Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

keyring and virtualenv are not using calver #6505

Merged
merged 1 commit into from
Sep 17, 2022

Conversation

dimbleby
Copy link
Contributor

keyring had a >= dependency on the grounds that it used calendar versioning: but since they have reached 23.x.x that's clearly not true.

virtualenv had a >= dependency, presumably for similar reasons. It looks as though they maybe did use calendar versioning up to 2020, but they've made plenty of releases in the last couple of years and only reached 20.16.5.

I am not claiming that these projects follow semver in a way that can be relied on: but that's just how life is in the python world. Eg the virtualenv changelog regularly includes 'Features' in patch releases.

So far as adherence to semver goes, poetry and poetry-core are likely living in a glass house and should not throw any stones.

However I am claiming that it is inconsistent to use >= for these dependencies when, so far as I can tell, they are as close to using semver as any other project.

neersighted
neersighted previously approved these changes Sep 17, 2022
@neersighted neersighted added this to the 1.3 milestone Sep 17, 2022
@neersighted neersighted added area/deps Related to representing and locking dependencies kind/enhancement Not a bug or feature, but improves usability or performance labels Sep 17, 2022
@neersighted
Copy link
Member

LGTM after a re-lock

@neersighted
Copy link
Member

Once again conflicted by your last PR

Copy link

This pull request has been automatically locked since there has not been any recent activity after it was closed. Please open a new issue for related bugs.

@github-actions github-actions bot locked as resolved and limited conversation to collaborators Feb 29, 2024
# for free to subscribe to this conversation on GitHub. Already have an account? #.
Labels
area/deps Related to representing and locking dependencies kind/enhancement Not a bug or feature, but improves usability or performance
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants