NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
PyPI · #841 most downloaded on PyPI
Collection of utilities for publishing packages on PyPI
Last release 2 months ago
27 Jul 2026
Release timing varies
gaps range from 6 weeks to 1.2 years
Most releases are documented
notes for 50 of 56 stable releases
1 version withdrawn
withdrawn after publishing
13 years old
60 releases · first in 2013
- Specify UTF-8 encoding when reading .pypirc files.
Specify UTF-8 encoding when reading .pypirc files. ( #1268 )
Add missing subdependencies to --version output. ( #1275 )
The dependency on rich has been bumped to avoid a hang in some environments. ( #1308 )
Indices that respond with non-standard HTTP codes are now handled more gracefully. ( #1309 )
Fix uploading packages with metadata version 2.5. The fix no longer allows metadata version 2.0, which was never officially standardised. ( #1317 )
#1298
- Automatically refresh short-lived PyPI token in long running Trusted Publishing uploads.
Automatically refresh short-lived PyPI token in long running Trusted Publishing uploads.
In the event that a trusted publishing upload job is taking longer than the validity period of a trusted publishing token (15 minutes at the time of this writing), and we are already 10 minutes into that validity period, we will begin to attempt to replace the token on each subsequent request. ( #1246 )
Fix compatibility kludge for invalid License-File metadata entries emitted by build backends to work also with packaging version 24.0. ( #1217 )
Fix a couple of incorrectly rendered error messages. ( #1224 )
twine now enforces keyring >= 21.2.0 , which was previously implicitly required by API usage. ( #1229 )
twine now catches configparser.Error to prevent accidental leaks of secret tokens or passwords to the user’s console. ( #1240 )
Remove hacks that support --skip-existing for indexes other than PyPI and TestPyPI.
To date, these hacks continue to accrue and there have been numerous issues with them, not the least of which being that every time we update them, the paid index providers change things to break the compatibility we implement for them. Beyond that, these hacks do not work when text is internationalized in the response from the index provider.
For a sample of past issues, see:
https://github.com/pypa/twine/issues/1251
https://github.com/pypa/twine/issues/918
https://github.com/pypa/twine/issues/856
https://github.com/pypa/twine/issues/693
https://github.com/pypa/twine/issues/332 ( #1251 )
Remove support for MD5 digests during uploads.
This support was entirely vestigial, as MD5 is not a secure hash function and is not actually required on upload by PyPI.
Indices that cross-reference the uploaded content with a digest should use the provided SHA-256 and/or BLAKE2 digests instead. ( #1262 )
#1247
One column per quarter.
- Twine now has preliminary built-in support for Trusted Publishing as an authentication mechanism.
Twine now has preliminary built-in support for Trusted Publishing as an authentication mechanism. ( #1194 )
Remove support for egg and wininst distribution types. These are not accepted by PyPI and not produced by any modern build-backends. ( #1195 )
Twine no longer supports .tar.bz2 source distributions. ( #1200 )
packaging is used instead of pkginfo for parsing and validating metadata. This aligns metadata validation to the one performed by PyPI. packaging version 24.0 or later is required. Support for metadata version 2.4 requires packaging 24.2 or later. pkginfo is not a dependency anymore. ( #1180 )
Use "source" instead of None as pyversion for sdist uploads. This is what PyPI (and most likely other package indexes) expects. ( #1191 )
Merge pull request #1189 from pypa/release-6.0.1
Merge pull request #1189 from pypa/release-6.0.1
Update changelog for 6.0.1
Fixed a regression where twine check would fail to expand wildcards, e.g. twine check 'dist/*' . ( #1188 )
#1184
- Restore support for pkginfo 1.11
Restore support for pkginfo 1.11 ( #1116 )
Username for PyPI and Test PyPI now defaults to token but no longer overrides a username configured in the environment or supplied on the command line. Workflows still supplying anything other than token for the username when uploading to PyPI or Test PyPI will now fail. Either supply token or do not supply a username at all. ( #1121 )
#1024
* Pin against pkginfo 1.11 until the fix for #1116 can be merged, unblocking release.
Resolve DeprecationWarnings when extracting twine metadata. ( #1115 )
Fix bug for Repository URLs with auth where the port was lost. When attempting to prevent printing authentication credentials in URLs provided with username and password, we did not properly handle the case where the URL also contains a port (when reconstructing the URL). This is now handled and tested to ensure no regressions. ( #fix-repo-urls-with-auth-and-port )
- Add the experimental --attestations flag.
