shakedown.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A community for live music fans with roots in the jam scene. Shakedown Social is run by a team of volunteers (led by @clifff and @sethadam1) and funded by donations.

Administered by:

Server stats:

291
active users

#npm

0 posts0 participants0 posts today
Richie Khoo<p>Package Manager for Markdown</p><p>I'm working on a project that is intended to encourage folk to make markdown text files which can be bundled together in different bundles of text files using a package manager. </p><p>Question for coders; Which package manager would you suggest I use?</p><p>Main criterias (in order) are:</p><p>1. Easy for someone with basic command line skills to edit the file and update version numbers and add additional packages.</p><p>2. All being equal, more commonly and easy to setup is preferred.</p><p><a href="https://hachyderm.io/tags/Markdown" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Markdown</span></a> <a href="https://hachyderm.io/tags/CommonMark" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CommonMark</span></a> <a href="https://hachyderm.io/tags/PackageManager" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PackageManager</span></a> <a href="https://hachyderm.io/tags/Programming" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Programming</span></a> <a href="https://hachyderm.io/tags/Dev" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Dev</span></a> <br><a href="https://hachyderm.io/tags/NPM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NPM</span></a> <a href="https://hachyderm.io/tags/RubyGems" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RubyGems</span></a> <a href="https://hachyderm.io/tags/Cargo" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cargo</span></a> <a href="https://hachyderm.io/tags/PickingAMastodonInstance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PickingAMastodonInstance</span></a> <br><a href="https://hachyderm.io/tags/Ruby" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Ruby</span></a> <a href="https://hachyderm.io/tags/Python" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Python</span></a> <a href="https://hachyderm.io/tags/Rust" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Rust</span></a> <a href="https://hachyderm.io/tags/Javascript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Javascript</span></a> <a href="https://hachyderm.io/tags/NodeJs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NodeJs</span></a> <a href="https://hachyderm.io/tags/Lisp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Lisp</span></a> <a href="https://hachyderm.io/tags/CommonGuide" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CommonGuide</span></a></p>
Comic Crusaders<p>OF LIMBO Share Homage To Van Halen With "Finish What Ya Started"<br>OF LIMBO&nbsp;are sharing a fun new homage to Van Halen with their acoustic version of the classic “Finish What Ya Started”.&nbsp;&nbsp;It’s the 2nd&nbsp;release from the California band off&nbsp;their upcoming “Unplugged” album, which will be released this summer.</p><p>Recorded at the band’s home studio in Long Beach, their...<br><a href="https://comiccrusaders.com/editorial/of-limbo-share-homage-to-van-halen-with-finish-what-ya-started/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">comiccrusaders.com/editorial/o</span><span class="invisible">f-limbo-share-homage-to-van-halen-with-finish-what-ya-started/</span></a><br><a href="https://mastodon.online/tags/of" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>of</span></a> limbo <a href="https://mastodon.online/tags/rock" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rock</span></a> <a href="https://mastodon.online/tags/music" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>music</span></a> <a href="https://mastodon.online/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> pr</p>
Andrija Petrovic<p><span class="h-card" translate="no"><a href="https://dindon.one/@henry" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>henry</span></a></span> Having (almost fully) switched to <a href="https://lor.sh/tags/NodeJS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NodeJS</span></a> in 2012, I quickly recognized the danger of relying to _anything_ (<a href="https://lor.sh/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> included, this one gave me a lot of pain for several times over the years).<br>Ended up with a monstrous monorepo. Forked (and improved) just 2 other people's repos, one abandoned and one that took months to finally get it right regarding garbage collection, but I had no time to wait.<br>Thereby I never got to a situation to hate a programming language because of the hype around it, but it surely got me coding a ton of <a href="https://lor.sh/tags/javascript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>javascript</span></a>.<br>The experience helped me a lot in JS5=&gt;ECMAScript and ECMAScript=&gt;TypeScript switching in the last year or so.</p>
Dino<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@BleepingComputer" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>BleepingComputer</span></a></span> Do we think something like this is enough to find if this garbage is present on a Linux system? `sudo find / -iregex '.*ethers-.*`<br><a href="https://masto.ai/tags/node" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>node</span></a> <a href="https://masto.ai/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://masto.ai/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a></p>
