Flask-Security assumes you’ll be using libraries such as SQLAlchemy, MongoEngine or Peewee to define a data model that includes a User and Role model. The fields on your models must follow a particular convention depending on the functionality your app requires. Aside from this, you’re free to add any additional fields to your model(s) if you want. At the bear minimum your User and Role model should include the following fields:
User
Role
Depending on the application’s configuration, additional fields may need to be added to your User model.
If you enable account confirmation by setting your application’s SECURITY_CONFIRMABLE configuration value to True your User model will require the following additional field:
If you enable user tracking by setting your application’s SECURITY_TRACKABLE configuration value to True your User model will require the following additional fields: