DEV Community

npm

Node Package Manager

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
I stopped waiting for backend APIs - localmockdb made frontend development easier

I stopped waiting for backend APIs - localmockdb made frontend development easier

Comments
4 min read
The Hidden Cost of AI Coding Agents: Every Tool Is Fetching the Same Data

The Hidden Cost of AI Coding Agents: Every Tool Is Fetching the Same Data

Comments 1
6 min read
The Invisible Network Calls: Tracking fetch() and dns.promises in Node.js

The Invisible Network Calls: Tracking fetch() and dns.promises in Node.js

Comments
6 min read
npm audit --json Is Unreadable. I Wrote a Formatter With Zero Dependencies.

npm audit --json Is Unreadable. I Wrote a Formatter With Zero Dependencies.

3
Comments
8 min read
Bear UI v1.1.5: PropsPlayground, PageNav, Button Refactor, and a Polished Portal

Bear UI v1.1.5: PropsPlayground, PageNav, Button Refactor, and a Polished Portal

1
Comments
3 min read
pnpm vs npm vs yarn vs bun: The Real Comparison Nobody Gives You in 2025

pnpm vs npm vs yarn vs bun: The Real Comparison Nobody Gives You in 2025

Comments
6 min read
I audited every npm package with >10M weekly downloads. Here is the risk map.

I audited every npm package with >10M weekly downloads. Here is the risk map.

Comments
4 min read
How npm, pnpm, and yarn Ate 40GB of My 256GB SSD

How npm, pnpm, and yarn Ate 40GB of My 256GB SSD

1
Comments
3 min read
esbuild has 190M weekly downloads and one maintainer — I audited 25 top npm packages

esbuild has 190M weekly downloads and one maintainer — I audited 25 top npm packages

Comments
3 min read
Building a Zero-Dependency Rate Limiter for Express: Inside api-rate-guard

Building a Zero-Dependency Rate Limiter for Express: Inside api-rate-guard

1
Comments
6 min read
npm Provenance and SLSA: The Supply Chain Hygiene Baseline Every Team Needs in 2026

npm Provenance and SLSA: The Supply Chain Hygiene Baseline Every Team Needs in 2026

Comments
5 min read
🕵️‍♂️ Dependencies Should Not Be Silent: Inspect What Your npm Packages Actually Do

🕵️‍♂️ Dependencies Should Not Be Silent: Inspect What Your npm Packages Actually Do

1
Comments
3 min read
OpenClaw npm Malware: Fake Package Deploys GhostLoader RAT

OpenClaw npm Malware: Fake Package Deploys GhostLoader RAT

1
Comments
2 min read
The Best Notification Libraries for React Native in 2026: Which One Should You Choose?

The Best Notification Libraries for React Native in 2026: Which One Should You Choose?

6
Comments
8 min read
Claude Code's Source Leak Was Embarrassing. The Real Story Is What It Revealed

Claude Code's Source Leak Was Embarrassing. The Real Story Is What It Revealed

3
Comments 1
14 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.