dependency-management

Tag

Cards List
#dependency-management

Switching from uv to PDM

Lobsters Hottest · 2026-04-21 Cached

Developer shares experience switching Python projects from uv to PDM, highlighting PDM’s pure-Python codebase, new 2.26.8 release with relative-time dependency cooldown, and enhanced project-management features.

0 favorites 0 likes
#dependency-management

Defense in Depth: A Practical Guide to Python Supply Chain Security

Lobsters Hottest · 2026-04-19 Cached

A practical guide to securing Python supply chains through layered defenses including linting with Ruff, dependency pinning with hashes, vulnerability scanning with pip-audit, SBOM generation, and Trusted Publishing with OIDC attestations.

0 favorites 0 likes
← Back to home

Submit Feedback