NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
PyPI · #3851 most downloaded on PyPI
Python bindings for libmongocrypt
Last release 26 days ago
08 Sep 2026
Release timing varies
gaps range from 2 weeks to 6 months
Nearly every release is documented
notes for 31 of 32 stable releases
1 version withdrawn
withdrawn after publishing
7 years old
39 releases · first in 2019
Community notes: https://www.mongodb.com/community/forums/t/pymongocrypt-1-19-0-released/343285
prefixPreview query type is replaced with prefix.suffixPreview query type is replaced with suffix.string algorithm (formerly textPreview) for prefix, suffix, and substringPreview query types.prefixPreview and suffixPreview query types.Fix QE text explicit encryption handling of caseSensitive and diacriticSensitive options.
One column per quarter.
caseSensitive and diacriticSensitive options.
RHEL 6.2 builds are deprecated and may be removed in the future. The linux-x86_64-glibc_2_7-nocrypto release build may be used instead and has equival…
nocrypto in the name have no dependency on OpenSSL. Drivers using the nocrypto variant are expected to set crypto callbacks (e.g. call mongocrypt_setopt_crypto_hooks) to do operations requiring crypto to avoid an error.keyAltName in encryptedFieldsMap.release in the repository configuration in place of the major/minor version (e.g., 1.17). Details in README.md.linux-x86_64-glibc_2_7-nocrypto release build may be used instead and has equivalent glibc requirements.ENABLE_WINDOWS_STATIC_RUNTIME has been
removed. Users that need the static MSVCRT library should instead set the
CMAKE_MSVC_RUNTIME_LIBRARY built-in CMake parameter when
configuring libmongocrypt.Support mixing QE and unencrypted JSON schemas.
FindPython instead of FindPythonInterp and FindPythonLibs).Set CMake minimum required version to 3.15...4.0 (with maximum policy version set to 4.0).
3.15...4.0 (with maximum policy version set to 4.0).FetchContent_MakeAvailable() is used to populate dependencies instead of FetchContent_Populate().
MONGOCRYPT_MONGOC_DIR is not set to USE-SYSTEM.MONGOCRYPT_DFP_DIR is not set to USE-SYSTEM.FetchContent_Populate() is still used for CMake versions prior to 3.18 to avoid add_subdirectory() behavior.-fPIC in CMake targets.Add support for text-based Queryable Encryption with the new "textPreview" algorithm. NOTE: The "textPreview" algorithm is experimental only. It is not intended for public use.
Fix possible error when text options include multiple query types and are used for a find payload: Text search query specification cannot contain mult
Text search query specification cannot contain multiple query type specifications.Support experimental Queryable Encryption text indexes with cleanupStructuredEncryptionData and compactStructuredEncryptionData.
cleanupStructuredEncryptionData and compactStructuredEncryptionData.textPreview and query types: prefixPreview, suffixPreview and substringPreview
mongocrypt_setopt_algorithm_text to apply options for explicit encryption.buildinfo (previously only buildInfo was bypassed).serverStatus.Add support for Python 3.14.
Drop support for Python 3.8.
Bundle libmongocrypt 1.15.0 in release wheels.
Fix possible missing error state on mongocrypt_ctx_finalize.
mongocrypt_ctx_finalize.Fix building against libbson with extra alignment enabled (ENABLE_EXTRA_ALIGNMENT=ON).
ENABLE_EXTRA_ALIGNMENT=ON).mongocrypt_ctx_rewrap_many_datakey_init.Support automatic encryption for $lookup stages in aggregate pipelines on MongoDB server 8.1+.
$lookup stages in aggregate pipelines on MongoDB server 8.1+.ENABLE_EXTRA_ALIGNMENT=ON.Bundle libmongocrypt 1.13.1 in release wheels.
Add support for the key_expiration_ms option to MongoCryptOptions.
Add support for $lookup in CSFLE and QE.
Nothing published for this version
Nothing published for this version
The Windows download URLs for stable and unstable are now deprecated. See the GitHub Release page for Windows downloads.
Bundle libmongocrypt 1.11.0 in release wheels.
Add support for Python 3.13.
Fix bug in Python async support for AsyncMongoCryptCallback.fetch_keys.
Bundle libmongocrypt 1.10.1 in release wheels.
Bundle libmongocrypt 1.10.1 in release wheels.
Support processing bulkWrite command.
delegated option.bulkWrite command.range algorithm.Add Python async support.
Drop support for Python 3.7 and PyPy 3.8. Python >=3.8 or PyPy >=3.9 is now required.
Add support for range-based Queryable Encryption with the new "range" algorithm on MongoDB 8.0+. This replaces the experimental "rangePreview" algorithm.
Add Secure Software Development Life Cycle automation to release process. GitHub Releases for pymongocrypt now include a Software Bill of Materials, and signature files corresponding to the distribution files released on PyPI.
Nothing published for this version
Fix support for building source distributions with setuptools >= 70.
Fix support for building source distributions with setuptools >= 70.
### New features - Add Debian 12 packages
This release adds stable support of the Queryable Encryption (QE) feature for the "Indexed" and "Unindexed" algorithms.
This release adds stable support of the Queryable Encryption (QE) feature for the "Indexed" and "Unindexed" algorithms.
Update from manylinux2010 to manylinux2014 wheels.
Bundle libmongocrypt 1.8.4 in release wheels.
Add support for manylinux_2_28_aarch64 wheels.
Support for range index. NOTE: The Range algorithm is experimental only. It is not intended for public use.
Add support for Python 3.12 on MacOS and Linux.
Update required cryptography version to >=2.5.
Bundle libmongocrypt 1.8.1 in release wheels.
Bundle libmongocrypt 1.8.1 in release wheels.
Drop support for Python 2 and Python <3.7. Python >=3.7 is now required.
Drop support for Python 2 and Python <3.7. Python >=3.7 is now required.
Bundle libmongocrypt 1.8.0 in release wheels.
Remove support for libmongocrypt <=1.8.0, libmongocrypt >=1.8.0 is now required. Note this is only relevant for users that install from source or use the PYMONGOCRYPT_LIB environment variable.
Fix datakey decryption requiring multiple rounds of KMS requests.
Bundle libmongocrypt 1.7.1 in release wheels.
Bundle libmongocrypt 1.7.1 in release wheels.
Add support for range-based Queryable Encryption with the new "rangePreview" algorithm. NOTE: The "rangePreview" algorithm is experimental only. It is
Add support for range-based Queryable Encryption with the new "rangePreview" algorithm. NOTE: The "rangePreview" algorithm is experimental only. It is not intended for public use.
Bundle libmongocrypt 1.7.0 in release wheels.
Remove support for libmongocrypt <=1.7.0, libmongocrypt >=1.7.0 is now required. Note this is only relevant for users that install from source or use the PYMONGOCRYPT_LIB environment variable.
Add missing MONGOCRYPT_EXPORT to mongocrypt_ctx_provide_kms_providers
Fixed spurious exception traceback at interpreter shutdown: AttributeError: 'NoneType' object has no attribute 'mongocrypt_destroy'
Support on-demand credentials with MONGOCRYPT_CTX_NEED_KMS_CREDENTIALS state and mongocrypt_ctx_provide_kms_providers.
MONGOCRYPT_CTX_NEED_KMS_CREDENTIALS state and mongocrypt_ctx_provide_kms_providers.Bundle libmongocrypt 1.6.1 in release wheels.
Support GCP attached service accounts when using GCP KMS.
Support Azure VM-assigned Managed Identity for Automatic KMS Credentials.
Support obtaining AWS credentials for CSFLE in the same way as for MONGODB-AWS.
Fix deprecation warnings with OpenSSL 3.0.
mongocrypt_ctx_setopt_key_material.1.3.1 is a recommended upgrade for all users of 1.3.0.
Fix a potential data corruption bug in RewrapManyDataKey (ClientEncryption.rewrap_many_data_key) when rotating encrypted data encryption keys backed by GCP or Azure key services.
The following conditions will trigger this bug:
A GCP-backed or Azure-backed data encryption key being rewrapped requires fetching an access token for decryption of the data encryption key.
The result of this bug is that the key material for all data encryption keys being rewrapped is replaced by new randomly generated material, destroying the original key material.
To mitigate potential data corruption, upgrade to this version or higher before using RewrapManyDataKey to rotate Azure-backed or GCP-backed data encryption keys. A backup of the key vault collection should always be taken before key rotation.
Bundle libmongocrypt 1.5.2 in release wheels.
Remove support for libmongocrypt <=1.5.1, libmongocrypt >=1.5.2 is now required. Note this is only relevant for users that install from source or use the PYMONGOCRYPT_LIB environment variable.
Add mongocrypt_kms_ctx_get_kms_provider.
Bundle libmongocrypt 1.5.0 in release wheels.
Add support for Queryable Encryption with MongoDB 6.0.
Add support for the crypt_shared library which can be used instead of mongocryptd.
Remove support for libmongocrypt 1.3, libmongocrypt >=1.5 is now required. Note this is only relevant for users that install from source or use the PYMONGOCRYPT_LIB environment variable.
Support AWS temporary credentials via session token.
Add support for the "kmip" KMS provider.
Add MongoCryptKmsContext.kms_provider property.
Bundle libmongocrypt 1.3.0 in release wheels.
Remove support for libmongocrypt 1.2, libmongocrypt >=1.3 is now required. Note this is only relevant for users that install from source or use the PYMONGOCRYPT_LIB environment variable.
Fix a bug where decrypting from a memoryview was not supported.
Fix a bug where decrypting from a memoryview was not supported.
Bundle libmongocrypt 1.2.2 in release wheels.
Bundle libmongocrypt 1.2.1 in release wheels.
Bundle libmongocrypt 1.2.1 in release wheels.
Add ENABLE_PIC cmake option, set to ON by default, so static libraries build with -fPIC by default on relevant systems.
Add support for Azure and GCP KMS providers.
Add support for temporary AWS credentials via the "sessionToken" option.
Bundle libmongocrypt 1.2.0 in release wheels.
Remove support for libmongocrypt 1.0 and 1.1, libmongocrypt >=1.2 is now required. Note this is only relevant for users that install from source or use the PYMONGOCRYPT_LIB environment variable.
Bundle libmongocrypt 1.0.4 in release wheels.
Bundle libmongocrypt 1.0.4 in release wheels.
Bundle libmongocrypt 1.0.0 in release wheels.
The first stable version.
Bundle libmongocrypt 1.0.0 in release wheels.
Add support for custom KMS endpoints with the AWS masterkey provider.
Add support for custom KMS endpoints with the AWS masterkey provider.
Bundle libmongocrypt 1.0.0 in release wheels.
Document that pip 19 is required for manylinux2010 wheel installation.
Document that pip 19 is required for manylinux2010 wheel installation.
Bundle libmongocrypt 1.0.0-beta5 in release wheels.
Make pymongocrypt compatible with manylinux2010 releases.
Make pymongocrypt compatible with manylinux2010 releases.
Bundle libmongocrypt 1.0.0-beta4 in release wheels.
Initial Python binding for libmongocrypt.
Initial Python binding for libmongocrypt.
Bundle libmongocrypt 1.0.0-beta4 in release wheels.
Your coding agent can read these notes before it upgrades. Set up the MCP server →