We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 861ce58 commit e4dadeeCopy full SHA for e4dadee
1 file changed
.env.example
@@ -162,3 +162,15 @@
162
# PLUGINS_GRPC_SERVER_SSL_ENABLED=
163
164
165
+
166
+### Package Integrity Verification
167
+# Enable SHA256 hash verification for PyPI packages (default: True)
168
+# When enabled, downloaded packages are verified against hashes from PyPI's JSON API
169
+# Recommended: Keep enabled for security
170
+# PLUGINS_VERIFY_PACKAGE_INTEGRITY=True
171
172
+# Strict integrity mode (default: False)
173
+# When True: Fail installation if package hashes are unavailable
174
+# When False: Warn but continue if hashes are unavailable
175
+# Recommended: False for development, True for production
176
+# PLUGINS_STRICT_INTEGRITY_MODE=False
0 commit comments