Skip to content
Discussion options

You must be logged in to vote

This was a long time ago, but in case someone else arrives here...

If you wanted to have basic auth in the endpoints that don't use OAuth tokens, you could create a basic auth security scheme in FastAPI and use it there. It's probably a bit more complicated.

Then there's also the question... why do you need to protect staging in ways that don't apply to production as well? What could attackers do to staging that they couldn't do to production too?

Replies: 5 comments

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Answer selected by tiangolo
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
3 participants
Converted from issue

This discussion was converted from issue #349 on January 22, 2026 20:52.