Skip to main content

Package to check if private repository libraries have a public doppelgaenger with the same name. The goal is to prevent a dependency confusion attack on the PyPi ecosystem.

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

pvpcheck-1.1.0.tar.gz (2.6 kB view details)

Uploaded Source

File details

Details for the file pvpcheck-1.1.0.tar.gz.

File metadata

  • Download URL: pvpcheck-1.1.0.tar.gz
  • Upload date:
  • Size: 2.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/4.0.2 CPython/3.9.12

File hashes

Hashes for pvpcheck-1.1.0.tar.gz
Algorithm Hash digest
SHA256 36541fd6e7bbf3ce3e02470b944b5d120a15e2daad742d278577368fe7627e78
MD5 a4602db01698bf6dbf314097ec456f5b
BLAKE2b-256 1b3518df51e56e0fa0c02a93ca44773ea8a60c19d5f17e9204e9e744df6b8da7

See more details on using hashes here.

Release history Release notifications | RSS feed

1.2.0

3 files

This release

1.1.0 This release

1 file

1.0.0

4 files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page