Skip to content

Fix/dsta 552 add explicit lock files to make vulnerability scanning easier#38

Open
gjackson296 wants to merge 7 commits into
mainfrom
fix/DSTA-552-add-explicit-lock-files-to-make-vulnerability-scanning-easier
Open

Fix/dsta 552 add explicit lock files to make vulnerability scanning easier#38
gjackson296 wants to merge 7 commits into
mainfrom
fix/DSTA-552-add-explicit-lock-files-to-make-vulnerability-scanning-easier

Conversation

@gjackson296
Copy link
Copy Markdown
Contributor

@gjackson296 gjackson296 commented May 21, 2026

Description

Update Python dependency logic for three /projects sub-repositories:

  1. DSTA-0000--bsr-design-sprint--munge-bsis-test-data
  2. DTOSS-9018-SPIKE-Writing-from-our-laptop-to-ACTUAL-FDP-data-sets
  3. palantir-foundry-play

Add lock files for uv to replace the requirements.txt files.

Context

Python requirements.txt files with no associated .lock file make searching for transitive dependencies more difficult.
Better to have an explicit .lock files.

Type of changes

  • Refactoring (non-breaking change)
  • New feature (non-breaking change which adds functionality)
  • Breaking change (fix or feature that would change existing functionality)
  • Bug fix (non-breaking change which fixes an issue)

Checklist

  • I am familiar with the contributing guidelines
  • I have followed the code style of the project
  • I have added tests to cover my changes
  • I have updated the documentation accordingly
  • This PR is a result of pair or mob programming

Sensitive Information Declaration

To ensure the utmost confidentiality and protect your and others privacy, we kindly ask you to NOT including PII (Personal Identifiable Information) / PID (Personal Identifiable Data) or any other sensitive data in this PR (Pull Request) and the codebase changes. We will remove any PR that do contain any sensitive information. We really appreciate your cooperation in this matter.

  • I confirm that neither PII/PID nor sensitive data are included in this PR and the codebase changes.

gjackson296 and others added 7 commits May 20, 2026 15:59
For projects/DSTA-0000--bsr-design-sprint--munge-bsis-test-data
For projects/DTOSS-9018-SPIKE-Writing-from-our-laptop-to-ACTUAL-FDP-data-sets
For projects/palantir-foundry-play
@sonarqubecloud
Copy link
Copy Markdown

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants