python-package-guide icon indicating copy to clipboard operation
python-package-guide copied to clipboard

Add Packaging Guide entry on dependency locking

Open ucodery opened this issue 8 months ago • 1 comments

Creating a sub issue for a new page that would be valuable for advanced readers of the Packaging Guide: Locking.

Now that the PyPA has a blessed lockfile standard, pylock.toml, there is an obvious preferred choice for PyOS to recommend, that will work in the widest number of situations.

When we get around to it, it should be noted that locking is not a always-yes, nor an always-no answer for projects. Each project must make the decision for themselves. The decision ultimately involves not just technical problems, but security implications (good and bad for both sides), maintenance implications, and social community implications, at least.

ucodery avatar May 15 '25 21:05 ucodery

Love this 🚀

lwasser avatar May 19 '25 00:05 lwasser