Skip to content

Pin biaplotter version with next stable release #372

@haesleinhuepf

Description

@haesleinhuepf

Hi all,

it's great to see all the advancements happening here.

I'm sure you are aware, this issue just allows to track this. This line in the 0.9.0 branch introduces an issue regarding reproducible builds:

"biaplotter@https://github.com/BiAPoL/biaplotter/archive/refs/heads/main.zip"

It uses an unspecified version of code in a remote repository. Users cannot guess what gets actually installed here. It's actually a security risk too because you install stuff via github and not via pypi. I recommend shipping biaplotter to pypi early and using defined versions for specifying dependencies.

Best,
Robert

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions