Frontend Dogma

“npm” Archive

Supertopics: , , package-managers · subtopics: ,  (non-exhaustive) · glossary look-up: “npm”

Entry (Sources) and Other Related TopicsDate#
npm Targeted by Malware Campaign Mimicking Familiar Library Names (soc)142
, , ,
npm Should Remove the Default License From New Packages (ISC) (ext)141
, ,
A Decade of Impact: How Our npm Packages Hit 1 Billion Downloads and Shaped JavaScript140
, ,
Malware Found on npm Infecting Local Package With Reverse Shell (rev)139
,
Lazarus Strikes npm Again With New Wave of Malicious Packages (soc)138
,
@ 11ty/image-color (zac)137
, ,
Tutorial: Publishing ESM-Based npm Packages With TypeScript (rau)136
, ,
Is npm Enough? Why Startups Are Coming After This JavaScript Package Registry (kat/red)135
, , , ,
Keep Your Node.js Apps Secure With “npx is-my-node-vulnerable” (tre)134
, ,
My Failed Attempt to Shrink All npm Packages by 5% (eva)133
,
How I Open-Sourced My Secret Access Tokens From GitHub, Slack, and npm—and Who Actually Cares132
, ,
Mastering npm Scripts: Automate Everything in Your Frontend Workflow131
, , ,
HTML Conformance: A Comparison of 6.5 npm Validator Packages (With 1.5 Recommendations) (j9t)130
, , ,
Publishing a Simple Client-Side JavaScript Package to npm With GitHub Actions (sim)129
, ,
How to Prerelease an npm Package (spa/clo)128
, , ,
Understanding “npm audit” and Fixing Vulnerabilities127
, ,
npm vs. npx126
, ,
Significance of package-lock.json or yarn-lock.json125
,
More npm Packages on Cloudflare Workers: Combining Polyfills and Native Code to Support Node.js APIs (jas+/clo)124
, , ,
caniuse-cli (bra)123
, , , , ,
CSS Style Observer (bra)122
,
How to Create an npm Package (mat)121
,
ObsoHTML, the Obsolete HTML Checker (j9t)120
, ,
The Great npm Garbage Patch119
, ,
Building an “npm create” Package (ach)118
Publishing a TypeScript Module to npm vs. JSR (den)117
, , , , ,
Supply Chain Security in npm—We Can Be Optimistic About the Future116
, ,
Leaner npm Packument (Metadata) Contents (git)115
Create npm Package With CommonJS and ESM Support in TypeScript114
, , ,
npm and Node.js Should Do More to Make ES Modules Easy to Use113
,
What Happens When a Major npm Library Goes Commercial? (mco)112
,
Researchers Uncover npm Registry Vulnerability to Cache Poisoning and DoS Attacks (sar/soc)111
, , ,
How a Single Vulnerability Can Bring Down the JavaScript Ecosystem110
, , , ,
CodeFlattener109
,
Using Vite to Rebuild Local Dependencies in an npm Workspace108
,
Building an npm Package Compatible With ESM and CJS in 2024 (sny)107
, , ,
npm Basics for New Developers (nim)106
Node.js TSC Confirms: No Intention to Remove npm From Distribution (sar/soc)105
The Ultimate Guide to Understanding npx vs. npm104
, ,
eslint-plugin-depend103
, ,
How npm Install Scripts Can Be Weaponized: A Real-World Example of a Harmful npm Package (eth)102
, ,
Why Does “is-number” Package Have 59M Weekly Downloads?101
Node.js Community Debate Intensifies Over Enabling Corepack by Default and Potentially Unbundling npm (sar/soc)100
, , , ,
Malicious npm Package Masquerades as Noblox.js, Targeting Roblox Users for Data Theft (sar/soc)99
,
GitHub, npm Registry Abused to Host SSH Key-Stealing Malware98
, , ,
Modern JavaScript Library Starter97
,
Deceptive Deprecation: The Truth About npm Deprecated Packages96
, ,
npm in Review: A 2023 Retrospective on Growth, Security, and Quirky Facts (soc)95
When “Everything” Becomes Too Much: The npm Package Chaos of 2024 (soc)94
A Comprehensive Guide to npm Workspaces and Monorepos93
, , ,
I Replaced npm, Yarn, and nvm With pnpm (paw)92
, , ,
How to Use npm Packages Outside of Node91
, ,
Secret Scanning Scans Public npm Packages (git)90
, ,
TypeScript Monorepo With npm Workspaces (skw)89
, ,
SSH Keys Stolen by Stream of Malicious PyPI and npm Packages (ble)88
, ,
Honey, I Shrunk the npm Package87
,
npm Provenance General Availability (git)86
, ,
How to Migrate From npm to pnpm85
, ,
dependency-time-machine84
, , ,
Sophisticated, Highly-Targeted Attacks Continue to Plague npm83
Publishing With npm Provenance From Private Source Repositories Is No Longer Supported (git)82
, , ,
