(no title)
paskozdilar | 3 years ago
I always thought npm was open-source-centric. If npm somehow ran opaque binaries, I'd really like to know about that.
paskozdilar | 3 years ago
I always thought npm was open-source-centric. If npm somehow ran opaque binaries, I'd really like to know about that.
leppr|3 years ago
bhedgeoser|3 years ago
2. A package author can push something other than the repository contents to npm/ change contents before pushing to npm, making the whole open source thing useless.
3. As someone else pointed out, you can download+exec when an npm package is installed.
Something1234|3 years ago