Looks like Python just had a left-pad like incident
1–5 of 5 posts
Re: Looks like Python just had a left-pad like incident
#2A Python package in use enough to be flagged 'critical' could be earning a few hundred US dollars per month through Tidelift if the maintainers sign up. Which should more than compensate the 2FA overheads.
Re: Looks like Python just had a left-pad like incident
#3Re: Looks like Python just had a left-pad like incident
#4Quoting: "I'd rather just write code for fun and only worry about supply chain security when I'm actually paid to do so" A Python package in use enough to be flagged 'critical' could be earning a few hundred US dollars per month through Tidelift if the maintainers sign up. Which should more than compensate the 2FA overheads.
Re: Looks like Python just had a left-pad like incident
#5Quoting: "I'd rather just write code for fun and only worry about supply chain security when I'm actually paid to do so" A Python package in use enough to be flagged 'critical' could be earning a few hundred US dollars per month through Tidelift if the maintainers sign up. Which should more than compensate the 2FA overheads.
Does this really work? I assume only for popular JS, python or ruby packages, right?