Social Engineering Campaign Targeting Tech Employees Spreading Through npm Malware (soc)81
,
A Comprehensive Beginner’s Guide to npm: Simplifying Package Management80
,
Making the Switch: From Yarn/npm to pnpm79
,
Identify Unused npm Packages in Your Project (ami)78
,
The Massive Bug at the Heart of the npm Ecosystem77
,
Create React UI Lib: Component Library Speedrun76
, ,
npm Won’t Publish Packages Containing the Word “keygen”75
,
Comparing the Best Node.js Version Managers: nvm, Volta, and asdf74
,
npm vs. Yarn vs. pnpm73
, ,
Generating Provenance Statements72
,
Introducing npm Package Provenance (git)71
, , , ,
Dissecting npm Malware: Five Packages and Their Evil Install Scripts70
,
Understanding npm Versioning69
, ,
One in Two New npm Packages Is SEO Spam Right Now68
The Landscape of npm Packages for CLI Apps67
, ,
Automatic npm Publishing With GitHub Actions and npm Granular Tokens66
,
Why We Added package.json Support to Deno (tin/den)65
, ,
Speeding Up the JavaScript Ecosystem—npm Scripts (mar)64
, ,
Unlocking Security Updates for Transitive Dependencies With npm (git)63
, ,
Lockfile Trick: Package an npm Project With Nix in 20 Lines62
New npm Features for Secure Publishing and Safe Consumption (git)61
,
Migrating From npm to pnpm60
,
npm Security: Preventing Supply Chain Attacks (sny)59
,
How to Build, Test, and Publish a TypeScript npm Package in 202258
,
Why You Should Prefer Using pnpm Over npm and Yarn?57
, ,
Use “npm query” and jq to Dig Into Your Dependencies56
, ,
Phylum Detects Active Typosquatting Campaign Targeting npm Developers55
,
depngn54
, ,
Best Practices for Creating a Modern npm Package (sny)53
Dependabot Unlocks Transitive Dependencies for npm Projects (git)52
,
4 Ways to Minimize Your Dependencies in Node.js (app)51
,
Installing and Running Node.js Bin Scripts (rau)50
,
Introducing the New npm Dependency Selector Syntax (git)49
Introducing Even More Security Enhancements to npm (git)48
,
Top 5 npm Vulnerability Scanners47
, ,
css-browser-support (5t3)46
, , ,
Imagemin Guard (j9t)45
, , , , , , , ,
Alternatives to Installing npm Packages Globally (rau)44
,
How to Migrate From Yarn/npm to pnpm43
, , ,
You May Not Need a Bundler for Your npm Library42
npm Security Update: Attack Campaign Using Stolen OAuth Tokens (git)41
, , ,
What npm Can Learn From Go40
Snyk Finds 200+ Malicious npm Packages, Including Cobalt Strike Dependency Confusion Attacks (sny)39
, ,
4 Reasons to Avoid Using “npm link”38
How to Respond to Growing Supply Chain Security Risks?37
, , ,
Update Node Dependencies Automatically, Selectively, or Incrementally36
, ,
What’s Really Going On Inside Your node_modules Folder? (soc)35
,
How to Publish Deno Modules to npm (kit/den)34
, , ,
Understanding Dependencies Inside Your package.json (nod)33
, ,
How to Fix Your Security Vulnerabilities With npm Override32
, , ,
The Basics of package.json (nod)31
, , ,
pkg.land30
, ,
GitHub’s Commitment to npm Ecosystem Security (git)29
,
Yarn vs. npm: Everything You Need to Know28
,
timefind27
,
Common npm Mistakes Every Developer Should Avoid26
npm Security Best Practices (owa)25
,
Simple Monorepos via npm Workspaces and TypeScript Project References (rau)24
,
NPM Global Audit23
, , ,
“npm ruin dev” (ada/css)22
, , ,
What Is Node and When Should I Use It?21
,
How to Publish an Updated Version of an npm Package (spa/clo)20
,
How to Add CSS Vendor Prefixes Automatically (luk)19
, , , , , , ,
a11y-syntax-highlighting (eri)18
, ,
How to Worry About npm Package Weight (chr/css)17
Validating Dependencies in the Project With npm-check and depcheck16
, , , ,
Introducing npx: An npm Package Runner (zka)15
, ,
10 Node.js Best Practices: Enlightenment From the Node Gurus14
, , , , , , ,
Why npm Scripts? (css)13
, , , , , , ,
why-is-node-running12
,
How to Solve the Global npm Module Dependency Problem11
,
image-dimensions (sin)10
,
Learning Node.js: The “npm link”9
,
9 Quick Tips About npm8
, ,
Peer Dependencies (dom)7
,
Madge6
, ,
npm Package Download Statistics Checker5
, , , , ,
npm Dependency Visualizer4
, , , , ,
npm Package Types Checker3
, , , , , ,
npm, Yarn, and pnpm Command Converter2
, , , , ,
npm Package Size Checker1
, , , ,