DiamondLightSource / python-copier-template

Diamond's opinionated copier template for pure Python projects managed by pip
Apache License 2.0
5 stars 4 forks source link

Switch back to plain pip #32

Closed coretl closed 10 months ago

coretl commented 10 months ago

FYI @gilesknap This is the diff between pip-tools (which has an outstanding dependabot bug https://github.com/dependabot/dependabot-core/issues/5140), and just pip which includes a custom shell script which may or may not trigger the same bug...

Thoughts?

ssbarnea commented 3 months ago

The funny bit is that is not pip-tools that causes this bug, I happen to be one of the maintainers of pip-tools. It is dependabot internal logic which produces bad contraints.txt files.