CycloneDX / CycloneDX/cyclonedx-python

feat: support poetry v2

Đang mở
#839 16 bình luận 17 reaction 0 người được giao Xem trên GitHub
enhancement help wanted source: poetry
Ngôn ngữ chính
Python
Star
390
Fork
98
Merge trung bình
2 ngày 23 giờ
Pull request đã merge (30 ngày)
2

Mô tả

`poetry` v2 just got released: https://github.com/python-poetry/poetry/releases/tag/2.0.0

Let's add support for it and it's new features, if any
- new lock file format?
- any new `pytproject.toml` declarations
- support for PEP621 - metadata and dependencies
Goal: not either/or, but simultaneously the "old" `tool.poetry` and the "new" `project`
> Add support for the `project` section in the `pyproject.toml` file according to PEP 621
-- https://github.com/python-poetry/poetry/pull/9135
-- https://github.com/python-poetry/poetry/pull/9917
- investigate what else is new ... TBC ...
- ... TBC ...
- tests
- since poetry v2 there is a new lock file format in town: `2.1`. this means we can keep current test structures and add a new folder for each lockfile thing where needed.
- some new cases may not be available for older poetry - like the PEP621 in all its variants... -

[⤴ this list will be updated continuously based on comments below, until the initial feature was provided eventually]

Hướng dẫn đóng góp

Mở hướng dẫn đóng góp

Hướng nghiên cứu

Start by reviewing the existing Poetry parsing and test structure, then compare the Poetry v2 release notes and the linked PEP 621 changes. Identify how pyproject.toml metadata and dependencies and the 2.1 lock file are currently handled. Done means Poetry v2 inputs are supported alongside existing tool.poetry cases, with new lock-file folders and tests for applicable PEP 621 variants.

Do mô hình lập chỉ mục viết ra từ nội dung của issue.

Đánh giá

Công nghệ
python
Lĩnh vực
tooling
Loại issue
Tính năng
Độ khó
5/5
Thời gian dự kiến
Hơn một tuần
Mức độ hoạt động
Đình trệ
Độ rõ ràng
Cần làm rõ
Mức phù hợp với người mới
25/100

Nhận issue mới trong hộp thư của bạn

Bản tóm tắt ngắn những issue GitHub phù hợp với người mới.