Changelog Master Feed cover image

npm under siege (what to do about it) (Changelog & Friends #111)

Changelog Master Feed

00:00

Evaluating GitHub and npm's Recent Security Roadmap

Discussion of GitHub's granular tokens, trusted publishing, and limitations of signing builds as sole protections.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app