(no title)
probablycorey | 7 years ago
To do that well, it would be someone's fulltime job to read and do security audits on all those dependencies.
probablycorey | 7 years ago
To do that well, it would be someone's fulltime job to read and do security audits on all those dependencies.
komali2|7 years ago
The idea was though that you'd feed them your package.json and they'd let you know of any vulnerabilities, iirc. Or maybe they had a private repo of packages they'd checked? Can't remember.
tomsmeding|7 years ago
illustrioussuit|7 years ago
Y_Y|7 years ago