Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
TechBro8615
on Aug 3, 2021
|
parent
|
context
|
favorite
| on:
Malicious PyPI packages stealing credit cards and ...
There was a recent discussion on HN about `npm audit` and its overwhelming number of false positive vulnerabilities [0]. I can see a policy like this being frustrating in the case of `npm dependencies`. Is this something you deal with?
[0]
https://news.ycombinator.com/item?id=27761334
Consider applying for YC's Spring batch! Applications are open till Feb 11.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search:
[0] https://news.ycombinator.com/item?id=27761334