Prefix.dev - the Pixi company

@prefix.dev

Escape dependency hell with Pixi - your new favorite package manager! Discord: https://discord.com/invite/kKV8ZxyzY4

Using bioconda usually means also configuring conda-forge and a few other channels by hand. Cumbersome, and easy to get wrong. Our new channel-relations CEP moves that info into repodata, so the solver just knows which channels belong together.

Bild

Increasing the security of our users and the ecosystem is a top priority for us. That's why we've added OAuth2 login flow with scoped tokens for a better `pixi auth login` experience, and scoped "Trusted Publishers" & API Keys Read more: prefix.dev/blog/pixi-a...

A New Pixi Login Flow

Increasing the security of our users is a top priority these days. That’s why we’ve added OAuth 2.0 support to prefix.dev. You now have a fancy login-flow for Pixi and other tools.

prefix.dev

Ever want to just quickly send some files? sendme by iroh is a very simple clean tool to get it done. No ssh or networking required, just a simple send-receive command. Quickly install it with Pixi 🚀

Bild

Pixi now supports relative `exclude-newer` definitions. This allows users to set a cooldown period before using packages from the internet. This helps avoid pulling in vulnerabilities discovered shortly after release.

Bild

We're thrilled to announce our second non-prefix core maintainer of Pixi! Welcome Lucas Colley! He's been an ESOC 2025 student and since then kept being active, both in the Pixi repo, our Discord community and by adding Pixi to Open-source projects like CPython, SciPy & Numpy!

Bild

Supply Chain Security is a hot topic! Pixi already has a "exclude-newer" feature to use a dependency cooldown for an extra layer of security. But we need to go further. As a first step, prefix will start quarantining packages on our mirror immediately when vulnerabilities occur.