DEV Community

npm

Node Package Manager

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Why You Shouldn't Run npm install in Production Containers

Why You Shouldn't Run npm install in Production Containers

Comments
2 min read
npm Supply Chain Audit: The Checklist Most Teams Stop Too Early

npm Supply Chain Audit: The Checklist Most Teams Stop Too Early

Comments
6 min read
如何在恶意包进入你的项目前阻断它?用 SupplyChain Sentry 给 npm 依赖上个保险

如何在恶意包进入你的项目前阻断它?用 SupplyChain Sentry 给 npm 依赖上个保险

Comments
1 min read
How We Catch the Axios DPRK RAT — Directly in Your IDE

How We Catch the Axios DPRK RAT — Directly in Your IDE

Comments
3 min read
Four iteration rounds on a security scanner I run, all of them visible. Here is what the loop actually looks like.

Four iteration rounds on a security scanner I run, all of them visible. Here is what the loop actually looks like.

Comments
11 min read
Adding observability to your Vercel AI SDK app in 30 seconds

Adding observability to your Vercel AI SDK app in 30 seconds

1
Comments
3 min read
Building a Customizable Avatar System in React (Without Creating Everything From Scratch)

Building a Customizable Avatar System in React (Without Creating Everything From Scratch)

5
Comments
4 min read
duckkit: the utils JS forgot, TypeScript needs, you keep rewriting🦆

duckkit: the utils JS forgot, TypeScript needs, you keep rewriting🦆

Comments
2 min read
node-ipc Had a 69 Trust Score Before It Got Hacked. TanStack Had 91.

node-ipc Had a 69 Trust Score Before It Got Hacked. TanStack Had 91.

Comments
4 min read
Protecting your Node.js project against supply-chain attacks

Protecting your Node.js project against supply-chain attacks

Comments
2 min read
Lioric: An AI Chatbot Widget

Lioric: An AI Chatbot Widget

5
Comments
1 min read
Building a Modern TypeScript SDK for Pterodactyl Panel

Building a Modern TypeScript SDK for Pterodactyl Panel

Comments
1 min read
I built a supply chain security scanner in Rust — here's what I learned

I built a supply chain security scanner in Rust — here's what I learned

Comments
4 min read
I Published My First npm Package: Here's Everything I Wish I Knew

I Published My First npm Package: Here's Everything I Wish I Knew

Comments
4 min read
The TanStack Attack: How a Worm Slipped Through the npm Pipeline

The TanStack Attack: How a Worm Slipped Through the npm Pipeline

Comments
6 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.