[issue12226] use secured channel for uploading packages to pypi

anatoly techtonik report at bugs.python.org
Sat Jun 4 07:01:15 CEST 2011


anatoly techtonik <techtonik at gmail.com> added the comment:

I believe that's a very personal judgement. For me exposing core Python development accounts is a fundamental flaw. The more accounts are collected, the more real are attacks through PyPI package injection.

----------

_______________________________________
Python tracker <report at bugs.python.org>
<http://bugs.python.org/issue12226>
_______________________________________


More information about the Python-bugs-list mailing list