1.0.dev1 pushed to PyPi #3600
-
Hi maintainers, I noticed that version 1.0.dev1 appears to be available on PyPI as a pre-release, but I can't find any corresponding tag, source code, or release information in this GitHub repository. What I observed:
Expected behavior:Typically, development versions like the historical Questions:
If the package exists without a clear source provenance, this could potentially be a supply chain concern. I wanted to bring this to your attention to ensure the repository and PyPI are properly synchronized. Thanks for maintaining this excellent library! |
Beta Was this translation helpful? Give feedback.
Replies: 2 comments 5 replies
-
I've also noticed this, and would appreciate some details. It also looks like |
Beta Was this translation helpful? Give feedback.
-
There is a prerelease on PyPI. Yes the provenance is valid. This is some design work that I've been doing privately. (Because I've needed a different approach for a change here.) I'll open up a discussion to talk about the design work tomorrow, and we can get a video call scheduled to give us some proper catch up time.
Currently not, no.
This isn't an error. |
Beta Was this translation helpful? Give feedback.
There is a prerelease on PyPI. Yes the provenance is valid.
This is some design work that I've been doing privately. (Because I've needed a different approach for a change here.)
I'll open up a discussion to talk about the design work tomorrow, and we can get a video call scheduled to give us some proper catch up time.
Currently not, no.
This isn't an error.