Discussion
Loading...

#Tag

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Snakemake Release Robot
@snakemake@fediscience.org  路  activity timestamp 3 weeks ago

BEEP, BEEP - I am your friendly #Snakemake release announcement bot.

There is a new release of Snakemake. Its version now is 9.13.6!

Give us some time, and you will automatically find it on #Bioconda and #Pypi.

If you want to discuss the release, you will find the maintainer here on Mastodon!
@johanneskoester

If you discover any issues, please report them on https://github.com/snakemake/snakemake/issues.

See https://github.com/snakemake/snakemake/releases/tag/v9.13.6 for details. Here is the header of the changelog:

饾憛饾憭饾憴饾憭饾憥饾憼饾憭 饾憗饾憸饾憽饾憭饾憼 (饾憹饾憸饾憼饾憼饾憱饾憦饾憴饾懄 饾憥饾憦饾憦饾憻饾憱饾憯饾憭饾憫):
饾悂饾惍饾悹 饾悈饾悽饾惐饾悶饾惉

* only complain about mixed rules and functions for workflows that are not in a single snakefile; improve internal pathvar error handling: https://github.com/snakemake/snakemake/issues/3829

GitHub

Release v9.13.6 路 snakemake/snakemake

9.13.6 (2025-11-06) Bug Fixes only complain about mixed rules and functions for workflows that are not in a single snakefile; improve internal pathvar error handling (#3829) (a729a47)
Snakemake HPC logo for Mastodon
Snakemake HPC logo for Mastodon
Snakemake HPC logo for Mastodon
  • Copy link
  • Flag this post
  • Block
Shauna GM and 1 other boosted
Python Software Foundation
@ThePSF@fosstodon.org  路  activity timestamp 3 weeks ago

Even still, we鈥檙e raising the flag early: the PSF has only ~6 months of runway and needs your support to sustain essential #Python & #PyPI infrastructure, #PyConUS, and, hopefully, to reopen our Grants Program.

  • Copy link
  • Flag this post
  • Block
Christian Meesters boosted
Snakemake Release Robot
@snakemake@fediscience.org  路  activity timestamp 3 weeks ago

BEEP, BEEP - I am your friendly #Snakemake release announcement bot.

There is a new release of Snakemake. Its version now is 9.13.5!

Give us some time, and you will automatically find it on #Bioconda and #Pypi.

If you want to discuss the release, you will find the maintainer here on Mastodon!
@johanneskoester

If you discover any issues, please report them on https://github.com/snakemake/snakemake/issues.

See https://github.com/snakemake/snakemake/releases/tag/v9.13.5 for details. Here is the header of the changelog:

饾憛饾憭饾憴饾憭饾憥饾憼饾憭 饾憗饾憸饾憽饾憭饾憼 (饾憹饾憸饾憼饾憼饾憱饾憦饾憴饾懄 饾憥饾憦饾憦饾憻饾憱饾憯饾憭饾憫):
饾悂饾惍饾悹 饾悈饾悽饾惐饾悶饾惉

* cache wrapper files and wait for them in case of shared filesystem for sources: https://github.com/snakemake/snakemake/issues/3809
* correctly handle meta-wrapper tag replacement depending on the used snakemake-wrapper release: https://github.com/snakemake/snakemake/issues/3826
* ensure that flags are properly considered for input files before applying path modifiers: https://github.com/snakemake/snakemake/issues/3813
* ensure that tokens are not leaked when paths or uris of source files are logged: https://github.com/snakemake/snakemake/issues/3821
* print secs as numeric in jsonl benchmark format: https://github.com/snakemake/snakemake/issues/3814
* revert breaking change in 9.11.9 disallowing empty input files even when unused: https://github.com/snakemake/snakemake/issues/3810
* shorten report ids: https://github.com/snakemake/snakemake/issues/3822

Snakemake HPC logo for Mastodon
Snakemake HPC logo for Mastodon
Snakemake HPC logo for Mastodon
  • Copy link
  • Flag this post
  • Block
Snakemake Release Robot
@snakemake@fediscience.org  路  activity timestamp 3 weeks ago

BEEP, BEEP - I am your friendly #Snakemake release announcement bot.

