Slacker News Slacker News logo featuring a lazy sloth with a folded newspaper hat
  • top
  • new
  • show
  • ask
  • jobs
Library

Comment by madarco

1 day ago

meanwhile pnpm 10.x by default won't donwload packages younger than a day

3 comments

madarco

Reply

stabbles  1 day ago

Is one day enough to find vulnerabilities? Who keeps an eye on new releases? Otherwise the problem continues to exist, just delayed by one day.

  • captn3m0  1 day ago

    There’s almost a dozen cybersecurity companies scanning NPM publishes in real-time and analysing them.

jamietanna  1 day ago

*11.x

Slacker News

Product

  • API Reference
  • Hacker News RSS
  • Source on GitHub

Community

  • Support Ukraine
  • Equal Justice Initiative
  • GiveWell Charities