Hacker News new | ask | show | jobs
by numlock86 1495 days ago
> Bombardier is cool, but serves a very different use case.

Yes, of course. I was just taking an arbitrary example from my common HTTP toolbox.

> VSCode for instance is used by millions of developers has 1.6k dependencies [1].

VSCode is maintained by Microsoft plus a huge community and they are transparent about their process in regards of auditing/freezing dependencies.