DEV Community

npm

Node Package Manager

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
GitHub confirms internal repository breach via poisoned VS Code extension

GitHub confirms internal repository breach via poisoned VS Code extension

1
Comments
2 min read
Why You Shouldn't Run npm install in Production Containers

Why You Shouldn't Run npm install in Production Containers

Comments
2 min read
CLI tool so unnecessary that it's actually useful.

CLI tool so unnecessary that it's actually useful.

3
Comments
1 min read
如何在恶意包进入你的项目前阻断它?用 SupplyChain Sentry 给 npm 依赖上个保险

如何在恶意包进入你的项目前阻断它?用 SupplyChain Sentry 给 npm 依赖上个保险

Comments
1 min read
Four iteration rounds on a security scanner I run, all of them visible. Here is what the loop actually looks like.

Four iteration rounds on a security scanner I run, all of them visible. Here is what the loop actually looks like.

Comments
11 min read
Adding observability to your Vercel AI SDK app in 30 seconds

Adding observability to your Vercel AI SDK app in 30 seconds

1
Comments
3 min read
duckkit: the utils JS forgot, TypeScript needs, you keep rewriting🦆

duckkit: the utils JS forgot, TypeScript needs, you keep rewriting🦆

Comments
2 min read
Scarab Diagnostic Field Test #024 — pnpm CAFS TMPDIR Socket Budget Boundary

Scarab Diagnostic Field Test #024 — pnpm CAFS TMPDIR Socket Budget Boundary

1
Comments
5 min read
npm Scripts and package.json Mastery (2026)

npm Scripts and package.json Mastery (2026)

1
Comments
4 min read
Protecting your Node.js project against supply-chain attacks

Protecting your Node.js project against supply-chain attacks

Comments
2 min read
Lioric: An AI Chatbot Widget

Lioric: An AI Chatbot Widget

5
Comments
1 min read
Building a Modern TypeScript SDK for Pterodactyl Panel

Building a Modern TypeScript SDK for Pterodactyl Panel

Comments
1 min read
I built a supply chain security scanner in Rust — here's what I learned

I built a supply chain security scanner in Rust — here's what I learned

Comments
4 min read
I Published My First npm Package: Here's Everything I Wish I Knew

I Published My First npm Package: Here's Everything I Wish I Knew

Comments
4 min read
The TanStack Attack: How a Worm Slipped Through the npm Pipeline

The TanStack Attack: How a Worm Slipped Through the npm Pipeline

Comments
6 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.