NHacker Next
  • new
  • past
  • show
  • ask
  • show
  • jobs
  • submit
Show HN: Safe-install – safer NPM installs with trusted build dependencies (npmjs.com)
pjmlp 12 hours ago [-]
The solution already exists.

Nexus, Artifactory, and many others.

Security minded organisations don't allow cowboy installs into projects, the systems are configured to use internal repos and only IT validated packages got uploaded into them.

Still it might be of value to single devs.

edoceo 14 hours ago [-]
Yet again I'm asking folk to look at this artifact mirror that was Show HN a few months ago.

https://github.com/artifact-keeper

It's currently my favourite package gate keeper - after a few years of self-built jank

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
Rendered at 17:56:28 GMT+0000 (UTC) with Wasmer Edge.