Hacker News new | past | comments | ask | show | jobs | submit login

Alright, time to start committing `node_modules` to my git repo. It'll have the added benefit of reproducible builds.



Hashing of modules is already established practice. So you would be affected by this if you have 0 tests, not even auditing is necessary.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: