PyPI 现已支持数字证明
原文英文,约800词,阅读约需3分钟。发表于: 。PyPI package maintainers can now publish signed digital attestations whenpublishing, in order to further increase trust in the supply-chain security oftheir projects. Additionally, a new API is...
PyPI现已支持数字证明,包维护者可在发布时附加签名以增强供应链安全性。新API允许用户验证已发布的证明,目前已有超过20,000个证明发布。此举基于PEP 740,旨在提高信任度,确保所有证明可验证且对用户有用。