#hi where There could be checked why

1 messages · Page 1 of 1 (latest)

marsh hill
spiral egret
#

Ok. Thanks. There is on option to put in future information that package was removed instead of plain 404?

(it was strange when in 5 minutes on CI pass and second one fail, and there is no information about removal)

marsh hill
spiral egret
#

Thanks

fierce seal
wary moth
#

but I’ve confirmed with PyPI Security that this package can no longer be registered, so at least there should be no risk of squatters
how is codecov not registerable?

marsh hill
#

We prohibited the name

wary moth
#

ah, so they had to arrange it with pypi maintainers, it's not something anyone can do?

marsh hill
#

Well, they could have done that, but they didn't, they just deleted it which releases the project name.

wary moth
#

ah.

wary moth
#

what's the better place I can suggest that?

#

if a malicious package had taken the place of codecov, who knows the amount of carnage they could have caused

marsh hill
wary moth
#

thanks