PSA that the dependency management supply chain attack that all the fuddy duddies were suggesting JS ecosystem was going to inevitably hit has, indeed, been hit, for maybe not the first and probably not the last time. It would be a good day to know what your transitive does are.
-
-
3) To the limited extent that one is capable of making dispassionate statements of engineering facts and using e.g. numbers to compare things, it is my generalized impression that standard practices in the Ruby community are at margin more secure than in the JS community.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.