Frontend Dogma

“dependencies” Archive

  1. JSR Is Not Another Package Manager · ·
  2. Using Vite to Rebuild Local Dependencies in an npm Workspace · · ,
  3. Building an npm Package Compatible With ESM and CJS in 2024 · · ,
  4. Another JS Registry—Seriously?! · · , ,
  5. How npm Install Scripts Can Be Weaponized: A Real-World Example of a Harmful npm Package · · , ,
  6. Introducing JSR—the JavaScript Registry · · , ,
  7. Why Does “is-number” Package Have 59M Weekly Downloads? · ·
  8. Choosing the Right Node.js Package Manager in 2024: A Comparative Guide · · , ,
  9. JSR: What We Know So Far About Deno’s New JavaScript Package Registry · · , ,
  10. Node.js Community Debate Intensifies over Enabling Corepack by Default and Potentially Unbundling npm · · , , ,
  11. Malicious npm Package Masquerades as Noblox.js, Targeting Roblox Users for Data Theft · · ,
  12. Modern JavaScript Library Starter · · ,
  13. Deceptive Deprecation: The Truth About npm Deprecated Packages · · , ,
  14. Installing Google Fonts as npm Packages · · , ,
  15. I Replaced npm, Yarn, and nvm With pnpm · · , , ,
  16. A Complete Guide to pnpm · · ,
  17. How to Use npm Packages Outside of Node · · , ,
  18. Secret Scanning Scans Public npm Packages · · , ,
  19. How We Optimized Package Imports in Next.js · · , ,
  20. SSH Keys Stolen by Stream of Malicious PyPI and npm Packages · · , ,
  21. Honey, I Shrunk the npm Package · · ,
  22. Upgrading Frontend Dependencies With Confidence · · , , ,
  23. Bun Hype: How We Learned Nothing from Yarn · · , ,
  24. My Experience Modernizing Packages to ESM · · ,
  25. A Comprehensive Beginner’s Guide to npm: Simplifying Package Management · · ,
  26. Identify Unused npm Packages in Your Project · · ,
  27. The Massive Bug at the Heart of the npm Ecosystem · · ,
  28. npm Won’t Publish Packages Containing the Word “keygen” · · ,
  29. Before Your Next Frontend Pull Request, Use This Checklist · · , , , , ,
  30. Building a Frontend Framework—Reactivity and Composability With Zero Dependencies · · ,
  31. Deno vs. Node: No One Is Ready for the Move · · , ,
  32. The Landscape of npm Packages for CLI Apps · · , ,
  33. Unlocking Security Updates for Transitive Dependencies With npm · · , ,
  34. New npm Features for Secure Publishing and Safe Consumption · · ,
  35. npm Security: Preventing Supply Chain Attacks · · ,
  36. Use “npm query” and jq to Dig into Your Dependencies · · , ,
  37. Phylum Detects Active Typosquatting Campaign Targeting npm Developers · · ,
  38. depngn · · , ,
  39. Dependabot Unlocks Transitive Dependencies for npm Projects · · ,
  40. 4 Ways to Minimize Your Dependencies in Node.js · · ,
  41. JavaScript Bugs Aplenty in Node.js Ecosystem—Found Automatically · · , , , , ,
  42. Optimizing Node.js Dependencies in AWS Lambda · · , ,
  43. Alternatives to Installing npm Packages Globally · ·
  44. Don’t Sink Your Website With Third Parties · · ,
  45. Snyk Finds 200+ Malicious npm Packages, Including Cobalt Strike Dependency Confusion Attacks · · , ,
  46. Lerna Has Gone—Which Monorepo Is Right for a Node.js Backend Now? · · , ,
  47. How to Respond to Growing Supply Chain Security Risks? · · , , ,
  48. Update Node Dependencies Automatically, Selectively, or Incrementally · · , ,
  49. What’s Really Going On Inside Your node_modules Folder? · · ,
  50. Understanding Dependencies Inside Your package.json · · , ,
  51. How to Fix Your Security Vulnerabilities With npm Override · · , ,
  52. The Basics of package.json · · , , ,
  53. How to Keep Your Repo Package Dependencies Up to Date Automatically · · ,
  54. Why You Should Check in Your Node Dependencies · ·
  55. Ain’t No Party Like a Third Party · · ,
  56. Open Source Insights · · , , ,
  57. Package Size Checker · , , ,