Hacker News new | ask | show | jobs
by freedomben 35 days ago
Fair point, although when you have dependencies from dozens or hundreds of different publishers, the risk is much higher because it only takes one getting compromised. If instead you only had a handful of core things, there's less surface area