Skip to content

chore: Exclude Python dependencies newer than 5 days#4993

Merged
twpayne merged 1 commit intotwpayne:masterfrom
KapJI:py-exclude-newer
Apr 5, 2026
Merged

chore: Exclude Python dependencies newer than 5 days#4993
twpayne merged 1 commit intotwpayne:masterfrom
KapJI:py-exclude-newer

Conversation

@KapJI
Copy link
Copy Markdown
Contributor

@KapJI KapJI commented Apr 3, 2026

With all recent supply chain attacks I think it makes sense to have it.

It makes newer versions impossible to use even if added manually to pyproject.toml.

https://docs.astral.sh/uv/reference/settings/#exclude-newer

Discussion about similar feature in Go: golang/go#76485

@KapJI KapJI force-pushed the py-exclude-newer branch from 7e40efe to 9eb7208 Compare April 3, 2026 11:04
@twpayne twpayne merged commit b1c6f0a into twpayne:master Apr 5, 2026
20 checks passed
@twpayne
Copy link
Copy Markdown
Owner

twpayne commented Apr 5, 2026

Agreed, thanks!

@KapJI KapJI deleted the py-exclude-newer branch April 23, 2026 22:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants