Hacker News new | ask | show | jobs
by matheusmoreira 888 days ago
> While it's ridiculous to expect that people will audit every single dependency and sub-dependency

It's not ridiculous at all. Professional programmers should answer for the dependencies they bring into their projects.