Hacker News new | past | comments | ask | show | jobs | submit login

Easiest solution without infrastructure imo is to vendor node_modules as a git submodule.

(Of course it's even easier to just add node_modules to the repo but that is messy).




and you better fork the git repo, otherwise the incident happening to npm can happen on github / whatever remote repo.




Consider applying for YC's W25 batch! Applications are open till Nov 12.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: