top | item 39884525

(no title)

snazz | 1 year ago

I just mean fewer total packages and fewer maintainers. Linux libraries and packages don’t have the culture of making a package out of a single small function and importing it everywhere, which is part of the reason why NPM is a good case study in opportunities for supply chain attacks.

discuss

order

eacapeisfutuile|1 year ago

Yes but the distribution likely depends on it, making it wider spread even without the middleman dependencies.