There is a new release of Snakemake. Its version now is 9.13.5!

Give us some time, and you will automatically find it on #Bioconda and #Pypi.

If you want to discuss the release, you will find the maintainer here on Mastodon!
@johanneskoester

If you discover any issues, please report them on https://github.com/snakemake/snakemake/issues.

See https://github.com/snakemake/snakemake/releases/tag/v9.13.5 for details. Here is the header of the changelog:

饾憛饾憭饾憴饾憭饾憥饾憼饾憭 饾憗饾憸饾憽饾憭饾憼 (饾憹饾憸饾憼饾憼饾憱饾憦饾憴饾懄 饾憥饾憦饾憦饾憻饾憱饾憯饾憭饾憫):
饾悂饾惍饾悹 饾悈饾悽饾惐饾悶饾惉

* cache wrapper files and wait for them in case of shared filesystem for sources: https://github.com/snakemake/snakemake/issues/3809
* correctly handle meta-wrapper tag replacement depending on the used snakemake-wrapper release: https://github.com/snakemake/snakemake/issues/3826
* ensure that flags are properly considered for input files before applying path modifiers: https://github.com/snakemake/snakemake/issues/3813
* ensure that tokens are not leaked when paths or uris of source files are logged: https://github.com/snakemake/snakemake/issues/3821
* print secs as numeric in jsonl benchmark format: https://github.com/snakemake/snakemake/issues/3814
* revert breaking change in 9.11.9 disallowing empty input files even when unused: https://github.com/snakemake/snakemake/issues/3810
* shorten report ids: https://github.com/snakemake/snakemake/issues/3822

Snakemake HPC logo for Mastodon
Snakemake HPC logo for Mastodon
Snakemake HPC logo for Mastodon
  • Copy link
  • Flag this post
  • Block
Python Software Foundation
@ThePSF@fosstodon.org  路  activity timestamp 3 weeks ago

Even still, we鈥檙e raising the flag early: the PSF has only ~6 months of runway and needs your support to sustain essential #Python & #PyPI infrastructure, #PyConUS, and, hopefully, to reopen our Grants Program.

  • Copy link
  • Flag this post
  • Block
pvergain (framapiaf) boosted
Python Software Foundation
@ThePSF@fosstodon.org  路  activity timestamp 4 weeks ago

PyPI serves billions of requests daily- but sustaining it isn鈥檛 free. The PSF joined the OpenSSF & others in calling for organizations to invest in sustainable open infrastructure. Learn what this means for #PyPI, the PSF, & how our community can pitch in:
https://pyfound.blogspot.com/2025/10/open-infrastructure-is-not-free-pypi.html

Python Software Foundation Blog

Open Infrastructure is Not Free: PyPI, the Python Software Foundation, and Sustainability

In September, the Python Software Foundation (PSF) co-signed the Open Infrastructure is Not Free: A Joint Statement on Sustainable Stewardsh...
  • Copy link
  • Flag this post
  • Block
Python Software Foundation
@ThePSF@fosstodon.org  路  activity timestamp 4 weeks ago

PyPI serves billions of requests daily- but sustaining it isn鈥檛 free. The PSF joined the OpenSSF & others in calling for organizations to invest in sustainable open infrastructure. Learn what this means for #PyPI, the PSF, & how our community can pitch in:
https://pyfound.blogspot.com/2025/10/open-infrastructure-is-not-free-pypi.html

Python Software Foundation Blog

Open Infrastructure is Not Free: PyPI, the Python Software Foundation, and Sustainability

In September, the Python Software Foundation (PSF) co-signed the Open Infrastructure is Not Free: A Joint Statement on Sustainable Stewardsh...
  • Copy link
  • Flag this post
  • Block
Snakemake Release Robot
@snakemake@fediscience.org  路  activity timestamp last month

Beep, Beep - I am your friendly #Snakemake release announcement bot.

