Quantcast
Channel: User David Z - Stack Overflow
Viewing all articles
Browse latest Browse all 48

Comment by David Z on Are PIP packages curated? Is it safe to install them?

$
0
0
@Andrew (1/2) The PyPI administrators will sometimes take down malicious packages when they find out about them, especially if the malicious package seems to be taking advantage of a name similarity. Other parts of the Python community may provide more stringent forms of verification, such as the Anaconda channel mentioned in MWB's comment, and there are also third-party security products that (claim to) scan packages and flag ones which seem suspicious. I'm not personally familiar with those measures, though.

Viewing all articles
Browse latest Browse all 48

Trending Articles