Add the experimental --attestations flag. ( #1095 )
- Use email.message instead of cgi as cgi has been deprecated
Use email.message instead of cgi as cgi has been deprecated ( #969 )
Remove support for usernames other than token when uploading to PyPI and TestPyPI ( #1040 )
#931 , #991 , #1028
https://pypi.org/project/twine/4.0.2/
Remove deprecated function to fix twine check with pkginfo 1.9.0. ( #941 )
https://pypi.org/project/twine/4.0.1/
Improve logging when keyring fails. ( #890 )
Reconfigure root logger to show all log messages. ( #896 )
https://pypi.org/project/twine/4.0.0/
https://pypi.org/project/twine/4.0.0/
Drop support for Python 3.6. ( #869 )
Use Rich to add color to upload output. ( #851 )
Use Rich to add color to check output. ( #874 )
Use Rich instead of tqdm for upload progress bar. ( #877 )
Remove Twine’s dependencies from the User-Agent header when uploading. ( #871 )
Improve detection of disabled BLAKE2 hashing due to FIPS mode. ( #879 )
Restore warning for missing long_description . ( #887 )
https://pypi.org/project/twine/3.8.0/
https://pypi.org/project/twine/3.8.0/
Add --verbose logging for querying keyring credentials. ( #849 )
Log all upload responses with --verbose . ( #859 )
Show more helpful error message for invalid metadata. ( #861 )
Require a recent version of urllib3. ( #858 )
https://pypi.org/project/twine/3.7.1/
https://pypi.org/project/twine/3.7.1/
Fix broken link to packaging tutorial. ( #844 )
https://pypi.org/project/twine/3.7.0/
https://pypi.org/project/twine/3.7.0/
Add support for core metadata version 2.2, defined in PEP 643. ( #833 )
https://pypi.org/project/twine/3.6.0/
https://pypi.org/project/twine/3.6.0/
https://pypi.org/project/twine/3.5.0/
https://pypi.org/project/twine/3.5.0/
Show more helpful messages for invalid passwords. ( #815 )
Allow the --skip-existing option to work with GCP Artifact Registry. ( #823 )
Add a helpful error message when an upload fails due to missing a trailing slash in the URL. ( #812 )
Generalize --verbose suggestion when an upload fails. ( #817 )
https://pypi.org/project/twine/3.4.2/
https://pypi.org/project/twine/3.4.2/
Improve error message for unsupported metadata. ( #755 )
Improve error message for a missing config file. ( #770 )
Do not include md5_digest or blake2_256_digest if FIPS mode is enabled on the host. This removes those fields from the metadata before sending the metadata to the repository. ( #776 )
- Fix a regression that was causing some namespace packages with dots in them fail to upload to PyPI.
Fix a regression that was causing some namespace packages with dots in them fail to upload to PyPI. ( #745 )
- Prefer importlib.metadata for entry point handling.
Prefer importlib.metadata for entry point handling. ( #728 )
Rely on importlib_metadata 3.6 for nicer entry point processing. ( #732 )
Eliminate dependency on setuptools/pkg_resources and replace with packaging and importlib_metadata. ( #736 )
- Print files to be uploaded using upload --verbose
Print files to be uploaded using upload --verbose ( #670 )
Print configuration file location when using upload --verbose ( #675 )
Print source and values of credentials when using upload --verbose ( #685 )
Add support for Python 3.9 ( #708 )
Turn warnings into errors when using check --strict ( #715 )
Make password optional when using upload --client-cert ( #678 )
Support more Nexus versions with upload --skip-existing ( #693 )
Support Gitlab Enterprise with upload --skip-existing ( #698 )
Show a better error message for malformed files ( #714 )
Adopt PSF code of conduct ( #680 )
Adopt towncrier for the changleog ( #718 )
Nothing published for this version
- Improve display of HTTP errors during upload
Improve display of HTTP errors during upload ( #666 )
Print packages and signatures to be uploaded when using --verbose option ( #652 )
Use red text when printing errors on the command line ( #649 )
Require repository URL scheme to be http or https ( #602 )
Add type annotations, checked with mypy, with PEP 561 support for users of Twine’s API ( #231 )
Update URL to .pypirc specification ( #655 )
Don’t raise an exception when Python version can’t be parsed from filename ( #612 )
Fix inaccurate retry message during upload ( #611 )
Clarify error messages for archive format ( #601 )
Nothing published for this version
- Restore --non-interactive as a flag not expecting an argument.
Restore --non-interactive as a flag not expecting an argument. ( #548 )
- Add support for specifying --non-interactive as an environment variable.
Add support for specifying --non-interactive as an environment variable. ( #547 )
- When a client certificate is indicated, all password processing is disabled.
When a client certificate is indicated, all password processing is disabled. ( #336 )
Add --non-interactive flag to abort upload rather than interactively prompt if credentials are missing. ( #489 )
Twine now unconditionally requires the keyring library and no longer supports uninstalling keyring as a means to disable that functionality. Instead, use keyring --disable keyring functionality if necessary. ( #524 )
Add Python 3.8 to classifiers. ( #518 )
More robust handling of server response in --skip-existing ( #332 )
- Require requests 2.20 or later to avoid reported security vulnerabilities in earlier releases.
Twine now requires Python 3.6 or later. Use pip 9 or pin to “twine<2” to install twine on older Python versions. ( #437 )
Require requests 2.20 or later to avoid reported security vulnerabilities in earlier releases. ( #491 )
- Improved output on check command: Prints a message when there are no distributions given to check. Improved handling of errors in a distribution’s m
Improved output on check command: Prints a message when there are no distributions given to check. Improved handling of errors in a distribution’s markup, avoiding messages flowing through to the next distribution’s errors. ( #488 )
- Show Warehouse URL after uploading a package
Show Warehouse URL after uploading a package ( #459 )
Better error handling and gpg2 fallback if gpg not available. ( #456 )
Now provide a more meaningful error on redirect during upload. ( #310 )
Fail more gracefully when encountering bad metadata ( #341 )
- Add disable_progress_bar option to disable tqdm.
Add disable_progress_bar option to disable tqdm. ( #427 )
Allow defining an empty username and password in .pypirc. ( #426 )
Support keyring.get_credential. ( #419 )
Support keyring.get_username_and_password. ( #418 )
Add Python 3.7 to classifiers. ( #416 )
Restore prompts while retaining support for suppressing prompts. ( #452 )
Avoid requests-toolbelt to 0.9.0 to prevent attempting to use openssl when it isn’t available. ( #447 )
Use io.StringIO instead of StringIO. ( #444 )
Only install pyblake2 if needed. ( #441 )
Use modern Python language features. ( #436 )
Specify python_requires in setup.py ( #435 )
Use https URLs everywhere. ( #432 )
Fix –skip-existing for Nexus Repos. ( #428 )
Remove unnecessary usage of readme_render.markdown. ( #421 )
Don’t crash if there’s no package description. ( #412 )
Fix keyring support. ( #408 )
Refactor tox env and travis config. ( #439 )
- Fix regression with upload exit code
Fix regression with upload exit code ( #404 )
- Add twine check command to check long description
Add twine check command to check long description ( #395 )
Drop support for Python 3.3 ( #392 )
Empower --skip-existing for Artifactory repositories ( #363 )
Avoid MD5 when Python is compiled in FIPS mode ( #367 )
- Raise exception if attempting upload to deprecated legacy PyPI URLs.
Remove PyPI as default register package index. ( #320 )
Support Metadata 2.1 ( PEP 566 ), including Markdown for description fields. ( #319 )
Raise exception if attempting upload to deprecated legacy PyPI URLs. ( #322 )
Avoid uploading to PyPI when given alternate repository URL, and require http:// or https:// in repository_url . ( #269 )
Update PyPI URLs . ( #318 )
Add new maintainer, release checklists. ( #314 )
Add instructions on how to use keyring. ( #277 )
Nothing published for this version
- Link to changelog from README
Link to changelog from README ( #46 )
Reorganize & improve user & developer documentation. ( #304 )
Revise docs predicting future of twine ( #303 )
Add architecture overview to docs ( #296 )
Add doc building instructions ( #295 )
Declare support for Python 3.6 ( #257 )
Improve progressbar ( #256 )
Degrade gracefully when keyring is unavailable ( #315 )
Fix changelog formatting ( #299 )
Fix syntax highlighting in README ( #298 )
Fix Read the Docs, tox, Travis configuration ( #297 )
Fix Travis CI and test configuration ( #286 )
Print progress to stdout , not stderr ( #268 )
Fix --repository[-url] help text ( #265 )
Remove obsolete registration guidance ( #200 )
- Blacklist known bad versions of Requests.
Blacklist known bad versions of Requests. ( #253 )
- Twine sends less information about the user’s system in the User-Agent string.
