Hacker News new | ask | show | jobs
by zymhan 76 days ago
Installing 3rd party packages the way Node and Python devs do regularly _is_ a security hole.
1 comments

We definitely agree on that. Fortunately some of the 600+ comments here include suggestions of what to do about it.