Sponsor of the Day:
Jerkmate
https://realpython.com/podcasts/rpp/249/
Episode #249: Going Beyond requirements.txt With pylock.toml and PEP 751 – The Real Python Podcast
What is the best way to record the Python dependencies for the reproducibility of your projects? What advantages will lock files provide for those projects?...
real python podcastgoing beyondpylock tomlepisode249
https://snarky.ca/why-pylock-toml-includes-digital-attestations/
Why pylock.toml includes digital attestations
Mar 26, 2026 - A Python project got hacked where malicious releases were directly uploaded to PyPI. I said on Mastodon that had the project used trusted publishing with...
pylock tomlincludesdigitalattestations
https://packaging.python.org/en/latest/specifications/pylock-toml/
pylock.toml Specification - Python Packaging User Guide
python packaging userpylock tomlspecificationguide