Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
npm
Follow
Hide
Node Package Manager
Posts
Left menu
👋
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
Supply chain en npm vs PyPI: comparé mis dos simulaciones y el vector más peligroso no es el que todos creen
Juan Torchia
Juan Torchia
Juan Torchia
Follow
May 8
Supply chain en npm vs PyPI: comparé mis dos simulaciones y el vector más peligroso no es el que todos creen
#
spanish
#
espanol
#
npm
#
node
Comments
Add Comment
10 min read
Supply chain npm vs PyPI: I compared both simulations and the most dangerous vector isn't what everyone thinks
Juan Torchia
Juan Torchia
Juan Torchia
Follow
May 8
Supply chain npm vs PyPI: I compared both simulations and the most dangerous vector isn't what everyone thinks
#
english
#
npm
#
node
#
devops
Comments
Add Comment
9 min read
Stop Shipping Broken Env Configs — I Built a Fix
Rohan Mirjankar
Rohan Mirjankar
Rohan Mirjankar
Follow
May 8
Stop Shipping Broken Env Configs — I Built a Fix
#
npm
#
javascript
#
node
#
webdev
Comments
Add Comment
2 min read
Why Your LLM Agent Forgot What It Did 5 Steps Ago
Saran S
Saran S
Saran S
Follow
for
Dopove
May 8
Why Your LLM Agent Forgot What It Did 5 Steps Ago
#
ai
#
python
#
npm
#
agents
Comments
Add Comment
4 min read
Add Trust Scoring to Your CI Pipeline in 5 Minutes
Pico
Pico
Pico
Follow
May 8
Add Trust Scoring to Your CI Pipeline in 5 Minutes
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
3 min read
Add Real Business Trust Signals to Claude Desktop in 60 Seconds
Pico
Pico
Pico
Follow
May 8
Add Real Business Trust Signals to Claude Desktop in 60 Seconds
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
2 min read
AGENTS.md moved AI performance up a model tier. Package trust needs the same.
Pico
Pico
Pico
Follow
May 8
AGENTS.md moved AI performance up a model tier. Package trust needs the same.
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
2 min read
I never expected this response ~robot-toast
Pratham Kumar
Pratham Kumar
Pratham Kumar
Follow
May 8
I never expected this response ~robot-toast
#
javascript
#
webdev
#
opensource
#
npm
Comments
Add Comment
2 min read
npm audit no alcanza: simulé un supply chain attack sobre mis dependencias de Node y encontré lo que el scanner no ve
Juan Torchia
Juan Torchia
Juan Torchia
Follow
May 7
npm audit no alcanza: simulé un supply chain attack sobre mis dependencias de Node y encontré lo que el scanner no ve
#
spanish
#
espanol
#
typescript
#
npm
Comments
Add Comment
10 min read
npm audit isn't enough: I simulated a supply chain attack on my Node dependencies and found what the scanner can't see
Juan Torchia
Juan Torchia
Juan Torchia
Follow
May 7
npm audit isn't enough: I simulated a supply chain attack on my Node dependencies and found what the scanner can't see
#
english
#
typescript
#
npm
#
devops
Comments
Add Comment
9 min read
Hardening Your npm CI in 5 Concrete Layers
ShipWithAI
ShipWithAI
ShipWithAI
Follow
May 7
Hardening Your npm CI in 5 Concrete Layers
#
claudecode
#
ai
#
npm
#
githubactions
Comments
Add Comment
2 min read
The NPM Audit Trap: A Thursday Morning Tragedy
Eduardo Ortega
Eduardo Ortega
Eduardo Ortega
Follow
May 6
The NPM Audit Trap: A Thursday Morning Tragedy
#
webdev
#
node
#
npm
Comments
Add Comment
2 min read
Hi all
NotLeaped84
NotLeaped84
NotLeaped84
Follow
May 6
Hi all
#
showdev
#
design
#
npm
#
ui
Comments
Add Comment
1 min read
Modern JavaScript Tooling Explained: npm, npx, pnpm, Yarn & Bun
Soumya Ranjan 🎖️
Soumya Ranjan 🎖️
Soumya Ranjan 🎖️
Follow
May 5
Modern JavaScript Tooling Explained: npm, npx, pnpm, Yarn & Bun
#
javascript
#
node
#
npm
#
tooling
1
reaction
Comments
Add Comment
5 min read
"Why I stopped trusting npm audit (and built my own)"
neve7r
neve7r
neve7r
Follow
May 4
"Why I stopped trusting npm audit (and built my own)"
#
security
#
devops
#
npm
#
typescript
Comments
Add Comment
3 min read
👋
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account