When installing project dependencies in the CI pipeline, dependency versions should come from uv.lock and not be autoupgraded via just install-deps.
This is so that the app and checks run against the project environment they were written for. Basically, we don't want to get into a situation when we opted out of a dependency upgrade for the time being, but the checks don't pass because the CI automatically upgrades the dependencies.
Check here and consider adding --locked:
|
uv sync --all-extras --dev |
When installing project dependencies in the CI pipeline, dependency versions should come from
uv.lockand not be autoupgraded viajust install-deps.This is so that the app and checks run against the project environment they were written for. Basically, we don't want to get into a situation when we opted out of a dependency upgrade for the time being, but the checks don't pass because the CI automatically upgrades the dependencies.
Check here and consider adding
--locked:template-python-package/template/.github/workflows/checks.yml
Line 37 in 4b6913b
template-python-package/template/.github/workflows/checks.yml
Line 112 in 4b6913b