Bookmarks (52) clear filters
-
Supporting Open Source Maintainers
npm Inc Plans to Support Open Source Maintainers More — Last week we linked to a...
-
AppSec POV on Dependency Management
A Security Expert's POV on Node Dependency Management — Nearly all of the packages in the...
-
-
Release: 6.11.0
npm 6.11.0 Released, and It's Better for Your Filesystem — “As of this release, npm should...
-
npm CLI Roadmap - Summer 2019
The Summer 2019 npm CLI Roadmap — The status of the npm CLI app has been...
-
Release: 6.10.3
npm 6.10.3 Released — “adds better support for GitLab shorthands via an update to hosted-git-info, and...
-
Monorepos and npm
Monorepos and npm — A ‘monorepo’ is when you store the code for numerous projects or...
-
-
npm Enterprise: Delivering More Secure JavaScript Development
npm Enterprise Turns Security Up to 11 — npm Inc. has unveiled the first major update...
-
Protecting Package Publishers: npm Token Security and Hygiene now Extend to GitHub
Protecting Package Publishers with npm Token Security — In collaboration with GitHub’s token scanning program, npm...
-
npm Pride 2019 Shirts
npm Pride 2019 Shirts — All proceeds of the “npm install pride” shirts go to a...
-
Plot to steal cryptocurrency foiled by the npm security team
How the npm Security Team Foiled a Criminal Plot — Several months ago, the event-stream package...
-
private package development with npm Orgs
▶ Private Package Development with npm Orgs — A look at a (paid) feature npm Inc. offer...
-
Easy Automatic npm Publishes
Easy Automatic npm Publishes — npm and Node powerhouse Isaac Z. Schlueter says he hasn’t “manually...
-
Why we created npm Enterprise
npm Inc. Launches 'npm Enterprise', and Here's Why — npm Enterprise is an ‘enterprise grade’ npm...
-
The security risks of changing package owners
The Security Risks of Changing Package Owners — “We’ve had a few situations recently which illustrate...