Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Maybe expressing feelings about the topic, as a guess behind the motivation for the mocking repo, was my intention ? (like I said in the second part of the post)

Left-pad shitshow showed how relevant NPM dependency chain is as a measure of quality and what it does for the ecosystem. This is left-pad with added complexity to sneak in malicious code.



Why do you feel it will sneak in malicious code?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: