DEV Community

# supplychain

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
npm Is on Fire: Why the Architecture Is the Product

npm Is on Fire: Why the Architecture Is the Product

Comments
10 min read
The U.S.-China Tech Rivalry and Its Impact on the PCB Industry

The U.S.-China Tech Rivalry and Its Impact on the PCB Industry

Comments
5 min read
The Hidden Supply Chain Risk in Your `pip install`

The Hidden Supply Chain Risk in Your `pip install`

Comments
1 min read
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1

Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1

Comments
28 min read
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1

Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1

Comments
28 min read
Add Real Business Trust Signals to Claude Desktop in 60 Seconds

Add Real Business Trust Signals to Claude Desktop in 60 Seconds

Comments
2 min read
Add Trust Scoring to Your CI Pipeline in 5 Minutes

Add Trust Scoring to Your CI Pipeline in 5 Minutes

Comments
3 min read
AGENTS.md moved AI performance up a model tier. Package trust needs the same.

AGENTS.md moved AI performance up a model tier. Package trust needs the same.

Comments
2 min read
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1

Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1

1
Comments
29 min read
Approve Once, Exploit Forever: The Trust Persistence Vulnerability Vendors Will Not Fix

Approve Once, Exploit Forever: The Trust Persistence Vulnerability Vendors Will Not Fix

1
Comments
6 min read
Mini Shai-Hulud: un gusano de cadena de suministro que explotĂł TanStack y el ecosistema npm.

Mini Shai-Hulud: un gusano de cadena de suministro que explotĂł TanStack y el ecosistema npm.

2
Comments
5 min read
How to Choose a PCB Manufacturer – A Practical Guide for Hardware Engineers

How to Choose a PCB Manufacturer – A Practical Guide for Hardware Engineers

Comments
4 min read
MCPwn Is Live. We Scanned the Supply Chains of 14 MCP Servers. Here's What We Found.

MCPwn Is Live. We Scanned the Supply Chains of 14 MCP Servers. Here's What We Found.

Comments
5 min read
One Year of Liberation Day: What the Tariff Rollout Actually Revealed About AI Infrastructure

One Year of Liberation Day: What the Tariff Rollout Actually Revealed About AI Infrastructure

Comments
8 min read
161 verified AI package hallucinations across 8.5M indexed — open dataset

161 verified AI package hallucinations across 8.5M indexed — open dataset

Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.