Cryptography

PyAuthlib

Authlib is a comprehensive OAuth / OpenID / JWT library. JsonWebToken.decode() and the OAuth client Client.parse_request_body_response track access-token flows.

1 sanitizer

Sanitizers

.jwt.decode()Sanitizer
#
Signature
authlib.jose.jwt.decode(s, key, claims_cls=..., claims_options=..., ...) -> JWTClaims

Verifies and decodes a JWT. Finding under permissive claims_options.

tracks:return

Other Methods

.jwt.encode()Neutral
#
Signature
authlib.jose.jwt.encode(header, payload, key, check=True) -> bytes

Signs a JWT. Neutral with safe algorithm.

Fully-Qualified Names

FQNField
authlibfqns[0]
authlib.josefqns[1]

Wrong FQN → 0 findings. Verify with: change fqns to garbage → must produce 0 results.

Import

rule.py
from codepathfinder.go_rule import PyAuthlib