YoVDO

Picking a Winner: How to Pick the Right Dependency Resolution Graph

Offered By: Linux Foundation via YouTube

Tags

Go Courses npm Courses PyPi Courses Software Bill of Materials Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the complexities of dependency resolution in open-source software development through this 48-minute conference talk by Eve Martin-Jones and Josie Anugerah from Google. Delve into the challenges faced by dependency resolvers when generating valid transitive dependency graphs based on seemingly simple direct dependencies. Gain insights into how the intricacies of dependency resolution interact with features and bugs in popular package management tools like npm, Maven, Go, and PyPI. Understand the implications for open-source maintainers and consumers, including the difficulties in enforcing and predicting dependency sets. Examine the impact of these complexities on software artifact standards such as SBOM and SLSA, and learn about the broader implications for the open-source ecosystem.

Syllabus

Picking a Winner: How to Pick the Right Dependency (Resolution...- Eve Martin-Jones & Josie Anugerah


Taught by

Linux Foundation

Tags

Related Courses

Разработка веб-сервисов на Go - основы языка
Moscow Institute of Physics and Technology via Coursera
Getting Started with Go
University of California, Irvine via Coursera
Concurrency in Go
University of California, Irvine via Coursera
Functions, Methods, and Interfaces in Go
University of California, Irvine via Coursera
Game Thinking: Juego y toma de decisiones
The Pontificia Universidad Javeriana via edX