GeistHaus
log in · sign up

Package Managers Need to Cool Down

nesbitt.io

A survey of dependency cooldown support across package managers and update tools.

43 pages link to this URL
Relative “Dependency Cooldowns” in pip v26.0 with crontab

WARNING This blog post is now outdated. Use pip v26.1 which supports relative dependency cooldowns out-of-the-box, no hacks with crontab required. pip v26.0 added support for the --uploa...

4 inbound links article en python pypi open source maintainer urllib3 requests http networking security oss
pip v26.1 adds support for relative dependency cooldowns

My work as the Security Developer-in-Residence at the Python Software Foundation is sponsored by Alpha-Omega. Thanks to Alpha-Omega for supporting security in the Python ecosystem. I pub...

1 inbound link article en python pypi open source maintainer urllib3 requests http networking security oss
Simon Willison on python

1,250 posts tagged ‘python’. The Python programming language.

0 inbound links website en django 588ai 2016generative-ai 1785llms 1751uv 93projects 526quora 1005open-source 303sqlite 463datasette 1480
Simon Willison on security

602 posts tagged ‘security’.

0 inbound links website en ai 2016llms 1751generative-ai 1785prompt-injection 147xss 60exfiltration-attacks 43javascript 755csrf 54phishing 54python 1250