Skip to content

QuantumScan

jpadilla/pyjwt

jpadilla/pyjwt
78
risk score
50 findings · 26 files scanned

PyJWT library extensively uses quantum-vulnerable cryptographic algorithms including RSA, ECDSA (NIST P-256/384/521, secp256k1), and EdDSA across 95 identified instances. As a JWT implementation library, its core functionality relies entirely on classical public-key cryptography that will become insecure against quantum attacks, requiring comprehensive algorithm migration to maintain long-term security guarantees.

Recent findingsView all findings →
FileAlgorithmSeverity
jwt/algorithms.py:45NIST P-521 curvehigh
jwt/algorithms.py:115RSAhigh
jwt/algorithms.py:159ECDSAhigh
jwt/algorithms.py:160NIST P-521 curvehigh
jwt/algorithms.py:161ECDSAhigh
jwt/algorithms.py:162NIST P-521 curvehigh
jwt/algorithms.py:167Ed25519 / EdDSAhigh
jwt/algorithms.py:43NIST P-256 curvehigh
jwt/algorithms.py:44NIST P-384 curvehigh
jwt/algorithms.py:46Elliptic Curve Cryptographyhigh
Exposure by language
Python50 · 100%
Compliance mapping
DORA
OK
NIS2
OK
NIST PQC
Partial
Exports for compliance
Share read-only link

Anyone with this link can view the risk score and top findings — no sign-in required. Source code stays private.

https://quantumscan.io/en/share/742a3c3b-c6ad-4cbe-ba9a-56a5c2812a3f
Add a badge to your README

Show your project's post-quantum readiness in the README. The badge updates automatically after every new scan.

Preview

Post-Quantum Readiness
Markdown
[![Post-Quantum Readiness](https://quantumscan.io/api/badge/jpadilla/pyjwt.svg)](https://github.com/jpadilla/pyjwt)
HTML
<a href="https://github.com/jpadilla/pyjwt"><img src="https://quantumscan.io/api/badge/jpadilla/pyjwt.svg" alt="Post-Quantum Readiness" /></a>

Add badge to your README

Show your quantum-safety score directly on GitHub.

QuantumScan badge preview
[![QuantumScan](https://quantumscan.io/api/badge/jpadilla/pyjwt.svg)](https://quantumscan.io/en/scan/742a3c3b-c6ad-4cbe-ba9a-56a5c2812a3f)

Save your results & track future changes

Create a free account to get drift alerts, compliance PDF exports, and scan history.

  • Weekly drift alerts when new vulnerabilities appear
  • Track risk score over time across all your repos
  • Export DORA / NIS2 compliance PDF for auditors

Free forever for design partners · No credit card