News posted by feross
Node.js Community Debate Intensifies Over Enabling Corepack by Default and Potentially Unbundling npm
at socket.dev▼When 'Everything' Becomes Too Much: The npm Package Chaos of 2024
at socket.dev▼Judicious JSON
at socket.dev▼Cleaning up import paths in JS/TS packages
at socket.dev▼Free browser extension to verify the security and quality of packages on NPM
at socket.dev▼NPM registry vulnerable to "manifest confusion" abuse
at www.theregister.com▼npm Registry Code Signing
at socket.dev▼Using ChatGPT to look for malware on npm
at socket.dev▼2 up and 0 down, posted by