Tech does not just watch: Take action against Russia’s war on Ukraine 🇺🇦, and take action against Israel’s genocide on the Palestinian people and the destruction of Palestine 🇵🇸 Protest, boycott, cut all ties. Hide

Frontend Dogma

“dependencies” News Archive

Glossary look-up: “dependencies”

Entry (Sources) and Other Related TopicsDate#
npm Trusted Publishing With OIDC Is Generally Available (git)130
, ,
Contagious Interview Campaign Escalates With 67 Malicious npm Packages and New Malware Loader (soc)129
,
npm Targeted by Malware Campaign Mimicking Familiar Library Names (soc)128
, , ,
npm Should Remove the Default License From New Packages (ISC) (ext)127
, ,
Eleventy: A GitHub Workflow to Check if an Automated Dependency Update Would Break Your Site (j9t)126
, , ,
LLMs Can’t Stop Making Up Software Dependencies and Sabotaging Everything (tho/the)125
,
A Decade of Impact: How Our npm Packages Hit 1 Billion Downloads and Shaped JavaScript124
, ,
Breaking Down Circular Dependencies in JavaScript123
Malware Found on npm Infecting Local Package With Reverse Shell (rev)122
,
Lazarus Strikes npm Again With New Wave of Malicious Packages (soc)121
,
Tutorial: Publishing ESM-Based npm Packages With TypeScript (rau)120
, ,
My Failed Attempt to Shrink All npm Packages by 5% (eva)119
,
10 Very Important Flutter Packages118
Build It Yourself (mit)117
, ,
Double-Keyed Caching: How Browser Cache Partitioning Changed the Web (add)116
, , , ,
Do I Need This Node Dependency? (bri)115
The 20 Commandments of Software Engineering114
, , , , , , ,
Mastering npm Scripts: Automate Everything in Your Frontend Workflow113
, , ,
On Long Term Software Development (ber)112
, , , ,
JS Import Maps (5t3)111
,
Your JavaScript Bundle Is Too Fat110
, , , , , , ,
Publishing a Simple Client-Side JavaScript Package to npm With GitHub Actions (sim)109
, ,
Node.js Corepack: Version Control for Package Managers (tre)108
, , ,
How to Prerelease an npm Package (spa/clo)107
, , ,
Introducing the vlt Package Manager and Serverless Registry106
, , ,
cpx—the npx Counterpart of the PHP Ecosystem (ami)105
The Nine Node Pillars (mco/pla)104
,
More npm Packages on Cloudflare Workers: Combining Polyfills and Native Code to Support Node.js APIs (jas+/clo)103
, , ,
Hidden Cost of Frontend Frameworks102
,
How to Create an npm Package (mat)101
,
The Great npm Garbage Patch100
, ,
Secure Node.js Applications From Supply Chain Attacks99
, ,
Publishing a TypeScript Module to npm vs. JSR (den)98
, , , , ,
Supply Chain Security in npm—We Can Be Optimistic About the Future97
, ,
Create npm Package With CommonJS and ESM Support in TypeScript96
, , ,
What Happens When a Major npm Library Goes Commercial? (mco)95
,
Researchers Uncover npm Registry Vulnerability to Cache Poisoning and DoS Attacks (sar/soc)94
, , ,
Dual Publishing ESM and CJS Modules With tsup and “Are the Types Wrong?” (joh)93
, , , ,
How a Single Vulnerability Can Bring Down the JavaScript Ecosystem92
, , , ,
How to Use Corepack (mat)91
, ,
JSR: The JavaScript Package Registry We’ve Been Waiting For90
JavaScript Security: Simple Practices to Secure Your Frontend89
, ,
How to Document Your JavaScript Package (den)88
, , , , ,
JSR Is Not Another Package Manager (tin/den)87
Using Vite to Rebuild Local Dependencies in an npm Workspace86
,
Building an npm Package Compatible With ESM and CJS in 2024 (sny)85
, , ,
Microservices Promised Freedom but Delivered Dependencies (pur)84
Another JS Registry—Seriously?! (den)83
, ,
How npm Install Scripts Can Be Weaponized: A Real-World Example of a Harmful npm Package (eth)82
, ,
Introducing JSR—the JavaScript Registry (lca+/den)81
, , ,
Choosing the Right Node.js Package Manager in 2024: A Comparative Guide (nod)80
, ,
Why Does “is-number” Package Have 59M Weekly Downloads?79
JSR: What We Know So Far About Deno’s New JavaScript Package Registry (sar/soc)78
, ,
Frontend Application Security: Tips and Tricks77
, , , , , , ,
Node.js Community Debate Intensifies Over Enabling Corepack by Default and Potentially Unbundling npm (sar/soc)76
, , , ,
Malicious npm Package Masquerades as Noblox.js, Targeting Roblox Users for Data Theft (sar/soc)75
,
Modern JavaScript Library Starter74
,
Deceptive Deprecation: The Truth About npm Deprecated Packages73
, ,
Compatibility of Node.js Versions With Packages72
,
Installing Google Fonts as npm Packages (ami)71
, , ,
A Comprehensive Guide to npm Workspaces and Monorepos70
, , ,
I Replaced npm, Yarn, and nvm With pnpm (paw)69
, , ,
A Complete Guide to pnpm68
,
Understanding Dev Dependencies in Web Development67
How to Use npm Packages Outside of Node66
, ,
Secret Scanning Scans Public npm Packages (git)65
, ,
How We Optimized Package Imports in Next.js (ver)64
, ,
SSH Keys Stolen by Stream of Malicious PyPI and npm Packages (ble)63
, ,
Honey, I Shrunk the npm Package62
,
Upgrading Frontend Dependencies With Confidence61
, , ,
Bun Hype: How We Learned Nothing From Yarn60
, ,
dependency-time-machine59
, , ,
My Experience Modernizing Packages to ESM58
,
A Comprehensive Beginner’s Guide to npm: Simplifying Package Management57
,
Identify Unused npm Packages in Your Project (ami)56
,
The Massive Bug at the Heart of the npm Ecosystem55
,
npm Won’t Publish Packages Containing the Word “keygen”54
,
Before Your Next Frontend Pull Request, Use This Checklist (tra/evi)53
, , , , ,
Building a Frontend Framework—Reactivity and Composability With Zero Dependencies52
,
Deno vs. Node: No One Is Ready for the Move51
, ,
Understanding npm Versioning50
, ,
The Landscape of npm Packages for CLI Apps49
, ,
npx: The Easy Way to Run Node.js Packages48
,
Node.js Toolbox47
, ,
Unlocking Security Updates for Transitive Dependencies With npm (git)46
, ,
New npm Features for Secure Publishing and Safe Consumption (git)45
,
npm Security: Preventing Supply Chain Attacks (sny)44
,
Use “npm query” and jq to Dig Into Your Dependencies43
, ,
Phylum Detects Active Typosquatting Campaign Targeting npm Developers42
,
depngn41
, ,
Dependabot Unlocks Transitive Dependencies for npm Projects (git)40
,
4 Ways to Minimize Your Dependencies in Node.js (app)39
,
JavaScript Bugs Aplenty in Node.js Ecosystem—Found Automatically38
, , , , ,
Everything You Need to Know About JavaScript Import Maps (hon)37
,
Optimizing Node.js Dependencies in AWS Lambda36
, , , ,
Alternatives to Installing npm Packages Globally (rau)35
,
Don’t Sink Your Website With Third Parties (sma)34
,
Snyk Finds 200+ Malicious npm Packages, Including Cobalt Strike Dependency Confusion Attacks (sny)33
, ,
Lerna Has Gone—Which Monorepo Is Right for a Node.js Backend Now?32
, , ,
How to Respond to Growing Supply Chain Security Risks?31
, , ,
Update Node Dependencies Automatically, Selectively, or Incrementally30
, ,
What’s Really Going On Inside Your node_modules Folder? (soc)29
,
How to Publish Deno Modules to npm (kit/den)28
, , ,
Understanding Dependencies Inside Your package.json (nod)27
, ,
How to Fix Your Security Vulnerabilities With npm Override26
, , ,
The Basics of package.json (nod)25
, , ,
How to Keep Your Repo Package Dependencies Up to Date Automatically24
, ,
Dependency Risk and Funding (mit)23
,
pkg.land22
, ,
Why You Should Check in Your Node Dependencies21
Ain’t No Party Like a Third Party (ada/css)20
,
Open Source Insights19
, , ,
Why We Developed the Node.js Reference Architecture18
,
How to Publish an Updated Version of an npm Package (spa/clo)17
,
How to Automatically Update Your JavaScript Dependencies (spa/clo)16
, , , ,
How to Worry About npm Package Weight (chr/css)15
Validating Dependencies in the Project With npm-check and depcheck14
, , , ,
HTML, CSS, and Dependency Direction (j9t)13
, , ,
Distribution Packages Considered Insecure12
,
How to Solve the Global npm Module Dependency Problem11
,
The Tedium of Managing Code (lyz/ali)10
, , ,
Peer Dependencies (dom)9
,
Madge8
, ,
Sprockets: Build Time JavaScript Dependency Management (dal/aja)7
, ,
Dealing With Dependencies (tro)6
npm Package Checker5
, , , ,
npm Package Download Statistics Checker4
, , , , ,
npm Dependency Visualizer3
, , , , ,
npm Package Types Checker2
, , , , , ,
npm Package Size Checker1
, , , ,