Slacker News Slacker News logo featuring a lazy sloth with a folded newspaper hat
  • top
  • new
  • show
  • ask
  • jobs
Library
← Back to context

Comment by toyg

1 day ago

that's a willing act - you are actively asking npm to download something, and accepting it might be terrible for you.

Here chrome is just installing things behind your back, whether you really want it or not.

1 comment

toyg

Reply

yearolinuxdsktp  1 day ago

Never use “npm install”, only “npm ci”. Using “npm install” is a willing act to run fresh exploits.

Slacker News

Product

  • API Reference
  • Hacker News RSS
  • Source on GitHub

Community

  • Support Ukraine
  • Equal Justice Initiative
  • GiveWell Charities