Thor A. Hopland<p>Out of pure curiosity, and because I'm on that <a href="https://snabelen.no/tags/webdev" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>webdev</span></a> <a href="https://snabelen.no/tags/framework" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>framework</span></a> discovery tip. Heck, this project even made me download an IDE for Android lol</p><p>Just to read `install.bin` - which is an sh script.</p><p>Excuse me, but why are you bundling <a href="https://snabelen.no/tags/nodejs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nodejs</span></a> and <a href="https://snabelen.no/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a>? Is it to facilitate a setup process for containers, or is it merely to make the process easy?</p><p>I'm a bit sceptical to that sort of thing, especially when fetching from a vendors domain directly. </p><p>Any plans to build packages via CI?</p><p><span class="h-card" translate="no"><a href="https://mastodon.ar.al/@aral" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>aral</span></a></span> <span class="h-card" translate="no"><a href="https://fedi.jaenis.ch/@andre" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>andre</span></a></span></p>
jdm2 🇵🇷<p>Quick question for the node.js developers on the fediverse.</p><p>How would I go about monitoring an app's memory and CPU usage over time? </p><p><a href="https://boriken.social/tags/node" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>node</span></a> <a href="https://boriken.social/tags/nodejs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nodejs</span></a> <a href="https://boriken.social/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a></p>
Avoid the Hack! :donor:<p>Week 11 of the <a href="https://infosec.exchange/tags/Privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Privacy</span></a> Roundup is out. Featuring:</p><p>- Data broker bragging about having personal information of billions of people<br>- How the ESP32 <a href="https://infosec.exchange/tags/Bluetooth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Bluetooth</span></a> backdoor isn't a backdoor<br>- North Korean government APTs spreading <a href="https://infosec.exchange/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> on <a href="https://infosec.exchange/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> play, <a href="https://infosec.exchange/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a><br>- An ICE OSINT Tool that can monitor 200+ websites of a target<br>- <a href="https://infosec.exchange/tags/Apple" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Apple</span></a> patching an exploited zero-day in WebKit<br>- <a href="https://infosec.exchange/tags/Microsoft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Microsoft</span></a> Patch Tuesday, 6 exploited zero-days</p><p>... and more, of course.</p><p><a href="https://infosec.exchange/tags/privacymatters" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacymatters</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/cve" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cve</span></a> </p><p><a href="https://avoidthehack.com/privacy-week11-2025" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">avoidthehack.com/privacy-week1</span><span class="invisible">1-2025</span></a></p>
FlohEinstein<p>Do you want to advertise "my Node.js product now uses AI!!" but don't know how to add AI?<br>Use the package "is-even-ai"</p><p><a href="https://www.npmjs.com/package/is-even-ai" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">npmjs.com/package/is-even-ai</span><span class="invisible"></span></a></p><p><a href="https://chaos.social/tags/nodejs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nodejs</span></a> <a href="https://chaos.social/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://chaos.social/tags/isevenai" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>isevenai</span></a> <a href="https://chaos.social/tags/devops" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>devops</span></a></p>
st1nger :unverified: 🏴‍☠️ :linux: :freebsd:<p><a href="https://infosec.exchange/tags/Code" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Code</span></a> Galaxies - <a href="https://infosec.exchange/tags/python" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>python</span></a> <a href="https://infosec.exchange/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://infosec.exchange/tags/go" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>go</span></a> <a href="https://infosec.exchange/tags/r" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>r</span></a> <a href="https://infosec.exchange/tags/rust" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rust</span></a> <a href="https://infosec.exchange/tags/ruby" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ruby</span></a> <a href="https://infosec.exchange/tags/elm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>elm</span></a> and distro's <a href="https://infosec.exchange/tags/debian" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>debian</span></a> <a href="https://infosec.exchange/tags/arch" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>arch</span></a> <a href="https://infosec.exchange/tags/fedora" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fedora</span></a> <a href="https://anvaka.github.io/pm/#/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">anvaka.github.io/pm/#/</span><span class="invisible"></span></a></p>
Chee Aun 🤔<p>Huh, Runkit has been gone for few months and npm pages are still linking to it <a href="https://github.com/orgs/community/discussions/141424" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/orgs/community/disc</span><span class="invisible">ussions/141424</span></a></p><p>The forum is also filled with reports and spam <a href="https://discuss.runkit.com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">discuss.runkit.com/</span><span class="invisible"></span></a> 😥</p><p><a href="https://mastodon.social/tags/nodejs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nodejs</span></a> <a href="https://mastodon.social/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://mastodon.social/tags/runkit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>runkit</span></a></p>
