Release Notes
Released on 2026-07-28.
Enhancements
- Abort panics in release builds for smaller uv binaries (#20271)
- Use
.tar.gzarchives for Pyodide installs (#20667)
Preview features
- Avoid checking any scripts in
uv checkunless--scriptis passed (#20676) - Check locked tools for malware before cache reuse (#20301)
- Write and read
package.metadata-free lockfiles (#20688, #20691, #20685, #20695)
Bug fixes
- Correctly split dependencies into production and optional markers (#20671)
- Fix discrepancies in argument parsing of exclude-newer (#20679)
- Cleanup managed Python temporary directory on error (#20752)
Install uv 0.11.33
Install prebuilt binaries via shell script
curl --proto '=https' --tlsv1.2 -LsSf https://releases.astral.sh/github/uv/releases/download/0.11.33/uv-installer.sh | shInstall prebuilt binaries via powershell script
powershell -ExecutionPolicy Bypass -c "irm https://releases.astral.sh/github/uv/releases/download/0.11.33/uv-installer.ps1 | iex"Download uv 0.11.33
Verifying GitHub Artifact Attestations
The artifacts in this release have attestations generated with GitHub Artifact Attestations. These can be verified by using the GitHub CLI:
gh attestation verify <file-path of downloaded artifact> --repo astral-sh/uvYou can also download the attestation from GitHub and verify against that directly:
gh attestation verify <file-path of downloaded artifact> --bundle <file-path of downloaded attestation>