Hacker News new | ask | show | jobs
by danabramov 1814 days ago
Note that `npm audit` runs _during every install_ so people who use it don't necessarily consciously understand what's happening. Many of them are beginners and have never used a security tool before (or even want to use it).