Phylum

Latest version: v0.58.0

Safety actively analyzes 706267 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 2 of 11

0.38.0

Feature

* Support workspace projects for all lockfile types ([344](https://github.com/phylum-dev/phylum-ci/issues/344)) ([`2bf66c7`](https://github.com/phylum-dev/phylum-ci/commit/2bf66c77f8d39fb3b870d48279045bcf4741219b))
* Cache parsing results of current dependency files ([342](https://github.com/phylum-dev/phylum-ci/issues/342)) ([`1ceff86`](https://github.com/phylum-dev/phylum-ci/commit/1ceff860a2828c65cc3c92f41938a8816d250119))

Breaking

* CLI installs prior to v5.8.0 are no longer supported. A Phylum CLI version with the `find-lockable-files` command is needed. ([`2bf66c7`](https://github.com/phylum-dev/phylum-ci/commit/2bf66c77f8d39fb3b870d48279045bcf4741219b))

0.37.1

Fix

* More container tools broken when home-less ([337](https://github.com/phylum-dev/phylum-ci/issues/337)) ([`403eb7d`](https://github.com/phylum-dev/phylum-ci/commit/403eb7d2326f915c36c743cd94f124a3fe5a61f2))

0.37.0

Feature

* Add Python 3.12 support and drop Python 3.8 support ([335](https://github.com/phylum-dev/phylum-ci/issues/335)) ([`feb3502`](https://github.com/phylum-dev/phylum-ci/commit/feb35020ce1a49e50151422bd9e1b438d657c273))
* Enforce strict engine control for `npm` ([336](https://github.com/phylum-dev/phylum-ci/issues/336)) ([`4e69e3e`](https://github.com/phylum-dev/phylum-ci/commit/4e69e3e6da19a5a67c7eb574539f79deeae2ebef))

Breaking

* Support for Python 3.8 was removed due to the change in CONTRIBUTING policy to support only the current/latest release plus the previous three minor versions of Python. ([`feb3502`](https://github.com/phylum-dev/phylum-ci/commit/feb35020ce1a49e50151422bd9e1b438d657c273))

0.36.0

Feature

* Account for dependency file types ([324](https://github.com/phylum-dev/phylum-ci/issues/324)) ([`918902d`](https://github.com/phylum-dev/phylum-ci/commit/918902dba1ca32bf67312c5ec8876cbffc95e1fe))
* Replace lockfile detection with `phylum status` ([322](https://github.com/phylum-dev/phylum-ci/issues/322)) ([`224e3a6`](https://github.com/phylum-dev/phylum-ci/commit/224e3a6e71d4c29593b7c6d3266fae5b5dc44bf7))
* Add lockfile generation support ([318](https://github.com/phylum-dev/phylum-ci/issues/318)) ([`f96ff48`](https://github.com/phylum-dev/phylum-ci/commit/f96ff48362de5dcf8bfd60291dbda6c47169fa6a))

Fix

* Container tools broken when home-less ([329](https://github.com/phylum-dev/phylum-ci/issues/329)) ([`f951e3c`](https://github.com/phylum-dev/phylum-ci/commit/f951e3c76e17502ea617470f7691503ac687b9a0))

Breaking

* The `phylum-ci` docker image created from the default `Dockerfile` is much larger, containing *all* the required tools for lockfile generation across all supported ecosystems. To retain the previous functionality, a new `slim` tag is offered for those instances where *no* manifest files are present and/or *only* lockfiles are used. ([`f96ff48`](https://github.com/phylum-dev/phylum-ci/commit/f96ff48362de5dcf8bfd60291dbda6c47169fa6a))

Documentation

* Add more detail for manifest file support ([328](https://github.com/phylum-dev/phylum-ci/issues/328)) ([`3241d2d`](https://github.com/phylum-dev/phylum-ci/commit/3241d2dc35a7f774b634a24e51f5d72df040f88d))

0.35.2

Fix

* Integrations should check for previous comments ([305](https://github.com/phylum-dev/phylum-ci/issues/305)) ([`12e7445`](https://github.com/phylum-dev/phylum-ci/commit/12e74456ff061492a435860ab08cd370721b595d))

0.35.1

Fix

* Incorrect new dependency logic ([304](https://github.com/phylum-dev/phylum-ci/issues/304)) ([`b447b46`](https://github.com/phylum-dev/phylum-ci/commit/b447b46c0f75692cfa22ec3c7a5faa8ab1379329))

Page 2 of 11

© 2025 Safety CLI Cybersecurity Inc. All Rights Reserved.