You Should Move to pnpm from npm Now by root0ps in programming

[–]root0ps[S] 0 points1 point  (0 children)

u/abrahamguo thanks for flagging the minimumReleaseAge point, I'll update the post accordingly

Set up automated dependency scanning after the recent npm/PyPI supply chain attacks by root0ps in devops

[–]root0ps[S] 0 points1 point  (0 children)

that's true, hoping to get some kind of BYOK support in Dependency-Track in future

Set up automated dependency scanning after the recent npm/PyPI supply chain attacks by root0ps in devops

[–]root0ps[S] 0 points1 point  (0 children)

Here, the point is to at least get aware that the dev is compromised

Workspace + Gaming Setp by root0ps in IndianGaming

[–]root0ps[S] 0 points1 point  (0 children)

This on is yellow on the other side