Twine sends less information about the user’s system in the User-Agent string. ( #229 )
Fix --skip-existing when used to upload a package for the first time. ( #220 )
Fix precedence of --repository-url over --repository . ( #206 )
Twine will now resolve passwords using the keyring if available. Module can be required with the keyring extra.
Twine will use hashlib.blake2b on Python 3.6+ instead of pyblake2
- Check if a package exists if the URL is one of:
Check if a package exists if the URL is one of:
https://pypi.python.org/pypi/
https://upload.pypi.org/
https://upload.pypi.io/
This helps people with https://upload.pypi.io still in their .pypirc file.
- Switch from upload.pypi.io to upload.pypi.org.
Switch from upload.pypi.io to upload.pypi.org. ( #201 )
Retrieve configuration from the environment as a default. ( #144 )
Repository URL will default to TWINE_REPOSITORY
Username will default to TWINE_USERNAME
Password will default to TWINE_PASSWORD
Allow the Repository URL to be provided on the command-line ( --repository-url ) or via an environment variable ( TWINE_REPOSITORY_URL ). ( #166 )
Generate Blake2b 256 digests for packages if pyblake2 is installed. Users can use python -m pip install twine[with-blake2] to have pyblake2 installed with Twine. ( #171 )
Generate SHA256 digest for all packages by default.
Stop testing on Python 2.6.
Warn users if they receive a 500 error when uploading to *pypi.python.org ( #199 )
### Bugfixes - Correct a packaging error.
Correct a packaging error.
- Fix uploads to instances of pypiserver using --skip-existing . We were not properly checking the return status code on the response after attempting
Fix uploads to instances of pypiserver using --skip-existing . We were not properly checking the return status code on the response after attempting an upload. ( #195 )
Avoid attempts to upload a package if we can find it on Legacy PyPI.
- Fix issue where we were checking the existence of packages even if the user didn’t specify --skip-existing .
Fix issue where we were checking the existence of packages even if the user didn’t specify --skip-existing . ( #189 ) ( #191 )
- Clint was not specified in the wheel metadata as a dependency.
Clint was not specified in the wheel metadata as a dependency. ( #187 )
- Support --cert and --client-cert command-line flags and config file options for feature parity with pip. This allows users to verify connections to
Support --cert and --client-cert command-line flags and config file options for feature parity with pip. This allows users to verify connections to servers other than PyPI (e.g., local package repositories) with different certificates. ( #142 )
Add progress bar to uploads. ( #152 )
Allow --skip-existing to work for 409 status codes. ( #162 )
Implement retries when the CDN in front of PyPI gives us a 5xx error. ( #167 )
Switch Twine to upload to pypi.io instead of pypi.python.org. ( #177 )
Allow passwords to have % s in them. ( #186 )
- Bump requests-toolbelt version to ensure we avoid ConnectionErrors
Bump requests-toolbelt version to ensure we avoid ConnectionErrors ( #155 )
- Paths with hyphens in them break the Wheel regular expression.
Paths with hyphens in them break the Wheel regular expression. ( #145 )
Exception while accessing the repository key (sic) when raising a redirect exception. ( #146 )
- Fix uploading signatures causing a 500 error after large file support was added. ( #137 , #140 )
Fix uploading signatures causing a 500 error after large file support was added. ( #137 , #140 )
- Upload signatures with packages appropriately
Upload signatures with packages appropriately ( #132 )
As part of the refactor for the 1.6.0 release, we were using the wrong name to find the signature file.
This also uncovered a bug where if you’re using twine in a situation where * is not expanded by your shell, we might also miss uploading signatures to PyPI. Both were fixed as part of this.
- Fix signing support for uploads
Fix signing support for uploads ( #130 )
- Allow the user to specify the location of their .pypirc
Allow the user to specify the location of their .pypirc ( #97 )
Support registering new packages with twine register ( #8 )
Add the --skip-existing flag to twine upload to allow users to skip releases that already exist on PyPI. ( #115 )
Upload wheels first to PyPI ( #106 )
Large file support via the requests-toolbelt ( #104 )
Raise an exception on redirects ( #92 )
Work around problems with Windows when using getpass.getpass ( #116 )
Warnings triggered by pkginfo searching for PKG-INFO files should no longer be user visible. ( #114 )
Provide more helpful messages if .pypirc is out of date. ( #111 )
- Support deprecated pypirc file format
Support commands not named “gpg” for signing ( #29 )
Display information about the version of setuptools installed ( #85 )
Support deprecated pypirc file format ( #61 )
Add lower-limit to requests dependency
- Switch to a git style dispatching for the commands to enable simpler commands and programmatic invocation.
