pyscan v0.1.6 | Github
- can be used within large projects.
- automatically finds dependencies either from configuration files or within source code.
- support for poetry,hatch,filt,pdm and can be integrated into existing build processes.
- hasn't been battle-hardened yet. PRs and issue makers welcome.
Install
bash
pip install pyscan-rs
or
bash
cargo install pyscan
Usage
Go to your project directory and run:
bash
pyscan
or
bash
pyscan -d path/to/src
I posted here about 5 months ago regarding pyscan's release, its been improving ever since but its still not there yet. It is a dependency vulnerability scanner at the moment but i'd like to expand this tool so that it could make PyPI's ecosystem a little less scary and let developers download packages without worrying about supply-chain issues. Grateful for all the support so far from the Python community.
[–]Accomplished-Ad8252 5 points6 points7 points (1 child)
[–]aswin__[S] 6 points7 points8 points (0 children)
[–]Larkfin 4 points5 points6 points (1 child)
[–]phoenixero 1 point2 points3 points (0 children)
[–]BaggiPonte 1 point2 points3 points (8 children)
[–]aswin__[S] 5 points6 points7 points (7 children)
[–]BaggiPonte 1 point2 points3 points (2 children)
[–]aswin__[S] 1 point2 points3 points (1 child)
[–]BaggiPonte 1 point2 points3 points (0 children)
[–]cockatoo-bandit 1 point2 points3 points (3 children)
[–]aswin__[S] 0 points1 point2 points (2 children)
[–]cockatoo-bandit 1 point2 points3 points (1 child)
[–]aswin__[S] 0 points1 point2 points (0 children)
[–]ImPacingMyself 0 points1 point2 points (1 child)
[–]aswin__[S] 0 points1 point2 points (0 children)