Inautilo<p><a href="https://mastodon.social/tags/Development" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Development</span></a> <a href="https://mastodon.social/tags/Launches" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Launches</span></a><br>SQL Noir · A game to learn SQL by solving crimes <a href="https://ilo.im/162ciw" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">ilo.im/162ciw</span><span class="invisible"></span></a></p><p>_____<br><a href="https://mastodon.social/tags/OpenSource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenSource</span></a> <a href="https://mastodon.social/tags/Game" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Game</span></a> <a href="https://mastodon.social/tags/Database" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Database</span></a> <a href="https://mastodon.social/tags/SQL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SQL</span></a> <a href="https://mastodon.social/tags/MySQL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MySQL</span></a> <a href="https://mastodon.social/tags/SQLite" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SQLite</span></a> <a href="https://mastodon.social/tags/PostgreSQL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PostgreSQL</span></a> <a href="https://mastodon.social/tags/Npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Npm</span></a> <a href="https://mastodon.social/tags/WebDev" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebDev</span></a> <a href="https://mastodon.social/tags/Backend" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Backend</span></a></p>
Emelia 👸🏻<p>Why does the npm user or organisation on npm have 64,788 packages?</p><p><a href="https://hachyderm.io/tags/nodejs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nodejs</span></a> <a href="https://hachyderm.io/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a></p>
Tane Piper ⁂<p>That thing we said would keep happening if <a href="https://tane.codes/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> didn't add signed packages keeps happening </p><p><a href="https://www.mend.io/blog/fake-vs-code-extension-on-npm-spreads-multi-stage-malware/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">mend.io/blog/fake-vs-code-exte</span><span class="invisible">nsion-on-npm-spreads-multi-stage-malware/</span></a></p>
Aral Balkan<p>Just released Node Pebble version 5.1.1</p><p>• Updated to Pebble version 2.7.0.</p><p>• Now also supports macOS and arm64 (because Pebble itself does).</p><p><a href="https://codeberg.org/small-tech/node-pebble" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">codeberg.org/small-tech/node-p</span><span class="invisible">ebble</span></a></p><p>Node Pebble is a Node.js wrapper for Let’s Encrypt’s¹ Pebble² that:</p><p>• Downloads the correct Pebble binary for your platform.</p><p>• Launches and manages a single Pebble process.</p><p>• Returns a reference to the same process on future calls (safe to include in multiple unit tests where order of tests is undetermined)</p><p>• Automatically patches Node.js’s TLS module to accept Pebble server’s test certificate as well as its dynamically-generated root and intermediary CA certificates.</p><p>¹ <a href="https://letsencrypt.org" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">letsencrypt.org</span><span class="invisible"></span></a></p><p>² “A miniature version of Boulder, Pebble is a small RFC 8555 ACME test server not suited for a production certificate authority.” <a href="https://github.com/letsencrypt/pebble" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">github.com/letsencrypt/pebble</span><span class="invisible"></span></a></p><p><a href="https://mastodon.ar.al/tags/LetsEncrypt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LetsEncrypt</span></a> <a href="https://mastodon.ar.al/tags/TLS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TLS</span></a> <a href="https://mastodon.ar.al/tags/SSL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SSL</span></a> <a href="https://mastodon.ar.al/tags/HTTPS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HTTPS</span></a> <a href="https://mastodon.ar.al/tags/NodeJS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NodeJS</span></a> <a href="https://mastodon.ar.al/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://mastodon.ar.al/tags/module" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>module</span></a> <a href="https://mastodon.ar.al/tags/JavaScript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JavaScript</span></a> <a href="https://mastodon.ar.al/tags/NodePebble" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NodePebble</span></a> <a href="https://mastodon.ar.al/tags/SmallWeb" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SmallWeb</span></a> <a href="https://mastodon.ar.al/tags/SmallTech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SmallTech</span></a> <a href="https://mastodon.ar.al/tags/web" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>web</span></a> <a href="https://mastodon.ar.al/tags/dev" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dev</span></a></p>
