Packaging security with Nix
2022-07-15 , Liffey A

Managing securely dependencies is becoming an increasing concern of the industry. Here, we showcase how Nix, a functional-oriented package manager, can get us very far and close class of vulnerabilities that PyPI / pip had in the past, e.g. rogue PyPI packages that steals personal data.


Expected audience expertise: Domain:

none

Expected audience expertise: Python:

some

Abstract as a tweet:

Securely delivering Python packages is hard, Nix can help to automate this process without removing your existing build system!

FOSS developer, Nix expert, software engineering expert with a love for formal methods and mathematics.