Hacker News new | ask | show | jobs
by CodeWriter23 82 days ago
It's fine if you ignore supply chain attacks on npm packages.