phylum-dev / community-extensions

A collection of community extensions for the Phylum CLI
https://www.phylum.io/
GNU General Public License v3.0
1 stars 1 forks source link

Add `pip-lock` extension #13

Closed kylewillmon closed 1 year ago

kylewillmon commented 1 year ago

Many projects use a loose requirements.txt file. To assist them when using phylum, we need an extension to generate a strict requirements.txt file from that loose one so that it can be submitted to phylum for analysis.

Acceptance Criteria

Notes

furi0us333 commented 1 year ago

Closing in favor of an existing solution leveraging the pip-tools command, pip-compile. https://pypi.org/project/pip-tools/