NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
PyPI · #1622 most downloaded on PyPI
Server-side session support for Flask
Last release 3 years ago
no release in 18 months
Ships unpredictably
gaps range from 2 weeks to 3.3 years
Nearly every release is documented
notes for 14 of 15 stable releases
Nothing withdrawn
no release was ever pulled
12 years old
18 releases · first in 2014
Add DynamodDB backend and other minor fixes.
Add DynamodDB backend and other minor fixes.
Full release notes: https://flask-session.readthedocs.io/en/latest/changes.html#id1
Add DynamoDB session interface (#214).
Add ability to install client libraries for backends using optional dependencies (extras) (#228).
Include prematurely removed cachelib dependency. Will be removed in 1.0.0 to be an optional dependency (#223).
One column per quarter.
Changelog: https://flask-session.readthedocs.io/en/latest/changes.html#id1
Access session interfaces via subfolder, for example flask_session.redis.RedisSessionInterface (2bc7df).
Deprecate pickle in favor of msgspec, which is configured with SESSION_SERIALIZATION_FORMAT to choose between 'json' and 'msgpack'. All sessions will convert to msgspec upon first interaction with 0.7.0. Pickle is still available to read existing sessions, but will be removed in 1.0.0. (c7f8ce, c7f8ce)
Deprecate SESSION_USE_SIGNER (a5dba7).
Deprecate flask_session.filesystem.FileSystemSessionInterface in favor of the broader flask_session.cachelib.CacheLibSessionInterface (2bc7df).
Add time-to-live expiration for MongoDB (9acee3).
Add retry for SQL based storage (#211).
Add flask session_cleanup command and alternatively, SESSION_CLEANUP_N_REQUESTS for SQLAlchemy or future non-TTL backends (#211).
Add type hints (7d7d58).
Add logo and additional documentation.
Add vary cookie header when session modified or accessed as per flask's built-in session (7ab698).
Add regenerate method to session interface to mitigate fixation (#27, #39)(80df63).
Remove null session in favour of relevant exception messages (#107, #182)(d7ed1c).
Drop support for Python 3.7 which is end-of-life and precludes use of msgspec (bd7e5b).
Prevent session identifier reuse on storage miss (#76).
Abstraction to improve consistency between backends.
Enforce PERMANENT_SESSION_LIFETIME as expiration consistently for all backends (#81)(86895b).
Specifically include backend session interfaces in public API and document usage (#210).
Fix non-permanent sessions not updating expiry (#221).
Nothing published for this version
Nothing published for this version
Use ~ServerSideSession.should_set_cookie for preventing each request from saving the session again.
Use ~ServerSideSession.should_set_cookie for preventing each request from saving the session again.
Do not store a permanent session that is otherwise empty.
Use secrets module to generate session identifiers, with 256 bits of entropy (was previously 122).
Explicitly name support for python-memcached, pylibmc and pymemcache for cachelib backend.
Introduce SESSION_KEY_LENGTH to control the length of the session key in bytes, default is 32.
Support SQLAlchemy SESSION_SQLALCHEMY_SEQUENCE, SESSION_SQLALCHEMY_SCHEMA and SESSION_SQLALCHEMY_BINDKEY
Drop support for Redis < 2.6.12.
Fix pymongo 4.0 compatibility.
Fix expiry is None bug in SQLAlchemy.
Fix bug when existing SQLAlchemy db instance.
Fix empty sessions being saved.
Support Flask 3.0 and Werkzeug 3.0
release version 0.6.0rc1
release version 0.6.0rc1
This fixes compatibility with Flask 2.3.
This fixes compatibility with Flask 2.3.
Flask-Session has joined the Pallets Community Ecosystem, https://github.com/pallets-eco. Any community member interested in helping maintain this project may contribute by joining the #flask-session channel on https://discord.gg/pallets.
Drop support for Python < 3.7.
Switch to pyproject.toml and Flit for packaging.
Move to Pallets Community Ecosystem for community-driven maintenance.
Replace use of session_cookie_name for Flask 2.3 compatibility.
Version 0.4.1 was already released to PyPI on April 29, 2023. We are creating a release record here in GitHub while tagging it.
Version 0.4.1 was already released to PyPI on April 29, 2023. We are creating a release record here in GitHub while tagging it.
Version 0.4.0 was already released to PyPI on June 24, 2021. We are creating a release record here in GitHub while tagging it.
Version 0.4.0 was already released to PyPI on June 24, 2021. We are creating a release record here in GitHub while tagging it.
Changed werkzeug.contrib.cache to cachelib.
Changed werkzeug.contrib.cache to cachelib.
SqlAlchemySessionInterface is using VARCHAR(255) to store session id now.
SqlAlchemySessionInterface is using VARCHAR(255) to store session id now.
SqlAlchemySessionInterface won't run db.create_all anymore.
Nothing published for this version
Fixed signing failure in Python 3.
Fixed signing failure in Python 3.
Fixed MongoDBSessionInterface failure in Python 3.
Fixed SqlAlchemySessionInterface failure in Python 3.
Fixed StrictRedis support.
Added support for non-permanent session.
Added support for non-permanent session.
- Fixed signing failure.
Fixed signing failure.
Added SqlAlchemySessionInterface.
Added SqlAlchemySessionInterface.
Added support for cookie session id signing.
Various bugfixes.
Fixed MongoDB backend InvalidDocument error.
Fixed MongoDB backend InvalidDocument error.
- First public preview release.
First public preview release.
First public preview release.
On this page
Changes
0.8.0 - 2024-03-26
Added
Fixed
0.7.0 - 2024-03-18
Changed
Added
Removed
Fixed
0.6.0 - 2024-01-16
Changed
Added
Removed
Fixed
0.5.0 - 2023-05-11
0.4.1
0.4.0
0.3.2
0.3.1
0.3
0.2.3
0.2.2
0.2.1
0.2
0.1.1
0.1
Your coding agent can read these notes before it upgrades. Set up the MCP server →