Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

lockfiles are useful to speed things up, you avoid waterfalling

and as some people mentioned, if a dependency of a dependency provides an important security patch, do you want to wait for your dependency to update first? or do you rely on overrides?



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: