Scene Image

Secure PyPI Publishing

Don't let hackers ruin the party, secure PyPI publishing is the life of the party!

Secure PyPI Publishing is a simulation game that lets players manage the release workflows of Python packages on the Python Package Index. In this game, players act as PyPI package maintainers and configure their PyPI accounts to use trusted publishing with a given OpenID Connect Identity Provider. They can choose to use GitHub Actions or manually exchange tokens to authenticate PyPI's publishing. Players must ensure that each release is securely published to PyPI and has a strong link between the project and its source repository to ensure the safety of the community.