social-auth-core
Python social authentication made simple.
Decision gist · record as of 2026-08-14
Yes. The package is actively maintained, has no known vulnerabilities, supports current Python versions (3.10–3.14), and carries a permissive BSD license. Install friction is low. It is a foundational choice for social authentication in Python web projects, though you will need to implement or install a framework-specific adapter (e.g., social-auth-app-django) and configure provider backends for your use case.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Python 3.10 or later; runtime dependencies include cryptography, oauthlib, PyJWT, requests, and defusedxml.
- Low install friction with a pure-Python wheel distribution.
- Actively maintained with a recent release (8 days old) and active repository status, though only the core and Django modules are in active development; other integrations are in maintenance-only mode.
License · maintenance · safety
BSD-3-Clause (permissive) — BSD-3-Clause permissive license allows use in commercial and proprietary projects with minimal restrictions, requiring only license and copyright notice retention.
last release 2026-08-06 (8 days) · last repo commit 2026-08-13 · 918 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 6,220,120 downloads/mo, #1,954 on PyPI
Alternatives
Verify before relying
pip install social-auth-core
from social_auth_core.backends.oauth import BaseOAuth2Backend
from social_auth_core.actions.auth import do_auth- Whether the package provides pre-built backends for specific OAuth/SAML providers or requires custom backend implementation.
- How the core component integrates with web frameworks beyond Django (e.g., Flask, FastAPI support status).
- Storage backend abstraction details and supported database/ORM solutions.
What it is and what it does
social-auth-core is the foundation of the python-social-auth ecosystem, providing the common authentication interface and backend architecture for integrating social login and registration. It defines how authentication backends connect to third-party services like OAuth 2.0, OpenID, and SAML providers, and establishes the contract for web framework integrations and storage solutions.
The package itself is framework-agnostic; it handles the core authentication logic, token management (via PyJWT and cryptography), and secure request handling (via oauthlib and requests-oauthlib). Developers use it by implementing framework-specific adapters and storage backends, then plugging in provider-specific authentication backends. Active development focuses on the core and Django integration, while other framework modules operate in maintenance mode.
Use it for
- Add Google, GitHub, or Facebook login to a Django web application without building OAuth flows from scratch.
- Implement multi-provider social registration where users can sign up via their existing social accounts.
- Build a framework-agnostic authentication service that multiple web applications can consume.
- Integrate SAML-based enterprise authentication for internal or partner-facing applications.
- Migrate user authentication from custom OAuth handling to a standardized, maintained backend.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes.
The package is actively maintained, has no known vulnerabilities, supports current Python versions (3.10–3.14), and carries a permissive BSD license. Install friction is low. It is a foundational choice for social authentication in Python web projects, though you will need to implement or install a framework-specific adapter (e.g., social-auth-app-django) and configure provider backends for your use case.
Install
social-auth-core on PyPI
Before you install
Low install friction with a pure-Python wheel distribution. Actively maintained with a recent release (8 days old) and active repository status, though only the core and Django modules are in active development; other integrations are in maintenance-only mode.
Requires Python 3.10 or later; runtime dependencies include cryptography, oauthlib, PyJWT, requests, and defusedxml.
License in practice
BSD-3-Clause permissive license allows use in commercial and proprietary projects with minimal restrictions, requiring only license and copyright notice retention.
Quickstart
pip install social-auth-core
from social_auth_core.backends.oauth import BaseOAuth2Backend
from social_auth_core.actions.auth import do_auth
Verify before relying
- Whether the package provides pre-built backends for specific OAuth/SAML providers or requires custom backend implementation.
- How the core component integrates with web frameworks beyond Django (e.g., Flask, FastAPI support status).
- Storage backend abstraction details and supported database/ORM solutions.
Package facts
| License | BSD-3-Clause permissive |
| Python support | Supports the current Python release >=3.10 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 7 packagescryptographydefusedxmloauthlibPyJWTpython3-openidrequests-oauthlibrequests |
| Maintenance | Actively maintained 8 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 6,220,120 / month, #1,954 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableEnvironment :: Web EnvironmentIntended Audience :: DevelopersProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.14Topic :: Internet |
Evidence: social_auth_core-5.1.0-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “social authentication framework”
- social-auth-coreProvides a core framework for integrating social authentication and…
- pyobjc-framework-SocialProvides Python bindings to macOS's Social framework, enabling access…
- djoserProvides Django REST Framework views for user registration, login,…
Give your agent the search over MCP, or paste the wish link into any chat.
More Internet packages
Botocore provides low-level, data-driven access to Amazon Web Services APIs, serving as the foundation for the AWS CLI and boto3 libraries.
Install it if you need programmatic access to AWS services.
Provides an async client for AWS services using botocore and aiohttp, allowing you to call AWS APIs asynchronously within asyncio-based applications.
Install it if you need to call AWS services from async Python code; it is the standard way to do so.
Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.
Provides a platform-independent file locking mechanism to coordinate access to files across processes and threads.
FastAPI is a Python web framework for building REST APIs using type hints, with automatic request validation, serialization, and interactive API documentation.
Provides common Protocol Buffer message definitions used across Google Cloud APIs, enabling Python clients to interact with Google services.
See also social-auth-app-django · django-allauth · descope · djoser · django-oidc-provider · fastapi-auth0 · python3-saml · django-authlib · aioauth · Authlib