PGPy13
Pretty Good Privacy for Python (temporary fork for py3.13 compatability)
Decision gist · record as of 2026-08-14
Yes, but with caution. PGPy13 is suitable for Python 3.13 projects that need OpenPGP functionality. However, be aware this is a temporary fork with minimal ongoing support—the maintainer will not accept pull requests or bug reports. If you can use the upstream project or have flexibility to wait for its next release, prefer that instead.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Python >= 3.9; cryptography v38 or higher and pyasn1 must be installed.
- Low install friction with only two runtime dependencies.
- However, this is an aging fork with minimal maintenance activity (4 repository stars, last commit 2025-03-01).
License · maintenance · safety
BSD-3-Clause (permissive) — BSD-3-Clause is permissive and imposes minimal restrictions on use or redistribution. You may use this package in commercial or proprietary projects with only the requirement to include the license notice.
last release 2025-03-01 (531 days) · last repo commit 2025-03-01 · 4 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 139,175 downloads/mo, #11,305 on PyPI
Alternatives
Verify before relying
pip install PGPy13
from pgpy import PGPKey
key = PGPKey.from_file('key.asc')- Whether upstream issue #462 has been resolved and a new official release issued, making this fork obsolete.
- Real-world security audit status of the underlying codebase for cryptographic correctness.
- Whether the fork maintainer will continue to patch for future Python versions.
What it is and what it does
PGPy13 is a temporary fork of PGPy that adds Python 3.13 compatibility and updates cryptography library requirements to v38 or higher. It implements the OpenPGP standard (RFC 4880) in pure Python, allowing you to load, create, and verify PGP keys and signatures in both ASCII-armored and binary formats, and to encrypt or decrypt messages using RSA and ECDH algorithms.
The fork was created because the upstream project broke under Python 3.13 due to removal of the imghdr library from the standard library. Support for Python versions below 3.9 has been dropped. The maintainer explicitly states this is temporary and will be discontinued once the upstream project resolves its issues and releases a new version.
Use it for
- Encrypt and decrypt messages in Python applications that need to interoperate with PGP/GPG systems.
- Create and verify digital signatures on documents or data using RSA, DSA, or ECDSA algorithms.
- Load and parse existing PGP public and private keys from files or ASCII-armored text.
- Implement OpenPGP-compliant cryptographic workflows in Python 3.9+ environments without external GPG binaries.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, but with caution.
PGPy13 is suitable for Python 3.13 projects that need OpenPGP functionality. However, be aware this is a temporary fork with minimal ongoing support—the maintainer will not accept pull requests or bug reports. If you can use the upstream project or have flexibility to wait for its next release, prefer that instead.
Install
pgpy13 on PyPI
Before you install
Low install friction with only two runtime dependencies. However, this is an aging fork with minimal maintenance activity (4 repository stars, last commit 2025-03-01). The fork exists solely to patch Python 3.13 compatibility and cryptography v38 or higher requirements; upstream remains unmaintained.
Requires Python >= 3.9; cryptography v38 or higher and pyasn1 must be installed.
License in practice
BSD-3-Clause is permissive and imposes minimal restrictions on use or redistribution. You may use this package in commercial or proprietary projects with only the requirement to include the license notice.
Quickstart
pip install PGPy13
from pgpy import PGPKey
key = PGPKey.from_file('key.asc')
Verify before relying
- Whether upstream issue #462 has been resolved and a new official release issued, making this fork obsolete.
- Real-world security audit status of the underlying codebase for cryptographic correctness.
- Whether the fork maintainer will continue to patch for future Python versions.
Package facts
| License | BSD-3-Clause permissive |
| Python support | Supports the current Python release >=3.9 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 2 packagescryptographypyasn1 |
| Maintenance | Aging 531 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 139,175 / month, #11,305 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 4 - BetaIntended Audience :: DevelopersLicense :: OSI Approved :: BSD LicenseOperating System :: MacOS :: MacOS XOperating System :: Microsoft :: WindowsOperating System :: POSIX :: LinuxProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3 :: OnlyProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.9Programming Language :: Python :: Implementation :: CPythonTopic :: SecurityTopic :: Security :: CryptographyTopic :: Software Development :: LibrariesTopic :: Software Development :: Libraries :: Python Modules |
Evidence: pgpy13-0.6.1rc1-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “PGP signature verification”
- PGPy13PGPy13 is a Python library for OpenPGP encryption, decryption, and…
- PGPyPGPy implements OpenPGP (RFC 4880) in pure Python, enabling you to…
- python-gnupgProvides Python bindings to GnuPG for key management, encryption,…
Give your agent the search over MCP, or paste the wish link into any chat.
More Libraries packages
urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.
Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.
Pluggy provides a plugin system that lets you define hook specifications and register implementations to be called in sequence, enabling extensible Python applications without tight coupling.
Install it if you're building an extensible application or framework.
Provides parsing, arithmetic, and recurrence rule computation for dates and times, with timezone support and iCalendar RFC compliance.
Install it if you need to parse flexible date strings, compute relative dates, handle timezones, or work with recurrence rules—it's the de facto choice for these tasks.
Six provides utility functions to write Python code that runs on both Python 2.7 and Python 3.3+, smoothing over language differences between the two versions.
pytest is a testing framework that lets you write test functions using plain assert statements and automatically discovers and runs them, with detailed failure reporting.
See also PGPy · python-gnupg · pysequoia · securesystemslib · gnupg · rsa · pyHanko · lightdsa · pyas2lib · python-pkcs11