Skip to main content

PyDepGuard (Next): A gatekeeper dependency validator for Python scripts. Beta branch for new features

Project description

PyLock Dependency Manager

codecov

THIS README IS OLD AND WILL BE REPLACED

Introduction

Welcome to PyLock Dependency Manager, a personal project aimed at providing a simple and effective solution for managing Python dependencies. As the sole developer, progress might be slow but the goal is to create a tool that can accurately identify and track the dependencies of a Python script, and ensure that these dependencies are met before the script is executed.

Current Capabilities

Currently, PyLock can:

  • Parse a Python script and identify its direct dependencies.
  • Check if the dependencies are installed and if their installed versions match the versions specified in the lockfile.
  • Generate a lockfile that lists the script's dependencies along with metadata such as the author, home page, and summary.
  • Execute the script only if all the dependencies are met.

Goals

  • Avoid dependency hell: By creating a lockfile that lists a script's dependencies along with their versions, PyLock ensures that you can always recreate the exact environment that the script needs to run.
  • Improve security: By making sure that all dependencies are explicitly listed and their versions locked, PyLock helps avoid the risk of unintentionally installing malicious packages.
  • Facilitate sharing and collaboration: The lockfile can be included when you share your script, allowing others to easily recreate your environment and run your script without any dependency issues.

Note: The current name of the project, "PyLock Dependency Manager", is a temporary placeholder and may be subject to change in the future.

Roadmap

The planned enhancements for PyLock include:

  1. Improved Package Scanning: PyLock will use static analysis to identify dependencies that are imported dynamically or conditionally.
  2. Dependency Graphs: PyLock will generate visualizations of your project's dependency graph, helping you understand the relationships between various packages.
  3. Integration with Pip: PyLock will integrate more closely with Pip, allowing it to automatically install any missing dependencies or update installed dependencies to the required versions.
  4. VSCode Extension: A VSCode extension for PyLock is planned to provide real-time feedback on dependencies while writing code.
  5. CI/CD Pipeline Integration: PyLock will provide functionality to be integrated into CI/CD pipelines for automatic dependency checking and resolution.
  6. Dependency Scanning via deps.dev: Future versions of PyLock will integrate with deps.dev and other similar services to provide more detailed information about each dependency, including its popularity, development activity, and known security vulnerabilities.
  7. Virtual Environment Support: PyLock plans to add functionality to spin up a virtual environment on the fly with the dependencies required in the version required for the script run.

Feedback and Feature Requests

I am always open to feedback and suggestions. If you have ideas for new features or improvements, feel free to share them. However, please note that the decision to implement any proposed changes will be made at my discretion.

Stay tuned for updates as PyLock continues to evolve and improve!

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

pydepguardnext-2.0.0.tar.gz (9.2 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

pydepguardnext-2.0.0-py3-none-any.whl (8.9 kB view details)

Uploaded Python 3

File details

Details for the file pydepguardnext-2.0.0.tar.gz.

File metadata

  • Download URL: pydepguardnext-2.0.0.tar.gz
  • Upload date:
  • Size: 9.2 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.12.3

File hashes

Hashes for pydepguardnext-2.0.0.tar.gz
Algorithm Hash digest
SHA256 2214681be46d2b602d03ef4ae68420a6ce7eecf7a6ec2cbfa0e0f3eacfc677b5
MD5 77a44857907253162c6579a6512830e2
BLAKE2b-256 c3369b88c09b3bd82b2b90240716233e4891748c95f343e6d2dbbdf7c7f1d904

See more details on using hashes here.

File details

Details for the file pydepguardnext-2.0.0-py3-none-any.whl.

File metadata

  • Download URL: pydepguardnext-2.0.0-py3-none-any.whl
  • Upload date:
  • Size: 8.9 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.12.3

File hashes

Hashes for pydepguardnext-2.0.0-py3-none-any.whl
Algorithm Hash digest
SHA256 24ccfe29e6b293fee27c5d44d42e0b5f72b80b8565e8bffeda4be620c017de11
MD5 caaf8d8b612a9e0ce396fc485ee6846a
BLAKE2b-256 af3cecfd9217b22b53a512b34229fd98dac2bc59bfb47b0d9f8f042d9281da95

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page