Switch to a git style dispatching for the commands to enable simpler commands and programmatic invocation. ( #6 )
Parse ~/.pypirc ourselves and use subprocess instead of the distutils.spawn module. ( #13 )
Expand globs and check for existence of dists to upload ( #65 )
Fix issue uploading packages with _ s in the name ( #47 )
List registered commands in help text ( #34 )
Use pkg_resources to load registered commands ( #32 )
Prevent ResourceWarning from being shown ( #28 )
Add support for uploading Windows installers ( #26 )
Nothing published for this version
### Features - Additional functionality.
Additional functionality.
Nothing published for this version
### Features - Basic functionality. On this page - Changelog - twine 7.0.0 (2026-07-27) - Bugfixes - Deprecations and Removals - Misc - twine 6.2.0 (2
Basic functionality.
On this page
Changelog
twine 7.0.0 (2026-07-27)
Bugfixes
Deprecations and Removals
Misc
twine 6.2.0 (2025-09-04)
Features
Bugfixes
Deprecations and Removals
Misc
Twine 6.1.0 (2025-01-17)
Features
Deprecations and Removals
Misc
Twine 6.0.1 (2024-11-30)
Bugfixes
Misc
Twine 6.0.0 (2024-11-29)
Bugfixes
Deprecations and Removals
Misc
Twine 5.1.1 (2024-06-26)
Bugfixes
Twine 5.1.0 (2024-05-15)
Features
Twine 5.1.0 (2024-05-15)
Misc
Twine 5.0.0 (2024-02-10)
Bugfixes
Features
Misc
Twine 4.0.2 (2022-11-30)
Bugfixes
Twine 4.0.1 (2022-06-01)
Bugfixes
Twine 4.0.0 (2022-03-31)
Features
Bugfixes
Twine 3.8.0 (2022-02-02)
Features
Bugfixes
Twine 3.7.1 (2021-12-07)
Improved Documentation
Twine 3.7.0 (2021-12-01)
Features
Twine 3.6.0 (2021-11-10)
Features
Twine 3.5.0 (2021-11-02)
Features
Bugfixes
Twine 3.4.2 (2021-07-20)
Bugfixes
Twine 3.4.1 (2021-03-16)
Bugfixes
Twine 3.4.0 (2021-03-15)
Features
Twine 3.3.0 (2020-12-23)
Features
Bugfixes
Improved Documentation
Twine 3.2.0 (2020-06-24)
Features
Bugfixes
Twine 3.1.1 (2019-11-27)
Bugfixes
Twine 3.1.0 (2019-11-23)
Features
Twine 3.0.0 (2019-11-18)
Features
Bugfixes
Twine 2.0.0 (2019-09-24)
Features
Bugfixes
Twine 1.15.0 (2019-09-17)
Features
Twine 1.14.0 (2019-09-06)
Features
Bugfixes
Twine 1.13.0 (2019-02-13)
Features
Bugfixes
Misc
Twine 1.12.1 (2018-09-24)
Bugfixes
Twine 1.12.0 (2018-09-24)
Features
Bugfixes
Twine 1.11.0 (2018-03-19)
Features
Bugfixes
Misc
Twine 1.10.0 (2018-03-07)
Features
Bugfixes
Twine 1.9.1 (2017-05-27)
Bugfixes
Twine 1.9.0 (2017-05-22)
Bugfixes
Misc
Twine 1.8.1 (2016-08-09)
Misc
Twine 1.8.0 (2016-08-08)
Features
Misc
Twine 1.7.4 (2016-07-09)
Bugfixes
Twine 1.7.3 (2016-07-08)
Bugfixes
Misc
Twine 1.7.2 (2016-07-05)
Bugfixes
Twine 1.7.1 (2016-07-05)
Bugfixes
Twine 1.7.0 (2016-07-04)
Features
Bugfixes
Twine 1.6.5 (2015-12-16)
Bugfixes
Twine 1.6.4 (2015-10-27)
Bugfixes
Twine 1.6.3 (2015-10-05)
Bugfixes
Twine 1.6.2 (2015-09-28)
Bugfixes
Twine 1.6.1 (2015-09-18)
Bugfixes
Twine 1.6.0 (2015-09-14)
Features
Bugfixes
Twine 1.5.0 (2015-03-10)
Features
Bugfixes
Misc
Twine 1.4.0 (2014-12-12)
Features
Bugfixes
Twine 1.3.0 (2014-03-31)
Features
Twine 1.2.2 (2013-10-03)
Features
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →