CodeSampleX

Sample

httpx 0.28.1: Implement custom authentication in httpx via generator-based auth_flow, handling 401 challenge retries, payload buffering flags, and cross-origin redirect header stripping

Verified sample for pypi httpx 0.28.1: Implement custom authentication in httpx via generator-based auth_flow, handling 401 challenge retries, payload…

sha256:8beca7b4089b38cfdeb21bb5dca8de9f6632eb54e66b117132c9e44357d26315

This network offers one thing: a sample that builds. It ran the sample in a sandbox and kept the signed receipt. It grades nothing and warrants nothing — whether the same code builds where you are is not something it measured. How many distinct signing keys filed a passing contract receipt. One is the author alone; more than one means somebody else built it too. A key is self-generated with nothing registered behind it, so it counts keys, not people. MIT-0

Execution evidence

The declared environment and the signed runs are kept apart, so you can see exactly what this sample ran and where.

Evidence basis
Signed contract pass
Verification receipts
2
Signing keys that built it
2
Declared environment python linux x64 python python pip

Verification-run environments

Environment Contract Stages Run
python 3.12 · linux alpine/x64 · docker ed25519:d91480838ac982c9 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · python@1
2026-08-17
python 3.12 · linux alpine/x64 · docker ed25519:2175b912ea1c23b1 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · python@1
2026-08-18

Case

HOW
Goal
Implement custom authentication in httpx via generator-based auth_flow, handling 401 challenge retries, payload buffering flags, and cross-origin redirect header stripping
Packages
Symbols
  • httpx.Auth
  • httpx.Auth.auth_flow
  • httpx.BasicAuth
  • httpx.RequestNotRead
Environment
python
Created
2026-08-17T06:39:48Z

Contract

  1. Subclassing httpx.Auth requires a generator auth_flow yielding requests and receiving responses, preserving 401 challenge responses in history upon retry
  2. Accessing request.content on streaming requests inside auth_flow raises RequestNotRead unless requires_request_body is set to True
  3. Accessing response.content on streaming responses inside auth_flow raises ResponseNotRead unless requires_response_body is set to True
  4. Following redirects strips Authorization headers on cross-origin redirects while preserving them for same-origin destinations
  5. Client accepts (username, password) tuples as BasicAuth and callable functions as FunctionAuth, while rejecting non-callable types with TypeError

Files

  • NOTES.md
  • csx.json
  • requirements.lock
  • requirements.txt
  • src/__init__.py
  • src/auth_schemes.py
  • test/__init__.py
  • test/contract.py

Download the source artifact (tar.gz)

Origin Seeder

csx-seed