PyPI in 2025: A Year in Review

8 months ago

As 2025 comes to a close, it's time to look back at another busy year for the Python Package Index.…

Y25 Cycle 6 Engineering Progress Report

8 months ago

Providing insight into our product roadmap and, subsequently, the projects being worked on in our six-week cycles.  Cycle Y25C6 ran…

Development Cycle Six

8 months ago

Providing insight into our product roadmap and, subsequently, the projects being worked on in our six-week cycles.  We've been working…

Independent Collectives are becoming Organizations

8 months ago

TL;DR: Independent Collectives are being converted to Organizations to make the platform more consistent. There is no change in functionality.From…

PyPI and Shai-Hulud: Staying Secure Amid Emerging Threats

9 months ago

An attack on the npm ecosystem continues to evolve, exploiting compromised accounts to publish malicious packages. This campaign, dubbed Shai-Hulud,…

New Login Verification for TOTP-based Logins

9 months ago

We've implemented a new security feature designed to protect PyPI users from phishing attacks: email verification for TOTP-based logins from…

Trusted Publishing is popular, now for GitLab Self-Managed and Organizations

9 months ago

Trusted Publishing has proven popular since its launch in 2023. Recap: Trusted Publishing enables software build platforms to publish packages…

New Expense Submission flow 🎉

10 months ago

We are pleased to announce the release of the new Expense Submission flow! 🎉We’ve done a lot to increase the…

Signature Verification: How to Verify a Digital Signature Online

10 months ago

Digital signatures add another layer of security to your online transactions and communications. But how can you know they’re real?…

Phishing attacks with new domains likely to continue

11 months ago

Unfortunately the string of phishing attacks using domain-confusionand legitimate-looking emails continues. This is the same attack PyPI saw a few…

This website uses cookies.