Hacker News new | ask | show | jobs
by throw-12-16 176 days ago
or just vendor your deps like we have been doing for decades.
1 comments

still need to read them to make sure you don't vendor a trojan in the first place.
auditing is the first step in vendoring a dep by my definition of the practice