I've opened a discussion on this, but I think it might be worth making an issue related to authentication.
I'd say we can split this work into multiple chunks, but let's think about what we want in ideal world.
[1] JWT with cookies, JWT in header, plain cookies for sessions (basic django auth)
[2] we shouldn't force users to use our preferred way of error handling
All of the above is up for discussion by the way :) haven't really found any other library that do authentication built-in. For Graphene we have these two:
Pay now to fund the work behind this issue.
Get updates on progress being made.
Maintainer is rewarded once the issue is completed.
You're funding impactful open source efforts
You want to contribute to this effort
You want to get funding like this too