$npx skillfedfor your agent

oscrypto

TLS (SSL) sockets, key generation, encryption, decryption, signing, verification and KDFs using the OS crypto libraries. Does not require a compiler, and relies on the OS for patching. Works on Windows, OS X and Linux/BSD.

With conditionsPyPI CryptographyReleased Mar 202223.1M downloads / moMITPure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — oscrypto-1.3.0-py2.py3-none-any.whl
v1.3.0 · released 2022-03-18 · 1 runtime deps: asn1crypto

Yes, if you need TLS or X.509 certificate handling without a compiler and want to rely on OS-level security updates. The package is stable and widely used (top 1000 on PyPI), with zero known vulnerabilities and permissive licensing. However, the last release was 2022-03-18 and the repository shows no recent activity, so it is best suited for maintenance or legacy integration rather than new greenfield projects requiring modern cryptographic modes.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • The package delegates to the operating system's crypto libraries (CNG/Secure Channel on Windows, Security.framework on macOS, OpenSSL on Linux/BSD), so the appropriate OS-level crypto support must be present; no additional system libraries are required to install the Python package itself.
  • Low install friction with a single pure-Python dependency (asn1crypto).
  • Repository is active with recent commits (2026-07-17) and marked Production/Stable, though the latest release was 2022-03-18, indicating the package is mature but not under active development.

License · maintenance · safety

MIT (permissive) — MIT license is permissive, allowing use in commercial and proprietary projects with minimal restrictions—only requiring attribution and inclusion of the license text.

last release 2022-03-18 (1610 days) · last repo commit 2026-07-17 · 340 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 23,068,177 downloads/mo, #957 on PyPI

Verify before relying

pip install oscrypto

import oscrypto
from oscrypto import asymmetric

# Generate an RSA key pair
public_key, private_key = asymmetric.generate_pair('rsa', 2048)
  • Whether the package is actively maintained for modern Python versions (3.11+) beyond the 3.10 classifier listed
  • Current compatibility with macOS versions newer than 12 and Linux distributions with OpenSSL 3.0+
  • Whether the 1610 days since last release (2022-03-18) reflects intentional stability or abandonment
Same gist for agents: .md · .json

What it is and what it does

oscrypto is a pure-Python cryptography library that wraps the operating system's native crypto libraries—CNG and Secure Channel on Windows, Security.framework on macOS, and OpenSSL on Linux/BSD. It provides no-compile-needed access to TLS sockets, asymmetric key generation (RSA, DSA, EC), symmetric encryption (AES, TripleDES, RC2, RC4), signing and verification, and key derivation functions. The library is built on asn1crypto for ASN.1 parsing and handles X.509 certificates, PKCS#12 archives, and related PKI operations.

The design philosophy prioritizes simplicity and OS-level security patching over feature breadth. It intentionally omits modern modes like GCM and CTR, focusing instead on legacy and X.509-related primitives. TLS functionality uses the OS trust store by default and enforces sane security defaults (no SSLv3, weak DH rejected, modern cipher suites). This makes it suitable for applications that need to integrate with existing PKI infrastructure or handle certificate-based workflows without managing a C compiler toolchain.

Use it for

  • Building TLS client/server sockets with OS-managed certificate validation and trust lists
  • Generating RSA, DSA, or EC key pairs for PKI workflows without requiring a C compiler
  • Loading and parsing X.509 certificates and PKCS#12 archives from disk or memory
  • Signing and verifying data with RSA, DSA, or EC keys in legacy systems
  • Encrypting and decrypting data with AES or TripleDES for integration with existing systems
  • Deriving keys from passwords using PBKDF2, PBKDF1, or PKCS#12 KDF

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you need TLS or X.509 certificate handling without a compiler and want to rely on OS-level security updates.

The package is stable and widely used (top 1000 on PyPI), with zero known vulnerabilities and permissive licensing. However, the last release was 2022-03-18 and the repository shows no recent activity, so it is best suited for maintenance or legacy integration rather than new greenfield projects requiring modern cryptographic modes.

Install

oscrypto on PyPI

Before you install

Low install friction with a single pure-Python dependency (asn1crypto). Repository is active with recent commits (2026-07-17) and marked Production/Stable, though the latest release was 2022-03-18, indicating the package is mature but not under active development.

The package delegates to the operating system's crypto libraries (CNG/Secure Channel on Windows, Security.framework on macOS, OpenSSL on Linux/BSD), so the appropriate OS-level crypto support must be present; no additional system libraries are required to install the Python package itself.

