Hacker News new | ask | show | jobs
by cj 29 days ago
Pinning the version also avoids the risk of accidentally introducing new vulnerabilities while reimplementing the package yourself.