Hacker News new | ask | show | jobs
by nulltrace 85 days ago
Fair point, I was counting what lands in node_modules rather than direct deps. And most of those are brianc's monorepo packages so the trust surface is way smaller. Bad example on my part.