Hacker News new | ask | show | jobs
by throwawayapples 941 days ago
I'd settle for a source analysis and reproducible builds for just our myriad open source dependencies. All it takes is a single developer to be compromised in the thousands throughout a typical stack..