Closed
Description
- security risk: takes unknown bytes from some web address and pipes them through an interpreter
- loss of control regarding installation directory
I'm still inclined to use this piping installation approach, but maybe we should make this decision process more transparent, and not imply that it is globally a prudent installation method
Metadata
Metadata
Assignees
Type
Projects
Milestone
Relationships
Development
No branches or pull requests
Activity
pkalita-lbl commentedon Dec 1, 2023
This project's instructions now reflect Poetry's own recommendation which is to install with
pipx
.