Frontend Dogma

“npm” Archive

Supertopics: , , package-managers · subtopics: ,  (non-exhaustive) · glossary look-up: “npm”

Entry (Sources) and Other Related TopicsDate#
Malware Found on npm Infecting Local Package With Reverse Shell (rev)136
,
Lazarus Strikes npm Again With New Wave of Malicious Packages (soc)135
,
@ 11ty/image-color (zac)134
, ,
Tutorial: Publishing ESM-Based npm Packages With TypeScript (rau)133
, ,
Is npm Enough? Why Startups Are Coming After This JavaScript Package Registry (kat/red)132
, , , ,
Keep Your Node.js Apps Secure With “npx is-my-node-vulnerable” (tre)131
, ,
My Failed Attempt to Shrink All npm Packages by 5% (eva)130
,
How I Open-Sourced My Secret Access Tokens From GitHub, Slack, and npm—and Who Actually Cares129
, ,
Mastering npm Scripts: Automate Everything in Your Frontend Workflow128
, , ,
HTML Conformance: A Comparison of 6.5 npm Validator Packages (With 1.5 Recommendations) (j9t)127
, , ,
Publishing a Simple Client-Side JavaScript Package to npm With GitHub Actions (sim)126
, , ,
How to Prerelease an npm Package (spa/clo)125
, , ,
Understanding “npm audit” and Fixing Vulnerabilities124
, ,
npm vs. npx123
, ,
Significance of package-lock.json or yarn-lock.json122
,
More npm Packages on Cloudflare Workers: Combining Polyfills and Native Code to Support Node.js APIs (jas+/clo)121
, , ,
caniuse-cli (bra)120
, , , , ,
CSS Style Observer (bra)119
,
How to Create an npm Package (mat)118
,
ObsoHTML, the Obsolete HTML Checker (j9t)117
, ,
The Great npm Garbage Patch116
, ,
Building an “npm create” Package (ach)115
Publishing a TypeScript Module to npm vs. JSR (den)114
, , , , ,
Supply Chain Security in npm—We Can Be Optimistic About the Future113
, ,
Leaner npm Packument (Metadata) Contents (git)112
Create npm Package With CommonJS and ESM Support in TypeScript111
, , ,
npm and Node.js Should Do More to Make ES Modules Easy to Use110
,
What Happens When a Major npm Library Goes Commercial? (mco)109
,
Researchers Uncover npm Registry Vulnerability to Cache Poisoning and DoS Attacks (sar/soc)108
, , ,
How a Single Vulnerability Can Bring Down the JavaScript Ecosystem107
, , , ,
CodeFlattener106
,
Using Vite to Rebuild Local Dependencies in an npm Workspace105
,
Building an npm Package Compatible With ESM and CJS in 2024 (lir/sny)104
, , ,
npm Basics for New Developers (nim)103
Node.js TSC Confirms: No Intention to Remove npm From Distribution (sar/soc)102
The Ultimate Guide to Understanding npx vs. npm101
, ,
eslint-plugin-depend100
, ,
How npm Install Scripts Can Be Weaponized: A Real-World Example of a Harmful npm Package99
, ,
Why Does “is-number” Package Have 59M Weekly Downloads?98
Node.js Community Debate Intensifies Over Enabling Corepack by Default and Potentially Unbundling npm (sar/soc)97
, , , ,
Malicious npm Package Masquerades as Noblox.js, Targeting Roblox Users for Data Theft (sar/soc)96
,
GitHub, npm Registry Abused to Host SSH Key-Stealing Malware95
, ,
Modern JavaScript Library Starter (sas)94
,
Deceptive Deprecation: The Truth About npm Deprecated Packages93
, ,
npm in Review: A 2023 Retrospective on Growth, Security, and Quirky Facts (soc)92
When “Everything” Becomes Too Much: The npm Package Chaos of 2024 (soc)91
A Comprehensive Guide to npm Workspaces and Monorepos90
, , ,
I Replaced npm, Yarn, and nvm With pnpm (paw)89
, , ,
How to Use npm Packages Outside of Node88
, ,
Secret Scanning Scans Public npm Packages (git)87
, ,
TypeScript Monorepo With npm Workspaces (skw)86
, ,
SSH Keys Stolen by Stream of Malicious PyPI and npm Packages (ble)85
, ,
Honey, I Shrunk the npm Package84
,
npm Provenance General Availability (git)83
, ,
How to Migrate From npm to pnpm82
, ,
dependency-time-machine81
, , ,
Sophisticated, Highly-Targeted Attacks Continue to Plague npm80
Publishing With npm Provenance From Private Source Repositories Is No Longer Supported (git)79
, , ,
Social Engineering Campaign Targeting Tech Employees Spreading Through npm Malware (soc)78
