Thanks to Mozilla's #MOSS https://www.mozilla.org/en-US/moss/ and Chan Zuckerberg Initative https://chanzuckerberg.com/
for supporting the PSF https://python.org/psf/
($407,000 USD in total) for transformative work on pip & on Python packaging user experience. Looking forward to working on this with https://simplysecure.org/
and contractors-to-be-named-soon!
https://pyfound.blogspot.com/2019/12/moss-czi-support-pip.html
Very happy to learn: https://blog.thunderbird.net/2019/10/thunderbird-enigmail-and-openpgp/
"Today the Thunderbird project is happy to announce that for the future Thunderbird 78 release, planned for summer 2020, we will add built-in functionality for email encryption and digital signatures using the OpenPGP standard. This new functionality will replace the Enigmail add-on, which will continue to be supported until Thunderbird 68 end of life, in the Fall of 2020."
PSA: Someone has apparently typo-squatted a package with a similar name to dateutil on PyPI and is serving malicious code on it!
Please check that you depend on `python-dateutil`, no other variants. (The malicious package is `python3-dateutil`).
Do you think Darius Rucker released this album to help him remember the answers to his "security" questions?
Is there a good book on the basics of statistics and stochastics? Preferrably in German, bzt english would also be okay.
I would like to do some stuff with data analysis in Python but I think a solid mathematical foundation would do me a favor here.
The easy_install change will probably break all kinds of weird edge cases, but in the end it's definitely for the best.
The only thing that bothers me about it is that it's very hard to declare our "opportunistic dependency" on pip.
This past weekend we released setuptools 42.0, which has some big changes:
1. easy_install officially deprecated, with some workflows falling back to pip if installed!
2. Removed upload and register commands.
3. Support plugin keywords in setup.cfg
I sometimes think I'm overly worried about exposing services on my home network to the internet. I've had #syncthing configured to be LAN-only since I installed it, and the only service I run on the open internet is the VPN so I can get access to my system remotely.
Have I been fooled by the internet equivalent of health class scare tactics where any sort of sexual activity = instant STDs and pregnancy?
From the archives of my blog but still very relevant: "pytz: The Fastest Footgun in the West", about why you probably shouldn't be using pytz:
https://blog.ganssle.io/articles/2018/03/pytz-fastest-footgun.html
Programmer working at Google. Python core developer and general FOSS contributor. I also post some parenting content.