Y
Hacker News
new
|
ask
|
show
|
jobs
by
bodash
23 days ago
GitHub repo (800+ stars) on a list of tips for protecting against npm supply chain attacks:
https://github.com/bodadotsh/npm-security-best-practices
1 comments
TZubiri
23 days ago
There's no magical solution, you just have to use (WAY) less dependencies
link