Get the latest tech news
We shouldn't have needed lockfiles
’t have needed lockfiles Imagine you’re writing a project and need a library. Let’s call it libpupa.
I guess, builds that depend on the calendar date are too crazy even for people who believe that referencing non-existing versions is fine. The Java library ecosystem has been going strong for 20 years, and during that time not once have we needed a lockfile. In conclusion, lockfiles are an absolutely unnecessary concept that complicates things without a good reason.
Or read this on Hacker News