Overview of PyPI UI changes and rollout phases
mainThe PyPI UI is undergoing a multi-phase redesign to improve security transparency (specifically for digital attestations) and information hierarchy.
Rollout Phases:
- Phase 1: Project Details (Live on TestPyPI) - Redesign of the main page, including sidebar reordering and repositioning.
- Phase 2: Files and Release History - Streamlining tabs and adding attestation metadata.
- Phase 3: Security Tab - Introduction of a dedicated space for provenance and attestation data with security warnings.
- Phase 4: Documentation Refresh - Updating PyPI documentation to align with the new UI and security guidance.
Key UI Changes:
- Dedicated Security Tab: Centralizes provenance and attestation metadata.
- Horizontal Navigation: Moves internal navigation from the sidebar to horizontal tabs.
- Right-aligned Metadata Sidebar: Moves the sidebar to the right to prioritize the package description/readme on the left.
- Trust Level Labeling: Explicitly distinguishes between PyPI-intrinsic data (e.g., timestamps) and maintainer-provided/verified data (e.g., upstream source repositories).
- Improved Status Labeling: Uses bolder colors for quarantined, yanked, archived, and pre-release states.