Hacker News new | ask | show | jobs
NPM Security Insights API (blog.npmjs.org)
2 points by Vector919 2422 days ago
1 comments

They are revealing to the public if a package maintainer used Tor or 2FA. I do not think that information should be made public.