Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
npm
Node Package Manager
Follow
Hide
Posts
Left menu
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
Business Context Should Be Infrastructure, Not Prompt Text
Davide Agosti
Davide Agosti
Davide Agosti
Follow
Sep 1
Business Context Should Be Infrastructure, Not Prompt Text
#
opensource
#
ai
#
architecture
#
npm
1
 reaction
Comments
1
 comment
3 min read
The npm Worm That Brought Its Own Interpreter
Madhavan Srajan Gupta
Madhavan Srajan Gupta
Madhavan Srajan Gupta
Follow
Sep 1
The npm Worm That Brought Its Own Interpreter
#
security
#
npm
#
javascript
#
devops
Comments
1
 comment
6 min read
Why I Chose Copy-and-Paste Components Instead of an npm Package
Vladyusha
Vladyusha
Vladyusha
Follow
Jul 29
Why I Chose Copy-and-Paste Components Instead of an npm Package
#
webdev
#
opensource
#
react
#
npm
Comments
Add Comment
2 min read
Docker's fourth horror story revisits the Nx post-install hook that drained CI secrets
Leo
Leo
Leo
Follow
Jul 29
Docker's fourth horror story revisits the Nx post-install hook that drained CI secrets
#
supplychainsecurity
#
npm
#
postinstallhooks
#
cirunners
Comments
Add Comment
3 min read
How redis-packhash Helps You Leverage Listpack Hashes in Redis
Fariz Prawira
Fariz Prawira
Fariz Prawira
Follow
Jul 28
How redis-packhash Helps You Leverage Listpack Hashes in Redis
#
redis
#
node
#
npm
#
performance
Comments
Add Comment
4 min read
Bringing shared foundations into one place — merging five shared repositories into one
uehara
uehara
uehara
Follow
Aug 30
Bringing shared foundations into one place — merging five shared repositories into one
#
monorepo
#
typescript
#
npm
#
architecture
Comments
Add Comment
7 min read
@bananacool467/ui-tools 0.2.0-beta: Additional Terminal Security Hardening
Banana Cool
Banana Cool
Banana Cool
Follow
Aug 29
@bananacool467/ui-tools 0.2.0-beta: Additional Terminal Security Hardening
#
npm
#
security
#
git
Comments
Add Comment
4 min read
How to Audit a npm Package for Malware in 10 Minutes
Loginsoft
Loginsoft
Loginsoft
Follow
Aug 18
How to Audit a npm Package for Malware in 10 Minutes
#
javascript
#
python
#
npm
#
devops
1
 reaction
Comments
Add Comment
4 min read
How do I group an array of objects in JavaScript and sum a field?
Julio Aguilar
Julio Aguilar
Julio Aguilar
Follow
Aug 17
How do I group an array of objects in JavaScript and sum a field?
#
webdev
#
javascript
#
typescript
#
npm
1
 reaction
Comments
Add Comment
2 min read
Security Notice: @bananacool467/ui-tools — Use 0.1.9-beta or Newer
Banana Cool
Banana Cool
Banana Cool
Follow
Aug 28
Security Notice: @bananacool467/ui-tools — Use 0.1.9-beta or Newer
#
npm
#
security
Comments
Add Comment
4 min read
Dependabot's 3-Day Cooldown: Why Waiting Is Now Safer
Induwara Ashinsana
Induwara Ashinsana
Induwara Ashinsana
Follow
Jul 24
Dependabot's 3-Day Cooldown: Why Waiting Is Now Safer
#
supplychainsecurity
#
dependabot
#
npm
Comments
Add Comment
4 min read
npm Dependencies: How to Evaluate a Library Before It Hits Production
Juan Torchia
Juan Torchia
Juan Torchia
Follow
Jul 28
npm Dependencies: How to Evaluate a Library Before It Hits Production
#
english
#
typescript
#
pnpm
#
npm
1
 reaction
Comments
Add Comment
7 min read
I Ported python-semanticversion to Rust in 72 Hours: What Broke, How I Proved Parity, and the 6-Hour Edge Case
Pranav Gupta
Pranav Gupta
Pranav Gupta
Follow
Aug 5
I Ported python-semanticversion to Rust in 72 Hours: What Broke, How I Proved Parity, and the 6-Hour Edge Case
#
rust
#
python
#
hackathon
#
npm
1
 reaction
Comments
Add Comment
5 min read
My 4KB React package was installing 116 dependencies. Here's what I found when I audited it.
Saad Ahmad
Saad Ahmad
Saad Ahmad
Follow
Aug 24
My 4KB React package was installing 116 dependencies. Here's what I found when I audited it.
#
javascript
#
react
#
npm
#
webdev
3
 reactions
Comments
1
 comment
5 min read
The npm worm that shipped with valid SLSA provenance
Leo
Leo
Leo
Follow
Jul 22
The npm worm that shipped with valid SLSA provenance
#
supplychainsecurity
#
slsa
#
provenance
#
npm
Comments
Add Comment
4 min read
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account