Comment by mkesper
8 hours ago
At least make them run pnpm instead of npm, disabling post-install scripts. https://pnpm.io/supply-chain-security
8 hours ago
At least make them run pnpm instead of npm, disabling post-install scripts. https://pnpm.io/supply-chain-security
No comments yet
Contribute on Hacker News ↗