|
|
|
|
|
by joshstrange
334 days ago
|
|
> "Panya, who is one of the maintainers of the stylus package, published them, and because of that, his account was banned, and all the packages that were connected to him were yanked, including the Stylus one. So that's the story here. A big false alarm by NPM," states Abai. These seems completely reasonable. After posting 3 malicious packages they disabled all other packages for which he was a maintainer (could push updates). "Accidentally" doesn't really fit with my reading. Maybe Stylus is clean but this move seems completely rational. |
|
Fwiw, npm appears to be restoring access to the project https://github.com/stylus/stylus/issues/2938#issue-325479314...