gh-action-pypi-publish
gh-action-pypi-publish copied to clipboard
use hash frozen requirements.txt files (configure pip-compile with --generate-hashes)
this project is used with highly sensitive tokens and should not run code without hash checking it first.