but this permissive license does not offset the maintenance risk of an abandoned package.
Quickstart
pip install oauth2client
import oauth2client
from oauth2client.client import OAuth2WebServerFlow
flow = OAuth2WebServerFlow(
client_id='your_client_id',
client_secret='your_client_secret',
scope='https://www.googleapis.com/auth/drive',
redirect_uri='http://localhost/')
Verify before relying
- Whether existing deployments using oauth2client face unpatched security risks or compatibility issues with modern Python versions.
- Whether the five runtime dependencies (httplib2, pyasn1, pyasn1-modules, rsa, six) themselves receive security updates or are similarly stalled.
Package facts
| License | Apache 2.0 permissive |
| Python support | Not specified |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 5 packageshttplib2pyasn1pyasn1-modulesrsasix |
| Maintenance | Abandoned 2,898 days since the last release |
| Last repo commit | repository archived |
| First released | |
| Downloads | 37,346,291 / month, #726 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 7 - InactiveIntended Audience :: DevelopersLicense :: OSI Approved :: Apache Software LicenseOperating System :: POSIXProgramming Language :: Python :: 2Programming Language :: Python :: 2.7Programming Language :: Python :: 3Programming Language :: Python :: 3.4Programming Language :: Python :: 3.5Topic :: Internet :: WWW/HTTP |
Evidence: oauth2client-4.1.3-py2.py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “oauth 2.0 client library”
- oauth2clientoauth2client is a deprecated OAuth 2.0 client library for accessing…
- oauthlibOAuthLib implements OAuth 1.0 and OAuth 2.0 request-signing logic as…
- Flask-OAuthlibFlask-OAuthlib adds OAuth 1.0a and OAuth 2.0 client and provider…
Give your agent the search over MCP, or paste the wish link into any chat.
More WWW/HTTP packages
urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.
Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.
h11 is a pure-Python HTTP/1.1 protocol implementation that handles parsing and serializing HTTP messages without any built-in I/O, letting you integrate it with any network layer you choose.
HTTPX is a fully featured HTTP client library for Python that provides both sync and async APIs, with support for HTTP/1.1 and HTTP/2, plus an integrated command-line client.
Install it if you are building new projects or modernizing existing ones that rely on HTTP.
A minimal low-level HTTP client library that sends HTTP requests with thread-safe and task-safe connection pooling, supporting HTTP/1.1, HTTP/2, proxies, and both sync and async interfaces.
aiohttp is an async HTTP client and server framework built on asyncio, supporting both WebSockets and middleware-based routing for building concurrent web applications.
Install it if you need async HTTP client or server capabilities in asyncio-based applications.
See also google-auth-oauthlib · google-auth-httplib2 · gcs-oauth2-boto-plugin · requests-oauth2client · oauth2-client · google-oauth2-tool · requests-oauthlib · oauthlib · PureCloudPlatformClientV2 · google-auth