A Comprehensive Beginner’s Guide to npm: Simplifying Package Management77
,
Making the Switch: From Yarn/npm to pnpm76
,
Identify Unused npm Packages in Your Project (ami)75
,
The Massive Bug at the Heart of the npm Ecosystem74
,
Create React UI Lib: Component Library Speedrun73
, ,
npm Won’t Publish Packages Containing the Word “keygen”72
,
Comparing the Best Node.js Version Managers: nvm, Volta, and asdf71
,
npm vs. Yarn vs. pnpm70
, ,
Generating Provenance Statements69
,
Introducing npm Package Provenance (git)68
, , , ,
Dissecting npm Malware: Five Packages and Their Evil Install Scripts67
Understanding npm Versioning66
, ,
One in Two New npm Packages Is SEO Spam Right Now65
The Landscape of npm Packages for CLI Apps64
, ,
Automatic npm Publishing With GitHub Actions and npm Granular Tokens63
, ,
Why We Added package.json Support to Deno (tin/den)62
, ,
Speeding Up the JavaScript Ecosystem—npm Scripts (mar)61
, ,
Unlocking Security Updates for Transitive Dependencies With npm (git)60
, ,
Lockfile Trick: Package an npm Project With Nix in 20 Lines59
New npm Features for Secure Publishing and Safe Consumption (git)58
,
Migrating From npm to pnpm57
,
npm Security: Preventing Supply Chain Attacks (lir/sny)56
,
How to Build, Test, and Publish a TypeScript npm Package in 202255
,
Use “npm query” and jq to Dig Into Your Dependencies54
, ,
Phylum Detects Active Typosquatting Campaign Targeting npm Developers53
,
depngn52
, ,
Best Practices for Creating a Modern npm Package (sny)51
Dependabot Unlocks Transitive Dependencies for npm Projects (git)50
,
4 Ways to Minimize Your Dependencies in Node.js (app)49
,
Installing and Running Node.js Bin Scripts (rau)48
,
Introducing the New npm Dependency Selector Syntax (git)47
Introducing Even More Security Enhancements to npm (git)46
,
Top 5 npm Vulnerability Scanners45
, ,
css-browser-support (5t3)44
, , ,
Imagemin Guard (j9t)43
, , , , , , , ,
Alternatives to Installing npm Packages Globally (rau)42
,
How to Migrate From Yarn/npm to pnpm41
, , ,
You May Not Need a Bundler for Your npm Library40
npm Security Update: Attack Campaign Using Stolen OAuth Tokens (git)39
, , ,
What npm Can Learn From Go38
Snyk Finds 200+ Malicious npm Packages, Including Cobalt Strike Dependency Confusion Attacks (sny)37
, ,
4 Reasons to Avoid Using “npm link”36
How to Respond to Growing Supply Chain Security Risks?35
, , ,
Update Node Dependencies Automatically, Selectively, or Incrementally34
, ,
What’s Really Going On Inside Your node_modules Folder? (soc)33
,
How to Publish Deno Modules to npm (kit/den)32
, , ,
Understanding Dependencies Inside Your package.json31
, ,
How to Fix Your Security Vulnerabilities With npm Override30
, , ,
The Basics of package.json29
, , ,
pkg.land28
, ,
GitHub’s Commitment to npm Ecosystem Security (git)27
,
Yarn vs. npm: Everything You Need to Know26
,
timefind25
,
Common npm Mistakes Every Developer Should Avoid24
npm Security Best Practices (lir/owa)23
,
Simple Monorepos via npm Workspaces and TypeScript Project References (rau)22
,
NPM Global Audit21
, , ,
What Is Node and When Should I Use It?20
,
How to Publish an Updated Version of an npm Package (spa/clo)19
,
How to Add CSS Vendor Prefixes Automatically (luk)18
, , , , , , ,
a11y-syntax-highlighting (eri)17
, ,
Validating Dependencies in the Project With npm-check and depcheck16
, , , ,
Introducing npx: An npm Package Runner (zka)15
, ,
10 Node.js Best Practices: Enlightenment From the Node Gurus14
, , , , , , ,
Why npm Scripts? (css)13
, , , , , , ,
why-is-node-running12
,
How to Solve the Global npm Module Dependency Problem11
,
image-dimensions (sin)10
,
Learning Node.js: The “npm link”9
,
9 Quick Tips About npm8
, ,
Peer Dependencies (dom)7
,
Madge6
, ,
npm Package Download Statistics Checker5
, , , , ,
npm Dependency Visualizer4
, , , , ,
npm Package Types Checker3
, , , , , ,
npm, Yarn, and pnpm Command Converter2
, , , , ,
npm Package Size Checker1
, , , ,