
Supply Chain Security - Part 1 - JSJ 524
JavaScript Jabber
00:00
Id So Degree, What Did It Have to Be Compatible With?
The average n p m package has 79 dependencies on other third party packages. You have to also trust 39 people that you don't know who they are. The bigger problem is that no one actually reads this code. On the one hand, you can take a really aggressive stand and treat it as their own code. But i think like we can address, we canaddress the problem by sort of looking at each of those things independently and thinking about how can we actually improve things?
Transcript
Play full episode