Comment by 1over137

2 months ago

>It's not feasible for me to audit every single one of my dependencies

Perhaps I’m just ignorant of web development, but why not? We do so with our desktop software.

Average .net core desktop complex app may have a dozen dependencies if it get to that point. Average npm todo list may have several thousand if not more