Early Promising Results With SBOMs And Python Packages: Revision history

Diff selection: Mark the radio buttons of the revisions to compare and hit enter or the button at the bottom.
Legend: (cur) = difference with latest revision, (prev) = difference with preceding revision, m = minor edit.

15 August 2025

  • curprev 00:0200:02, 15 August 2025KatieKessler talk contribs 5,877 bytes +5,877 Created page with "<br>I've kicked off a project to reduce the "phantom dependency" problem for Python. Rust, etc) is included in a Python package but then isn't recorded anywhere in the package metadata. These distinct pieces of software aren't not recorded because of lack of time or awareness, there is no standardized method to record this information in Python package metadata. This means that when a software composition analysis (SCA) tool looks at the Python package the tool will "mis..."