DEV Community

npm

Node Package Manager

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
One security alert changed how I think about dependencies

One security alert changed how I think about dependencies

1
Comments
2 min read
Your npm Package Is Leaking Source Code (And You Probably Don't Know It)

Your npm Package Is Leaking Source Code (And You Probably Don't Know It)

Comments
4 min read
Every backend developer has this headache 😩

Every backend developer has this headache 😩

Comments
2 min read
كيفية عمل هجوم سلسلة التوريد Axios NPM (وكيفية حماية مشاريع API الخاصة بك)

كيفية عمل هجوم سلسلة التوريد Axios NPM (وكيفية حماية مشاريع API الخاصة بك)

Comments
3 min read
Building an MCP Calculator Server: From Zero to 100 Downloads/Week

Building an MCP Calculator Server: From Zero to 100 Downloads/Week

1
Comments
3 min read
Axios was compromised for 3 hours - how to find it in your running Kubernetes clusters

Axios was compromised for 3 hours - how to find it in your running Kubernetes clusters

Comments
5 min read
Claude Code Leak: Lessons in npm Security, TypeScript Analysis, and AI Tool Architecture

Claude Code Leak: Lessons in npm Security, TypeScript Analysis, and AI Tool Architecture

1
Comments
9 min read
npm run dev vs npm start: The Difference That Breaks Your App in Production

npm run dev vs npm start: The Difference That Breaks Your App in Production

Comments
3 min read
genkode — Random ID & String Generator for Node.js

genkode — Random ID & String Generator for Node.js

Comments
4 min read
The Axios npm Supply Chain Attack (March 2026): A 2-Second Breach Window That Compromised the JavaScript Ecosystem

The Axios npm Supply Chain Attack (March 2026): A 2-Second Breach Window That Compromised the JavaScript Ecosystem

5
Comments
5 min read
I got tired of guessing semver bumps in PRs, so I built a tool

I got tired of guessing semver bumps in PRs, so I built a tool

1
Comments
2 min read
[Axios Hacked] How .npmrc Can Protect Your Node.js Projects from Supply Chain Attacks??

[Axios Hacked] How .npmrc Can Protect Your Node.js Projects from Supply Chain Attacks??

6
Comments 2
2 min read
Your browser speaks 200+ languages.

Your browser speaks 200+ languages.

Comments
4 min read
The Axios NPM Package Compromise: Lessons for Startups and Tech Firms

The Axios NPM Package Compromise: Lessons for Startups and Tech Firms

1
Comments 2
5 min read
🚀 Candy Logger v2 is here — a browser logger with a real UI

🚀 Candy Logger v2 is here — a browser logger with a real UI

1
Comments
2 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.