|
|
|
|
|
by motorest
275 days ago
|
|
> I think this is a good argument for reducing your dependency count as much as possible, and keeping them to well-known and trustworthy (security-wise) creators. I wonder to which extent is the extreme dependency count a symptom of a standard library that is too minimalistic for the ecosystem's needs. Perhaps this issue could be addressed by a "version set" approach to bundling stable npm packages. |
|