DEV Community

npm

Node Package Manager

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Malicious `axios@1.14.1` Published: Exfiltrated CI/CD Secrets; Pin Dependency Versions to Mitigate

Malicious `axios@1.14.1` Published: Exfiltrated CI/CD Secrets; Pin Dependency Versions to Mitigate

Comments
12 min read
npm Publish Without Tokens

npm Publish Without Tokens

Comments
3 min read
Debugging Node.js in Docker and Kubernetes Without Restarting

Debugging Node.js in Docker and Kubernetes Without Restarting

Comments
6 min read
Building a Reusable React Knowledge Graph Component: OKVE v0.3.0

Building a Reusable React Knowledge Graph Component: OKVE v0.3.0

Comments
1 min read
7 Bugs That Taught Us How to Build Better Diagnostic Tools

7 Bugs That Taught Us How to Build Better Diagnostic Tools

1
Comments
8 min read
Beyond the Event Loop: Tracking Slow I/O in Production Node.js

Beyond the Event Loop: Tracking Slow I/O in Production Node.js

Comments
8 min read
Adeus Regex de CNPJ: Valide o Novo Formato Alfanumérico no NestJS e TS ⚡

Adeus Regex de CNPJ: Valide o Novo Formato Alfanumérico no NestJS e TS ⚡

1
Comments
2 min read
Validando CNPJ de forma definitiva: Conheça a cnpj-universal (JS/TS)

Validando CNPJ de forma definitiva: Conheça a cnpj-universal (JS/TS)

Comments
2 min read
The Axios Supply Chain Attack Explained — npm's Biggest Security Breach in 2026

The Axios Supply Chain Attack Explained — npm's Biggest Security Breach in 2026

Comments
16 min read
20 one-shot prompts that turn Kanban into an autonomous coding machine

20 one-shot prompts that turn Kanban into an autonomous coding machine

1
Comments
11 min read
Axios Was Compromised. Here's What It Means for Your Repo.

Axios Was Compromised. Here's What It Means for Your Repo.

Comments
3 min read
npm package commitment scores: zod has 139M weekly downloads and one maintainer

npm package commitment scores: zod has 139M weekly downloads and one maintainer

Comments
4 min read
The Axios Attack Proved npm audit Is Broken. Here's What Would Have Caught It

The Axios Attack Proved npm audit Is Broken. Here's What Would Have Caught It

1
Comments
6 min read
The Documentation Attack Surface: How npm Libraries Teach Insecure Patterns

The Documentation Attack Surface: How npm Libraries Teach Insecure Patterns

Comments
4 min read
I built Material Symbols SVG, an icon library for using Material Symbols as SVG components

I built Material Symbols SVG, an icon library for using Material Symbols as SVG components

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.