License in practice

MIT license is permissive, allowing use in commercial and proprietary projects with minimal restrictions—only requiring attribution and inclusion of the license text.

Quickstart

pip install oscrypto

import oscrypto
from oscrypto import asymmetric

# Generate an RSA key pair
public_key, private_key = asymmetric.generate_pair('rsa', 2048)

Verify before relying

  • Whether the package is actively maintained for modern Python versions (3.11+) beyond the 3.10 classifier listed
  • Current compatibility with macOS versions newer than 12 and Linux distributions with OpenSSL 3.0+
  • Whether the 1610 days since last release (2022-03-18) reflects intentional stability or abandonment

Package facts

LicenseMIT permissive
Python supportNot specified
Install frictionLow. Pure-Python wheel
Runtime dependencies
1 package
asn1crypto
MaintenanceActively maintained 1,610 days since the last release
Last repo commit
First released
Downloads23,068,177 / month, #957 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 5 - Production/StableIntended Audience :: DevelopersLicense :: OSI Approved :: MIT LicenseProgramming Language :: Python :: 2Programming Language :: Python :: 2.6Programming Language :: Python :: 2.7Programming Language :: Python :: 3Programming Language :: Python :: 3.10Programming Language :: Python :: 3.2Programming Language :: Python :: 3.3Programming Language :: Python :: 3.4Programming Language :: Python :: 3.5Programming Language :: Python :: 3.6Programming Language :: Python :: 3.7Programming Language :: Python :: 3.8Programming Language :: Python :: 3.9Programming Language :: Python :: Implementation :: PyPyTopic :: Security :: Cryptography

Evidence: oscrypto-1.3.0-py2.py3-none-any.whl

Tags

Capabilities
TLS SSL socket wrapperOS native cryptographykey generation signing verificationencryption decryption libraryX.509 certificate handlingcompilation-free cryptoasymmetric encryption RSA DSA EC
Topics
tls-sslx509-pkikey-generation
PyPI keywords
cryptopkitlssslx509certificateencryptdecryptsignverifyrsadsaecdh

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “compilation-free crypto”

  • oscryptooscrypto provides TLS sockets, key generation, encryption,…
  • openbb-cryptoProvides cryptocurrency data retrieval commands as an extension to…
  • unicryptoProvides a unified interface to cryptographic algorithms, abstracting…

Give your agent the search over MCP, or paste the wish link into any chat.

More Cryptography packages

certifi Worth it
PyPI · Cryptography · released Jul 2026

Certifi provides Mozilla's curated collection of root SSL certificates for Python applications to validate TLS hosts and verify certificate trustworthiness.

MPL-2.0pure Python · 3.7+
1.9Bdownloads / mo
cryptography Worth it
PyPI · Cryptography · released Jul 2026

cryptography provides cryptographic recipes and low-level primitives for symmetric encryption, message digests, key derivation, and other common cryptographic algorithms in Python.

Apache-2.0 OR BSD-3-Clausecompiled wheel
1.5Bdownloads / mo
rsa Skip
PyPI · Cryptography · released Apr 2025

Pure-Python RSA encryption, decryption, signing, and key generation following PKCS#1 v1.5, with command-line and library interfaces.

Apache-2.0pure Pythonabandoned
299.6Mdownloads / mo
pyOpenSSL With conditions
PyPI · Python Modules · released Aug 2026

pyOpenSSL wraps OpenSSL's SSL/TLS functionality for Python, providing high-level connection objects and certificate handling through a Python-friendly interface around OpenSSL's cryptographic operations.

Apache-2.0pure Python · 3.9+
294.2Mdownloads / mo
azure-identity Worth it
PyPI · Cryptography · released Mar 2026

Provides Microsoft Entra ID token-based authentication for Azure SDK clients through a set of TokenCredential implementations that handle OAuth flows and managed identity support.

license unclearpure Python · 3.9+
247.2Mdownloads / mo
PyNaCl Worth it
PyPI · Cryptography · released Jan 2026

PyNaCl provides Python bindings to libsodium for digital signatures, secret-key and public-key encryption, hashing, message authentication, and password-based key derivation.

Apache-2.0compiled wheel · 3.8+
246.6Mdownloads / mo

See also asn1crypto · M2Crypto · tlslite-ng · tink · TgCrypto · nassl · crypto · aes-pkcs5 · pysnmpcrypto · cryptg