|
|
|
|
|
by matheusmoreira
31 days ago
|
|
This has nothing to do with standard libraries or popularity. It's about trust. I signed up for an npm account and pushed packages. Same for PyPI. Same for Ruby gems. There's no actual reason why anyone should believe I pushed anything but malware in there. |
|
Developer experience level is a part of the problem.