Hacker News new | ask | show | jobs
by elwebmaster 1576 days ago
That is very possible. The only emails I ever get from npm are when I initiate an action. If the way to identify expired domain is by random emails being sent to them we can be sure most vulnerable accounts are not flagged.