Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This in particular is a huge trust failure - working with mutable/replaceable libraries is like working with mutable/replaceable APIs.


Well they aren't mutable/replaceable, at least not since after the left-pad incident where npm announced new rules to prevent package unpublishing. It seems this was a operational bug at npm inc.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: