Flask Unsign is a penetration testing utility that attempts to uncover a Flask server's secret key by taking a signed session verifying it against a wordlist of commonly used and publicly known secret keys (sourced from books, GitHub, StackOverflow and various other sources).
No known vulnerabilities in the latest version
Based on latest version 1.2.1. If you're running an older version, check OSV for your specific version.
[](/packages/flask-unsign)
<a href="/packages/flask-unsign"><img src="/api/badges/flask-unsign?period=month" alt="PyPI Stats"></a>