Taggart :donor: on Nostr: Look. If you're going to the trouble of installing Python packages, it's almost ...
Look. If you're going to the trouble of installing Python packages, it's almost always in the user context. Therefore, you would want a non-root installation of the package for any number of reasons, not the least of which is security!
Apt packages can still define whatever they need as dependencies at the system level, fine. But don't straight up disable pip for those who know what they're doing.
(Yes I know there's a workaround, but it's hacky and annoying).
Published at
2024-12-03 17:31:50Event JSON
{
"id": "4ce7536b53e61f6af6ea1b26bf107874ece9f86a454739a91bf8e27b7ed3f993",
"pubkey": "3ba412ac4b14c4b37cd6ed16b9d262ad4ffefb05c5b6c6b3e15e381471b1221a",
"created_at": 1733247110,
"kind": 1,
"tags": [
[
"e",
"c980029ac6f7b9d4b6019a3eb40da3373a7d3d4e85980bf7aeae0deb45a11b60",
"wss://relay.mostr.pub",
"reply"
],
[
"proxy",
"https://infosec.exchange/users/mttaggart/statuses/113590082622397926",
"activitypub"
]
],
"content": "Look. If you're going to the trouble of installing Python packages, it's almost always in the user context. Therefore, you would want a non-root installation of the package for any number of reasons, not the least of which is security!\n\nApt packages can still define whatever they need as dependencies at the system level, fine. But don't straight up disable pip for those who know what they're doing.\n\n(Yes I know there's a workaround, but it's hacky and annoying).",
"sig": "9e80d99a3f8d99e6e6d48d3dd3e8a3a88ccc874c38001e3be90f2fa43e943fda2b95b0a2ddd6cd52737943a6370e1cb5417fa931bf0867d93d3b08d02a16a80c"
}