Seth Michael Larson: EuroPytho... Note

Seth Michael Larson: EuroPython 2026: Learning from the “not-so-secret” Python security cabal

The author delivered a talk at EuroPython 2026, a continuation of their previous presentation titled "Security Work Isn’t Special." This talk aimed to address how security contributions in open source don't align with established models for documentation, community, or code. The author's role as Security Developer-in-Residence at the Python Software Foundation is sponsored by Alpha-Omega. Alpha-Omega's support for Python's ecosystem security is acknowledged. The post provides links to the presentation slides, the author's previous talk, and various resources related to Python security. These resources include the Python Software Foundation Blog, the Python Insider Blog, and articles on vulnerability reporting and LLM-generated vulnerabilities. The Python Security Policy and Threat Model, along with the Python Security Response Team and PEP 811, are also referenced. The author invites readers to share their thoughts and provides contact information via Mastodon, Bluesky, or email. They also encourage browsing their blog archive and blogroll.