Hacker News new | ask | show | jobs
by rohan404 2785 days ago
Security is definitely a topic we're super concerned about. There's an interesting tradeoff with using re-usable components - that is, if there's a security vulnerability in one component, then all apps using it are affected (for example the notable npm incident https://www.theregister.co.uk/2018/07/12/npm_eslint/)! The flip side is that one can easily detect and patch all applications affected by that vulnerability. I'd love to have a chat with anyone who has some thoughts on how to deal with this problem more effectively (email is in my description).

- Disclaimer, I'm a VP E at Engineer.ai