There is a new release of the Snakemake executor for #SLURM on #HPC systems. Its version now is 1.9.2!

Give us some time, and you will automatically find the plugin on #Bioconda and #Pypi.

If you want to discuss the release, you will find the maintainers here on Mastodon!
@rupdecat and @johanneskoester

If you discover any issues, please report them on https://github.com/snakemake/snakemake-executor-plugin-slurm/issues.

See https://github.com/snakemake/snakemake-executor-plugin-slurm/releases/tag/v1.9.2 for details. Here is the header of the changelog:

饾憛饾憭饾憴饾憭饾憥饾憼饾憭 饾憗饾憸饾憽饾憭饾憼 (饾憹饾憸饾憼饾憼饾憱饾憦饾憴饾懄 饾憥饾憦饾憦饾憻饾憱饾憯饾憭饾憫):
饾悂饾惍饾悹 饾悈饾悽饾惐饾悶饾惉

* logo: https://github.com/snakemake/snakemake-executor-plugin-slurm/issues/367

GitHub

Release v1.9.2 路 snakemake/snakemake-executor-plugin-slurm

1.9.2 (2025-10-28) Bug Fixes logo (#367) (3781f36)
Snakemake HPC logo for Mastodon
Snakemake HPC logo for Mastodon
Snakemake HPC logo for Mastodon
  • Copy link
  • Flag this post
  • Block
Matthew Martin
@mistersql@mastodon.social  路  activity timestamp last month

Not a replacement for docker. Works like pytest-socket.

Anyhow, looking forward to examples of exploits, which I imagine would be un-monkeypatching or just using other libraries.

Still I think this would be a nice way to seal apps you distribute against highjacked 3rd party libraries that weren't specifically targetting this defense.

Matthew Martin
@mistersql@mastodon.social replied  路  activity timestamp last month

And why is this called `hermetic-seal?` ? Well after searching for a perfect name I picked `hermetic`, which is 404 on pypi, free to take? Nope, if you register trusted publisher for that name #pypi says it is **taken**!

  • Copy link
  • Flag this comment
  • Block
Charly Coste 馃嚝馃嚪 boosted
Python Package Index
@pypi@fosstodon.org  路  activity timestamp 3 months ago

PyPI now checks for expired domains to prevent domain resurrection attacks, a type of supply-chain attack where someone buys an expired domain and uses it to take over #PyPI accounts through password resets. #Python#OpenSource#SupplyChain#Security
https://blog.pypi.org/posts/2025-08-18-preventing-domain-resurrections/

  • Copy link
  • Flag this post
  • Block
Python Package Index
@pypi@fosstodon.org  路  activity timestamp 3 months ago

PyPI now checks for expired domains to prevent domain resurrection attacks, a type of supply-chain attack where someone buys an expired domain and uses it to take over #PyPI accounts through password resets. #Python#OpenSource#SupplyChain#Security
https://blog.pypi.org/posts/2025-08-18-preventing-domain-resurrections/

  • Copy link
  • Flag this post
  • Block
STOP OCCUPATION 馃崏 S. Costa and 1 other boosted
Seth Larson
@sethmlarson@mastodon.social  路  activity timestamp 4 months ago

馃毃 Be aware there's a potential phishing campaign likely targeting #PyPI / #Python package maintainers:

https://discuss.python.org/t/phishing-attack/100267

  • Copy link
  • Flag this post
  • Block
Seth Larson
@sethmlarson@mastodon.social  路  activity timestamp 4 months ago

馃毃 Be aware there's a potential phishing campaign likely targeting #PyPI / #Python package maintainers:

https://discuss.python.org/t/phishing-attack/100267

  • Copy link
  • Flag this post
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About 路 Code of conduct 路 Privacy 路 Users 路 Instances
Bonfire social 路 1.0.1-alpha.5 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login