Changelog Interviews cover image

Securing npm is table stakes

Changelog Interviews

00:00

Risks of pre/post-install scripts

He details how install scripts enable arbitrary code, examples of secret stealing, and why banning them impacts native modules.

Play episode from 40:40
Transcript

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app