geyanggang opened a new issue, #13595:
URL: https://github.com/apache/gravitino/issues/13595

   ### What would you like to be improved?
   
   `mcp-server/pyproject.toml` lists `pylint`, `pytest` and `parameterized` 
under
   `[project].dependencies`, so they are installed into the MCP server image as
   runtime dependencies. The server code does not import any of them — they are
   only used for linting and tests.
   
   As a result the shipped image carries `pylint` (GPL-2.0-or-later) and its
   transitive dependency `astroid` (LGPL), plus test tooling that never runs in
   the container.
   
   ### How should we improve?
   
   Move `pylint`, `pytest` and `parameterized` into a PEP 735 
`[dependency-groups]
   dev` group, and have the image build install runtime deps only:
   
   - `dev/docker/mcp-server/Dockerfile`: `uv sync` → `uv sync --no-dev`, and pin
     the `ghcr.io/astral-sh/uv` image to an exact version.
   - `dev/docker/mcp-server/start-mcp-server.sh`: `uv run` → `uv run --no-dev`,
     since the container reads `pyproject.toml` at startup.
   - Keep the tools available for local development via `uv sync`, and install
     them explicitly in the Gradle `pylint`/`testPython` tasks.
   
   Developers are unaffected; only the shipped image changes.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to