Comic Crusaders<p>Alexander Cardinale Spreads Hope &amp; Unity Through Timeless Anthem “Peace Train” <br>In late 2019, singer-songwriter&nbsp;Alexander Cardinale&nbsp;and his wife Daphna welcomed their second daughter into the world. At exactly that time, his single “Simple Things” featuring Christina Perri started charting at radio,...<br><a href="https://comiccrusaders.com/comic-books/comic-book-previews/alexander-cardinale-spreads-hope-unity-through-timeless-anthem-peace-train/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">comiccrusaders.com/comic-books</span><span class="invisible">/comic-book-previews/alexander-cardinale-spreads-hope-unity-through-timeless-anthem-peace-train/</span></a><br><a href="https://mastodon.online/tags/peace" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>peace</span></a> tain <a href="https://mastodon.online/tags/music" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>music</span></a> <a href="https://mastodon.online/tags/ed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ed</span></a> bunker <a href="https://mastodon.online/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://mastodon.online/tags/Alexander" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Alexander</span></a> Cardinale</p>
S0AndS0<p>I present to y'all one of the greatest packages for JavaScript™ and NPM ecosystem!</p><p> npm i --dev @degenerate-developers/raw-js</p><p>... Usage? Don't install any non-development dependencies to ensure you, and your project, are not called out for skill issues.</p><p><a href="https://mastodon.social/tags/code" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>code</span></a> <a href="https://mastodon.social/tags/coding" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>coding</span></a> <a href="https://mastodon.social/tags/ecmascript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ecmascript</span></a> <a href="https://mastodon.social/tags/foss" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>foss</span></a> <a href="https://mastodon.social/tags/javascript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>javascript</span></a> <a href="https://mastodon.social/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://mastodon.social/tags/software" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>software</span></a> <a href="https://mastodon.social/tags/unhinged" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>unhinged</span></a></p>
IT News<p>Yearlong supply-chain attack targeting security pros steals 390K credentials - A sophisticated and ongoing supply-chain attack operating for the past yea... - <a href="https://arstechnica.com/security/2024/12/yearlong-supply-chain-attack-targeting-security-pros-steals-390k-credentials/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">arstechnica.com/security/2024/</span><span class="invisible">12/yearlong-supply-chain-attack-targeting-security-pros-steals-390k-credentials/</span></a> <a href="https://schleuss.online/tags/supplychainattacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattacks</span></a> <a href="https://schleuss.online/tags/credentialtheft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>credentialtheft</span></a> <a href="https://schleuss.online/tags/cryptomining" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cryptomining</span></a> <a href="https://schleuss.online/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://schleuss.online/tags/biz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>biz</span></a>⁢ <a href="https://schleuss.online/tags/github" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>github</span></a> <a href="https://schleuss.online/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a></p>
tea 🌺<p>Would love thoughts and feedback on my Future / deferred promise library:</p><p><a href="https://www.npmjs.com/package/@reggi/future" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">npmjs.com/package/@reggi/futur</span><span class="invisible">e</span></a></p><p>Be kind ❤️ </p><p><a href="https://indieweb.social/tags/JavasScript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JavasScript</span></a> <a href="https://indieweb.social/tags/js" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>js</span></a> <a href="https://indieweb.social/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://indieweb.social/tags/package" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>package</span></a> <a href="https://indieweb.social/tags/module" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>module</span></a> <a href="https://indieweb.social/tags/opensource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensource</span></a> <a href="https://indieweb.social/tags/ts" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ts</span></a> <a href="https://indieweb.social/tags/typescript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>typescript</span></a></p>
JohnW<p>Question for the InfoSec guys out there.</p><p>How secure, really, is node[dot]js , and its associated npm packages?</p><p>I just did an update on node &amp; npm, cursory audit &amp; prune but I know little about any explicit packages that I should absolutely get rid of?</p><p>You guys have any advice?</p><p><a href="https://indieweb.social/tags/Tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tech</span></a> <a href="https://indieweb.social/tags/Node" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Node</span></a> <a href="https://indieweb.social/tags/NPM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NPM</span></a></p>
Scripter :verified_flashing:<p>Supply-Chain-Attacke: Solana web3.js-Bibliothek war mit Schadcode verseucht | heise online<br><a href="https://heise.de/-10190374" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">heise.de/-10190374</span><span class="invisible"></span></a> <a href="https://social.tchncs.de/tags/npm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>npm</span></a> <a href="https://social.tchncs.de/tags/web3JS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>web3JS</span></a> <a href="https://social.tchncs.de/tags/Schadcode" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Schadcode</span></a></p>