Frontend Dogma

“npm” Archive

Supertopics: , , package-managers · subtopics: ,  (non-exhaustive) · glossary look-up: “npm”

Entry (Sources) and Other Related TopicsDate#
npm Targeted by Malware Campaign Mimicking Familiar Library Names (soc)141
, , ,
npm Should Remove the Default License From New Packages (ISC) (ext)140
, ,
A Decade of Impact: How Our npm Packages Hit 1 Billion Downloads and Shaped JavaScript139
, ,
Malware Found on npm Infecting Local Package With Reverse Shell (rev)138
,
Lazarus Strikes npm Again With New Wave of Malicious Packages (soc)137
,
@ 11ty/image-color (zac)136
, ,
Tutorial: Publishing ESM-Based npm Packages With TypeScript (rau)135
, ,
Is npm Enough? Why Startups Are Coming After This JavaScript Package Registry (kat/red)134
, , , ,
Keep Your Node.js Apps Secure With “npx is-my-node-vulnerable” (tre)133
, ,
My Failed Attempt to Shrink All npm Packages by 5% (eva)132
,
How I Open-Sourced My Secret Access Tokens From GitHub, Slack, and npm—and Who Actually Cares131
, ,
Mastering npm Scripts: Automate Everything in Your Frontend Workflow130
, , ,
HTML Conformance: A Comparison of 6.5 npm Validator Packages (With 1.5 Recommendations) (j9t)129
, , ,
Publishing a Simple Client-Side JavaScript Package to npm With GitHub Actions (sim)128
, ,
How to Prerelease an npm Package (spa/clo)127
, , ,
Understanding “npm audit” and Fixing Vulnerabilities126
, ,
npm vs. npx125
, ,
Significance of package-lock.json or yarn-lock.json124
,
More npm Packages on Cloudflare Workers: Combining Polyfills and Native Code to Support Node.js APIs (jas+/clo)123
, , ,
caniuse-cli (bra)122
, , , , ,
CSS Style Observer (bra)121
,
How to Create an npm Package (mat)120
,
ObsoHTML, the Obsolete HTML Checker (j9t)119
, ,
The Great npm Garbage Patch118
, ,
Building an “npm create” Package (ach)117
Publishing a TypeScript Module to npm vs. JSR (den)116
, , , , ,
Supply Chain Security in npm—We Can Be Optimistic About the Future115
, ,
Leaner npm Packument (Metadata) Contents (git)114
Create npm Package With CommonJS and ESM Support in TypeScript113
, , ,
npm and Node.js Should Do More to Make ES Modules Easy to Use112
,
What Happens When a Major npm Library Goes Commercial? (mco)111
,
Researchers Uncover npm Registry Vulnerability to Cache Poisoning and DoS Attacks (sar/soc)110
, , ,
How a Single Vulnerability Can Bring Down the JavaScript Ecosystem109
, , , ,
CodeFlattener108
,
Using Vite to Rebuild Local Dependencies in an npm Workspace107
,
Building an npm Package Compatible With ESM and CJS in 2024 (lir/sny)106
, , ,
npm Basics for New Developers (nim)105
Node.js TSC Confirms: No Intention to Remove npm From Distribution (sar/soc)104
The Ultimate Guide to Understanding npx vs. npm103
, ,
eslint-plugin-depend102
, ,
How npm Install Scripts Can Be Weaponized: A Real-World Example of a Harmful npm Package (eth)101
, ,
Why Does “is-number” Package Have 59M Weekly Downloads?100
Node.js Community Debate Intensifies Over Enabling Corepack by Default and Potentially Unbundling npm (sar/soc)99
, , , ,
Malicious npm Package Masquerades as Noblox.js, Targeting Roblox Users for Data Theft (sar/soc)98
,
GitHub, npm Registry Abused to Host SSH Key-Stealing Malware97
, , ,
Modern JavaScript Library Starter (sas)96
,
Deceptive Deprecation: The Truth About npm Deprecated Packages95
, ,
npm in Review: A 2023 Retrospective on Growth, Security, and Quirky Facts (soc)94
When “Everything” Becomes Too Much: The npm Package Chaos of 2024 (soc)93
A Comprehensive Guide to npm Workspaces and Monorepos92
, , ,
I Replaced npm, Yarn, and nvm With pnpm (paw)91
, , ,
How to Use npm Packages Outside of Node90
, ,
Secret Scanning Scans Public npm Packages (git)89
, ,
TypeScript Monorepo With npm Workspaces (skw)88
, ,
SSH Keys Stolen by Stream of Malicious PyPI and npm Packages (ble)87
, ,
Honey, I Shrunk the npm Package86
,
