Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
#
supplychain
Follow
Hide
Posts
Left menu
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
npm Is on Fire: Why the Architecture Is the Product
Vivian Voss
Vivian Voss
Vivian Voss
Follow
May 14
npm Is on Fire: Why the Architecture Is the Product
#
npm
#
supplychain
#
security
#
freebsd
Comments
Add Comment
10 min read
The U.S.-China Tech Rivalry and Its Impact on the PCB Industry
Maggie‌ Wang@AnyPCBA
Maggie‌ Wang@AnyPCBA
Maggie‌ Wang@AnyPCBA
Follow
for
AnyPCBA
May 14
The U.S.-China Tech Rivalry and Its Impact on the PCB Industry
#
pcb
#
manufacturing
#
supplychain
#
productivity
Comments
Add Comment
5 min read
The Hidden Supply Chain Risk in Your `pip install`
Eastern Dev
Eastern Dev
Eastern Dev
Follow
May 13
The Hidden Supply Chain Risk in Your `pip install`
#
python
#
ai
#
supplychain
#
security
Comments
Add Comment
1 min read
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
Ahmad Kanj
Ahmad Kanj
Ahmad Kanj
Follow
for
AWS Community Builders
May 8
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
#
security
#
devsecops
#
githubactions
#
supplychain
Comments
Add Comment
28 min read
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
Ahmad Kanj
Ahmad Kanj
Ahmad Kanj
Follow
for
AWS Community Builders
May 8
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
#
security
#
devsecops
#
githubactions
#
supplychain
Comments
Add Comment
28 min read
Add Real Business Trust Signals to Claude Desktop in 60 Seconds
Pico
Pico
Pico
Follow
May 8
Add Real Business Trust Signals to Claude Desktop in 60 Seconds
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
2 min read
Add Trust Scoring to Your CI Pipeline in 5 Minutes
Pico
Pico
Pico
Follow
May 8
Add Trust Scoring to Your CI Pipeline in 5 Minutes
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
3 min read
AGENTS.md moved AI performance up a model tier. Package trust needs the same.
Pico
Pico
Pico
Follow
May 8
AGENTS.md moved AI performance up a model tier. Package trust needs the same.
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
2 min read
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
Ahmad Kanj
Ahmad Kanj
Ahmad Kanj
Follow
for
AWS Community Builders
May 8
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
#
security
#
devsecops
#
axios
#
supplychain
1
 reaction
Comments
Add Comment
29 min read
Approve Once, Exploit Forever: The Trust Persistence Vulnerability Vendors Will Not Fix
Toni Antunovic
Toni Antunovic
Toni Antunovic
Follow
May 12
Approve Once, Exploit Forever: The Trust Persistence Vulnerability Vendors Will Not Fix
#
security
#
claudecode
#
devsecops
#
supplychain
1
 reaction
Comments
Add Comment
6 min read
Mini Shai-Hulud: un gusano de cadena de suministro que explotĂł TanStack y el ecosistema npm.
Cristian Carrillo
Cristian Carrillo
Cristian Carrillo
Follow
May 12
Mini Shai-Hulud: un gusano de cadena de suministro que explotĂł TanStack y el ecosistema npm.
#
cybersecurity
#
supplychain
#
npm
#
ciberseguridad
2
 reactions
Comments
Add Comment
5 min read
How to Choose a PCB Manufacturer – A Practical Guide for Hardware Engineers
Maggie‌ Wang@AnyPCBA
Maggie‌ Wang@AnyPCBA
Maggie‌ Wang@AnyPCBA
Follow
for
AnyPCBA
May 6
How to Choose a PCB Manufacturer – A Practical Guide for Hardware Engineers
#
pcbmanufacturing
#
hardwareengineering
#
supplychain
#
smallbatch
Comments
Add Comment
4 min read
MCPwn Is Live. We Scanned the Supply Chains of 14 MCP Servers. Here's What We Found.
Pico
Pico
Pico
Follow
May 5
MCPwn Is Live. We Scanned the Supply Chains of 14 MCP Servers. Here's What We Found.
#
security
#
mcp
#
supplychain
#
javascript
Comments
Add Comment
5 min read
One Year of Liberation Day: What the Tariff Rollout Actually Revealed About AI Infrastructure
David Aronchick
David Aronchick
David Aronchick
Follow
May 5
One Year of Liberation Day: What the Tariff Rollout Actually Revealed About AI Infrastructure
#
ai
#
infrastructure
#
supplychain
#
distributedcomputing
Comments
Add Comment
8 min read
161 verified AI package hallucinations across 8.5M indexed — open dataset
Vincenzo Rubino
Vincenzo Rubino
Vincenzo Rubino
Follow
May 4
161 verified AI package hallucinations across 8.5M indexed — open dataset
#
ai
#
security
#
supplychain
#
mcp
Comments
Add Comment
4 min read
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account