# Python web frameworks privacy ratings

Web and API frameworks for Python.

| Name | Grade | Jurisdiction | Description |
| --- | --- | --- | --- |
| [Bottle](https://privacyratings.com/python-frameworks/bottle/) | B (80/100) | Unknown | Single-file micro web framework for Python with no dependencies other than the standard library. |
| [Django](https://privacyratings.com/python-frameworks/django/) | B (80/100) | United States (Five Eyes) | Batteries-included Python web framework with an ORM, admin interface, templates and authentication. |
| [Django REST framework](https://privacyratings.com/python-frameworks/django-rest-framework/) | B (80/100) | United Kingdom (Five Eyes) | Toolkit for building web APIs with Django, providing serializers, viewsets, authentication, permissions and a browsable API. |
| [FastAPI](https://privacyratings.com/python-frameworks/fastapi/) | B (80/100) | Unknown | Python framework for building APIs with type hints, based on Starlette and Pydantic, with automatic request validation and OpenAPI documentation. |
| [Litestar](https://privacyratings.com/python-frameworks/litestar/) | B (80/100) | Unknown | ASGI web framework for Python for building APIs, with dependency injection, data validation, ORM integration and OpenAPI documentation. |
| [Masonite](https://privacyratings.com/python-frameworks/masonite/) | B (80/100) | Unknown | Batteries-included Python web framework with an ORM, queues, mail, notifications and task scheduling, built around a service container. |
| [NiceGUI](https://privacyratings.com/python-frameworks/nicegui/) | B (80/100) | Germany (Fourteen Eyes) | Python framework for building web-based user interfaces that run in the browser or as a desktop app. |
| [Sanic](https://privacyratings.com/python-frameworks/sanic/) | B (80/100) | Unknown | Asynchronous Python web server and framework built on asyncio. |
| [Tornado](https://privacyratings.com/python-frameworks/tornado/) | B (80/100) | Unknown | Python web framework and asynchronous networking library, suited to long polling, WebSockets and other long-lived connections. |
| [web2py](https://privacyratings.com/python-frameworks/web2py/) | B (80/100) | Unknown | Full-stack Python web framework with a database abstraction layer, a web-based development interface and security defaults, designed to run without installation. |
| [Falcon](https://privacyratings.com/python-frameworks/falcon/) | C (70/100) | Unknown | Minimal Python framework for building REST APIs and microservices, supporting both WSGI and ASGI. |
| [Flask](https://privacyratings.com/python-frameworks/flask/) | C (70/100) | Unknown | Lightweight WSGI web framework for Python, built on Werkzeug and Jinja, that leaves databases and other components to extensions. |
| [Gradio](https://privacyratings.com/python-frameworks/gradio/) | C (70/100) | United States (Five Eyes) | Python library from Hugging Face for building web interfaces and demos for machine learning models and other Python functions. |
| [Quart](https://privacyratings.com/python-frameworks/quart/) | C (70/100) | Unknown | Asynchronous Python web framework with the Flask API, built on ASGI. |
| [Starlette](https://privacyratings.com/python-frameworks/starlette/) | D (50/100) | Unknown | Lightweight ASGI toolkit and framework for building asynchronous web services in Python. |
| [Streamlit](https://privacyratings.com/python-frameworks/streamlit/) | D (50/100) | United States (Five Eyes) | Python framework from Snowflake for turning data scripts into interactive web apps and dashboards. |
| [Pyramid](https://privacyratings.com/python-frameworks/pyramid/) | D (40/100) | Unknown | Python web framework from the Pylons Project that scales from single-file apps to large applications, with a choice of templating and database layers. |
| [Reflex](https://privacyratings.com/python-frameworks/reflex/) | D (40/100) | United States (Five Eyes) | Framework for building full-stack web apps in pure Python, which compiles the frontend to a React app. |

## Criteria

- **Open source** (weight 3): Is all the source code needed to run the product public?
- **No trackers or telemetry** (weight 3): Are the website and apps free of third-party trackers, with any analytics anonymous and any telemetry off by default?
- **No ads or data sales** (weight 2): Is the product funded without advertising, ad targeting or selling user data?
- **Independent audit** (weight 2): Has an independent security or privacy audit been published within the last three years?

Source: https://privacyratings.com/python-frameworks/
