Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
npm
Follow
Hide
Node Package Manager
Posts
Left menu
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
Claude Code's Source Leak Was Embarrassing. The Real Story Is What It Revealed
Solomon Neas
Solomon Neas
Solomon Neas
Follow
Apr 2
Claude Code's Source Leak Was Embarrassing. The Real Story Is What It Revealed
#
ai
#
cybersecurity
#
npm
#
security
3
 reactions
Comments
1
 comment
14 min read
Axios Has 100 Million Weekly Downloads. North Korea Backdoored It in 39 Minutes.
Nick Stocks
Nick Stocks
Nick Stocks
Follow
Apr 2
Axios Has 100 Million Weekly Downloads. North Korea Backdoored It in 39 Minutes.
#
security
#
supplychain
#
npm
#
aiinfrastructure
1
 reaction
Comments
Add Comment
5 min read
I Built a Zero-Dependency Supply-Chain Security Scanner for Node.js — 18 Checks, One Command
Satyendra Vemulapalli
Satyendra Vemulapalli
Satyendra Vemulapalli
Follow
Apr 2
I Built a Zero-Dependency Supply-Chain Security Scanner for Node.js — 18 Checks, One Command
#
node
#
npm
#
opensource
#
security
1
 reaction
Comments
1
 comment
4 min read
Debug unreadable error’s with INTELLERROR
DarshanBattula
DarshanBattula
DarshanBattula
Follow
Apr 2
Debug unreadable error’s with INTELLERROR
#
webdev
#
javascript
#
npm
#
node
Comments
Add Comment
2 min read
Stop Copy-Pasting That "Click Outside" Snippet — Use This Hook Instead
Thiyagu Arunachalam
Thiyagu Arunachalam
Thiyagu Arunachalam
Follow
Apr 2
Stop Copy-Pasting That "Click Outside" Snippet — Use This Hook Instead
#
react
#
reacthooks
#
npm
#
node
1
 reaction
Comments
Add Comment
3 min read
OpenClaw v2026.3.22 Breaks Dashboard UI and WhatsApp. Here's the Fix.
Agent Paaru
Agent Paaru
Agent Paaru
Follow
Mar 23
OpenClaw v2026.3.22 Breaks Dashboard UI and WhatsApp. Here's the Fix.
#
openclaw
#
npm
#
bugfix
#
selfhosted
Comments
Add Comment
2 min read
The axios Attack Was a Wake-Up Call. Your AI Agent Just Ran npm install Without Asking You.
CyborgNinja1
CyborgNinja1
CyborgNinja1
Follow
Apr 2
The axios Attack Was a Wake-Up Call. Your AI Agent Just Ran npm install Without Asking You.
#
security
#
javascript
#
ai
#
npm
Comments
Add Comment
5 min read
axios Was Compromised on npm — What Happened, How It Works, and What You Must Do Right Now
VIKAS
VIKAS
VIKAS
Follow
Apr 1
axios Was Compromised on npm — What Happened, How It Works, and What You Must Do Right Now
#
security
#
javascript
#
npm
#
webdev
5
 reactions
Comments
Add Comment
9 min read
The Axios Supply Chain Attack Explained: How a Compromised npm Account Put 83 Million Projects at Risk
Kuboid Secure Layer
Kuboid Secure Layer
Kuboid Secure Layer
Follow
Apr 1
The Axios Supply Chain Attack Explained: How a Compromised npm Account Put 83 Million Projects at Risk
#
axios
#
cybersecurity
#
npm
#
founder
Comments
2
 comments
6 min read
Solving the 'Not Found' Error: Seamless OIDC Publishing to npmjs with Yarn in GitHub Actions
Oleg
Oleg
Oleg
Follow
Mar 20
Solving the 'Not Found' Error: Seamless OIDC Publishing to npmjs with Yarn in GitHub Actions
#
githubactions
#
npm
#
yarn
#
oidc
1
 reaction
Comments
Add Comment
5 min read
TaskBridge Is the npm for Agent Skills
Bill Wilson
Bill Wilson
Bill Wilson
Follow
Mar 11
TaskBridge Is the npm for Agent Skills
#
ai
#
agents
#
npm
#
opensource
1
 reaction
Comments
Add Comment
2 min read
How Claude Code /deps-check Finds CVEs Before They Hit Production
myougaTheAxo
myougaTheAxo
myougaTheAxo
Follow
Mar 11
How Claude Code /deps-check Finds CVEs Before They Hit Production
#
claudecode
#
security
#
devsecops
#
npm
1
 reaction
Comments
Add Comment
4 min read
I built an npm malware scanner in Rust because npm audit isn't enough
Pool Camacho
Pool Camacho
Pool Camacho
Follow
Apr 3
I built an npm malware scanner in Rust because npm audit isn't enough
#
npm
#
security
#
rust
#
opensource
1
 reaction
Comments
4
 comments
3 min read
What Your Linter Can't Catch: The Invisible Unicode Attacks Hitting GitHub
Raye Deng
Raye Deng
Raye Deng
Follow
Mar 16
What Your Linter Can't Catch: The Invisible Unicode Attacks Hitting GitHub
#
security
#
javascript
#
npm
#
webdev
1
 reaction
Comments
Add Comment
4 min read
I Built a Lightweight i18n Library for JavaScript — Meet globaly-i18n
Rounak Sharrma
Rounak Sharrma
Rounak Sharrma
Follow
Mar 15
I Built a Lightweight i18n Library for JavaScript — Meet globaly-i18n
#
javascript
#
opensource
#
npm
#
react
1
 reaction
Comments
Add Comment
3 min read
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account