This issue tracker has been migrated to GitHub, and is currently read-only.
For more information, see the GitHub FAQs in the Python's Developer Guide.

Author ghost43
Recipients dstufft, eric.araujo, ghost43
Date 2020-06-12.17:30:20
SpamBayes Score -1.0
Marked as misclassified Yes
Message-id <>
I am trying to generate .zip sdists for a project in a reproducible manner, using setuptoools.
The generated zips differ in the order of packed files.

The root cause of the non-determinicity is using os.walk() in make_zipfile here:

For a potential fix, see

I guess is sort of related. The change made there is necessary, and was sufficient to make the tars reproducible but not the zips.

(sidenote: Is it acceptable to sign the PSF CLA with a pseudonym?)
Date User Action Args
2020-06-12 17:30:21ghost43setrecipients: + ghost43, eric.araujo, dstufft
2020-06-12 17:30:20ghost43setmessageid: <>
2020-06-12 17:30:20ghost43linkissue40963 messages
2020-06-12 17:30:20ghost43create