I got too excited about "set-and-forget" relative dependency cooldowns coming to #pip that I hacked them together using cron and a script that calculates uploaded-prior-to in pip.conf đź‘€

https://sethmlarson.dev/pip-relative-dependency-cooling-with-crontab

#python #pypi #dependencycooldowns #security

Relative “Dependency Cooldowns” in pip v26.0 with crontab

WARNING: Most of this blog post is a hack, everyone should probably just wait for relative dependency cooldowns to come to a future version of pip. pip v26.0 added support for th...

sethmlarson.dev
@sethmlarson pr welcome if you want to add that post into mine from yesterday
@andrewnez Hehe, I'll wait for pip to actually support relative dependency cooldowns first :)