DEV Community

Discussion on: Do we really need a package manager for deno?

Collapse
 
buttercubz profile image
Erick Sosa Garcia

I agree, but although companies like npm / yarn review the packages, it does not mean that they are safe and in cases like Event-Stream They demonstrate that malicious code can be injected, the community is very attentive and detects this type of insertion, but it is a much bigger problem that does not depend on the execution environments, but on how we depend on third-party software.