Hacker News new | ask | show | jobs
by nevir 3742 days ago
It's poorly worded. The real problem is that _by default_ npm doesn't pin you to an exact version of a dependency.