Skip to content

Mass name squat by user: doerlbh #4714

@solstag

Description

@solstag

PyPI user performing the mass project name squatting

https://pypi.org/user/doerlbh/

Additional information

I have a project called sashimi. When I felt ready to publish to pypi, I had to publish it as sashimi-domains because the name sashimi had already been taken. However, I quickly noticed what IMO is a clear case of name squatting, so I started a PEP 541 procedure that has been a bit frustrating for me.

Today, almost by chance, I checked the list of projects of the account squatting the name I had requested, and it turns out that this account:

  • Reacted to being informed about my name squatting procedure by immediately pushing to 10 projects they'd been squatting, whose names seem more valuable, some obviously minimal useless code to fake a valid project.
  • Most of the other projects owned by the account are also name squatting. See for example xspace. From a quick inspection I estimate a total of at least 30 squatted projects.

It would be nice if you folks could take a look at this. Perhaps I'm getting this all wrong about PEP 541 and name squatting is actually fine as long as you're ready to publish minimal garbage code once you get alerted of your years of squatting. But in any case I thought I should warn you.

Here's a view showing 10 squatted names having all been "updated" on the same day after notice about my procedure:

Screenshot from 2024-09-07 14-34-02

Best regards

Code of Conduct

  • I agree to follow the PSF Code of Conduct

Metadata

Metadata

Assignees

No one assigned

    Labels

    mass name squatReport a mass name squatting by a user of PyPI

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions