Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
npm
Follow
Hide
Node Package Manager
Posts
Left menu
đ
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
guard-install now scans GitHub repos before you run them
Nithin D J
Nithin D J
Nithin D J
Follow
May 4
guard-install now scans GitHub repos before you run them
#
npm
#
node
#
riskanalysis
Comments
Add Comment
1 min read
Proof-of-Commitment Internals: How the Scoring Algorithm Works
Pico
Pico
Pico
Follow
May 8
Proof-of-Commitment Internals: How the Scoring Algorithm Works
#
npm
#
security
#
javascript
#
supplychain
1
 reaction
Comments
Add Comment
6 min read
Spotify Verified for Human Artists: What It Signals for Code, Content, and My Own Blog
Juan Torchia
Juan Torchia
Juan Torchia
Follow
May 2
Spotify Verified for Human Artists: What It Signals for Code, Content, and My Own Blog
#
english
#
npm
#
claudecode
#
developertools
1
 reaction
Comments
Add Comment
8 min read
hashfree: Clean URL Section Navigation Without the #
Joshua Enikele
Joshua Enikele
Joshua Enikele
Follow
May 6
hashfree: Clean URL Section Navigation Without the #
#
npm
#
webdev
#
javascript
#
typescript
4
 reactions
Comments
Add Comment
2 min read
npm installs packages blindly â I built a CLI to fix that
Nithin D J
Nithin D J
Nithin D J
Follow
May 2
npm installs packages blindly â I built a CLI to fix that
#
showdev
#
cli
#
npm
#
security
Comments
Add Comment
1 min read
Hono Has 34M Weekly Downloads and One Maintainer
Pico
Pico
Pico
Follow
May 1
Hono Has 34M Weekly Downloads and One Maintainer
#
javascript
#
webdev
#
security
#
npm
Comments
Add Comment
3 min read
Four MCP packages, four ways the supply chain shifted in two weeks of npm monitoring
Michael Kayode Onyekwere
Michael Kayode Onyekwere
Michael Kayode Onyekwere
Follow
May 1
Four MCP packages, four ways the supply chain shifted in two weeks of npm monitoring
#
security
#
supplychain
#
mcp
#
npm
Comments
Add Comment
7 min read
You've probably never heard of these npm packages. They're in your production app.
Pico
Pico
Pico
Follow
Apr 30
You've probably never heard of these npm packages. They're in your production app.
#
npm
#
security
#
javascript
#
webdev
Comments
Add Comment
3 min read
Hardening npm dependency security
Alex O'Callaghan
Alex O'Callaghan
Alex O'Callaghan
Follow
Apr 30
Hardening npm dependency security
#
security
#
node
#
webdev
#
npm
Comments
Add Comment
4 min read
Three npm Disasters That Were Predictable (And What the Signals Looked Like)
Pico
Pico
Pico
Follow
Apr 30
Three npm Disasters That Were Predictable (And What the Signals Looked Like)
#
npm
#
security
#
javascript
#
opensource
1
 reaction
Comments
Add Comment
6 min read
I audited 25 top npm packages with a zero-install CLI. Here's who passes.
Pico
Pico
Pico
Follow
Apr 30
I audited 25 top npm packages with a zero-install CLI. Here's who passes.
#
npm
#
security
#
javascript
#
opensource
1
 reaction
Comments
Add Comment
4 min read
When GitHub Actions Goes Silent: The Pending-Forever Bug I Hit Shipping My MCP Server to npm
×××× ×××
×××× ×××
×××× ×××
Follow
Apr 28
When GitHub Actions Goes Silent: The Pending-Forever Bug I Hit Shipping My MCP Server to npm
#
github
#
ci
#
npm
#
devops
Comments
Add Comment
5 min read
AI Hallucinated Dependencies Are the New Supply Chain Attack: How to Stop Them
Toni Antunovic
Toni Antunovic
Toni Antunovic
Follow
Apr 28
AI Hallucinated Dependencies Are the New Supply Chain Attack: How to Stop Them
#
supplychainsecurity
#
aicode
#
npm
#
security
Comments
Add Comment
8 min read
Publish your npm package using Changesets and GitHub actions
tsevdos
tsevdos
tsevdos
Follow
Apr 29
Publish your npm package using Changesets and GitHub actions
#
npm
#
package
#
changesets
#
github
Comments
Add Comment
4 min read
How to Automate OTP Extraction and Email Testing in n8n with Disposable Inboxes
DevNPlay
DevNPlay
DevNPlay
Follow
Apr 27
How to Automate OTP Extraction and Email Testing in n8n with Disposable Inboxes
#
tooling
#
npm
#
webdev
#
productivity
Comments
Add Comment
3 min read
đ
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account