Skip to content

document disadvantages of poetry's curl | python3 installation suggestion #80

Closed
@turbomam

Description

@turbomam
  • security risk: takes unknown bytes from some web address and pipes them through an interpreter
  • loss of control regarding installation directory

I'm still inclined to use this piping installation approach, but maybe we should make this decision process more transparent, and not imply that it is globally a prudent installation method

Activity

self-assigned this
on Nov 10, 2023
pkalita-lbl

pkalita-lbl commented on Dec 1, 2023

@pkalita-lbl
Contributor

This project's instructions now reflect Poetry's own recommendation which is to install with pipx.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

    Development

    No branches or pull requests

      Participants

      @cmungall@turbomam@pkalita-lbl

      Issue actions

        document disadvantages of poetry's curl | python3 installation suggestion · Issue #80 · linkml/linkml-project-cookiecutter