(no title)
mNovak | 2 months ago
I'm curious if this will implicitly drive a shift in the usage of packages / libraries broadly, and if others think this is a good or bad thing. Maybe it cuts down the surface of upstream supply-chain attacks?
mNovak | 2 months ago
I'm curious if this will implicitly drive a shift in the usage of packages / libraries broadly, and if others think this is a good or bad thing. Maybe it cuts down the surface of upstream supply-chain attacks?
MangoToupe|2 months ago
The package import thing seems like a red herring
Retr0id|2 months ago