$npx skillfedfor your agent

soft-webauthn

Python webauthn software authenticator

With conditionsPyPI TestingReleased Jul 2022143.7K downloads / mopermissive licensePure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — soft_webauthn-0.1.4-py3-none-any.whl
v0.1.4 · released 2022-07-08 · 2 runtime deps: cryptography, fido2

Yes, if you are actively testing WebAuthn flows and can tolerate an abandoned package. The low install friction and permissive license make it straightforward to adopt, but verify that it works with your current dependency versions and WebAuthn spec version before relying on it in production CI—no updates are forthcoming.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Low install friction with only two runtime dependencies (cryptography and fido2).
  • However, the project is abandoned—last release was 2022-07-08 and last commit 2023-06-09—so expect no maintenance or security updates.

License · maintenance · safety

permissive license (permissive) — MIT license permits free use, modification, and distribution with minimal restrictions, making it safe to incorporate into test suites.

last release 2022-07-08 (1498 days) · last repo commit 2023-06-09 · 53 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 143,699 downloads/mo, #11,170 on PyPI

Verify before relying

pip install soft-webauthn

from soft_webauthn import SoftWebauthnDevice

device = SoftWebauthnDevice()
device.cred_init(rp_id='example.com', user_handle=b'user')
attestation = device.cred_as_attested()
  • Whether the package works with current versions of cryptography and fido2 dependencies, given its abandoned status since mid-2023
  • Compatibility with modern WebAuthn specifications and browser implementations
  • Whether it handles all WebAuthn credential types and algorithms in current use
Same gist for agents: .md · .json

What it is and what it does

soft-webauthn provides a SoftWebauthnDevice class that mimics a WebAuthn authenticator for testing passwordless authentication flows in web applications. It exports navigator-like methods (create, get) and credential initialization helpers so developers can write integration tests without physical security keys or live browser automation.

The package is designed to sit within a test suite alongside application-specific code that handles credential exchange between the test client and the web application under test. It depends on cryptography and fido2 for the underlying cryptographic operations and FIDO2 protocol implementation.

Use it for

  • Write unit tests for WebAuthn registration and authentication flows in web applications during CI/CD
  • Emulate authenticator behavior in integration tests without requiring hardware tokens
  • Test passwordless login flows in development without setting up a full browser environment
  • Validate credential creation and assertion handling in custom WebAuthn relying party implementations

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you are actively testing WebAuthn flows and can tolerate an abandoned package.

The low install friction and permissive license make it straightforward to adopt, but verify that it works with your current dependency versions and WebAuthn spec version before relying on it in production CI—no updates are forthcoming.

Install

soft-webauthn on PyPI

Before you install

Low install friction with only two runtime dependencies (cryptography and fido2). However, the project is abandoned—last release was 2022-07-08 and last commit 2023-06-09—so expect no maintenance or security updates.

License in practice

MIT license permits free use, modification, and distribution with minimal restrictions, making it safe to incorporate into test suites.

Quickstart

pip install soft-webauthn

from soft_webauthn import SoftWebauthnDevice

device = SoftWebauthnDevice()
device.cred_init(rp_id='example.com', user_handle=b'user')
attestation = device.cred_as_attested()

Verify before relying

  • Whether the package works with current versions of cryptography and fido2 dependencies, given its abandoned status since mid-2023
  • Compatibility with modern WebAuthn specifications and browser implementations
  • Whether it handles all WebAuthn credential types and algorithms in current use

Package facts

Licensepermissive license permissive
Python supportNot specified
Install frictionLow. Pure-Python wheel
Runtime dependencies
2 packages
cryptographyfido2
MaintenanceAbandoned 1,498 days since the last release
Last repo commit
First released
Downloads143,699 / month, #11,170 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
License :: OSI Approved :: MIT LicenseProgramming Language :: Python :: 3

Evidence: soft_webauthn-0.1.4-py3-none-any.whl

Tags

Capabilities
webauthn testingsoftware authenticatorfido2 emulationpasswordless auth testingwebauthn mock devicebrowser credential simulationweb app security testing
Topics
webauthntestingauthentication

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “webauthn testing”

  • soft-webauthnEmulates a WebAuthn authenticator in Python for testing web…
  • webauthnImplements server-side WebAuthn validation for passwordless…
  • django-otp-webauthnAdds WebAuthn Passkey support to Django OTP, enabling passwordless…

Give your agent the search over MCP, or paste the wish link into any chat.

More Testing packages

pluggy Worth it
PyPI · Libraries · released May 2025

Pluggy provides a plugin system that lets you define hook specifications and register implementations to be called in sequence, enabling extensible Python applications without tight coupling.

Install it if you're building an extensible application or framework.

MITpure Python · 3.9+aging
1.3Bdownloads / mo
pytest Worth it
PyPI · Libraries · released Jun 2026

pytest is a testing framework that lets you write test functions using plain assert statements and automatically discovers and runs them, with detailed failure reporting.

MITpure Python · 3.10+
1.1Bdownloads / mo
virtualenv Worth it
PyPI · Libraries · released Aug 2026

virtualenv creates isolated Python environments where packages can be installed independently without affecting the system Python or other projects.

MITpure Python · 3.9+
532.9Mdownloads / mo
coverage Worth it
PyPI · Testing · released Aug 2026

Coverage.py measures which lines of Python code are executed during test runs, reporting coverage percentages and identifying untested code paths.

Install it if you want to measure test completeness or enforce coverage thresholds in your project.

permissive licensepure Python · 3.10+
335.8Mdownloads / mo
pytest-asyncio Worth it
PyPI · Testing · released May 2026

pytest-asyncio is a pytest plugin that enables writing and running async test functions using the asyncio library, allowing developers to await code directly within test cases.

Install it if you write tests for any asyncio-based code.

Apache-2.0pure Python · 3.10+
275.9Mdownloads / mo
pytest-json-ctrf Worth it
PyPI · Testing · released Jul 2026

A pytest plugin that generates test reports in Common Test Report Format (CTRF) as JSON, compatible with pytest-xdist and pytest-playwright for distributed and browser-based testing.

Install it if you need CTRF-formatted test output for CI/CD integration or cross-tool reporting.

MITpure Python · 3.8+
273.0Mdownloads / mo

See also fido2 · webauthn · django-otp-webauthn · PyOTP · pyu2f · django-magiclink · djoser · oauthenticator · supertokens-python · Flask-Security