npm Provenance General Availability (git)85
, ,
How to Migrate From npm to pnpm84
, ,
dependency-time-machine83
, , ,
Sophisticated, Highly-Targeted Attacks Continue to Plague npm82
Publishing With npm Provenance From Private Source Repositories Is No Longer Supported (git)81
, , ,
Social Engineering Campaign Targeting Tech Employees Spreading Through npm Malware (soc)80
,
A Comprehensive Beginner’s Guide to npm: Simplifying Package Management79
,
Making the Switch: From Yarn/npm to pnpm78
,
Identify Unused npm Packages in Your Project (ami)77
,
The Massive Bug at the Heart of the npm Ecosystem76
,
Create React UI Lib: Component Library Speedrun75
, ,
npm Won’t Publish Packages Containing the Word “keygen”74
,
Comparing the Best Node.js Version Managers: nvm, Volta, and asdf73
,
npm vs. Yarn vs. pnpm72
, ,
Generating Provenance Statements71
,
Introducing npm Package Provenance (git)70
, , , ,
Dissecting npm Malware: Five Packages and Their Evil Install Scripts69
,
Understanding npm Versioning68
, ,
One in Two New npm Packages Is SEO Spam Right Now67
The Landscape of npm Packages for CLI Apps66
, ,
Automatic npm Publishing With GitHub Actions and npm Granular Tokens65
,
Why We Added package.json Support to Deno (tin/den)64
, ,
Speeding Up the JavaScript Ecosystem—npm Scripts (mar)63
, ,
Unlocking Security Updates for Transitive Dependencies With npm (git)62
, ,
Lockfile Trick: Package an npm Project With Nix in 20 Lines61
New npm Features for Secure Publishing and Safe Consumption (git)60
,
Migrating From npm to pnpm59
,
npm Security: Preventing Supply Chain Attacks (lir/sny)58
,
How to Build, Test, and Publish a TypeScript npm Package in 202257
,
Why You Should Prefer Using pnpm Over npm and Yarn?56
, ,
Use “npm query” and jq to Dig Into Your Dependencies55
, ,
Phylum Detects Active Typosquatting Campaign Targeting npm Developers54
,
depngn53
, ,
Best Practices for Creating a Modern npm Package (sny)52
Dependabot Unlocks Transitive Dependencies for npm Projects (git)51
,
4 Ways to Minimize Your Dependencies in Node.js (app)50
,
Installing and Running Node.js Bin Scripts (rau)49
,
Introducing the New npm Dependency Selector Syntax (git)48
Introducing Even More Security Enhancements to npm (git)47
,
Top 5 npm Vulnerability Scanners46
, ,
css-browser-support (5t3)45
, , ,
Imagemin Guard (j9t)44
, , , , , , , ,
Alternatives to Installing npm Packages Globally (rau)43
,
How to Migrate From Yarn/npm to pnpm42
, , ,
You May Not Need a Bundler for Your npm Library41
npm Security Update: Attack Campaign Using Stolen OAuth Tokens (git)40
, , ,
What npm Can Learn From Go39
Snyk Finds 200+ Malicious npm Packages, Including Cobalt Strike Dependency Confusion Attacks (sny)38
, ,
4 Reasons to Avoid Using “npm link”37
How to Respond to Growing Supply Chain Security Risks?36
, , ,
Update Node Dependencies Automatically, Selectively, or Incrementally35
, ,
What’s Really Going On Inside Your node_modules Folder? (soc)34
,
How to Publish Deno Modules to npm (kit/den)33
, , ,
Understanding Dependencies Inside Your package.json (nod)32
, ,
How to Fix Your Security Vulnerabilities With npm Override31
, , ,
The Basics of package.json (nod)30
, , ,
pkg.land29
, ,
GitHub’s Commitment to npm Ecosystem Security (git)28
,
Yarn vs. npm: Everything You Need to Know27
,
timefind26
,
Common npm Mistakes Every Developer Should Avoid25
npm Security Best Practices (lir/owa)24
,
Simple Monorepos via npm Workspaces and TypeScript Project References (rau)23
,
NPM Global Audit22
, , ,
What Is Node and When Should I Use It?21
,
How to Publish an Updated Version of an npm Package (spa/clo)20
,
How to Add CSS Vendor Prefixes Automatically (luk)19
, , , , , , ,
a11y-syntax-highlighting (eri)18
, ,
How to Worry About npm Package Weight (chr/css)17
Validating Dependencies in the Project With npm-check and depcheck16
, , , ,
Introducing npx: An npm Package Runner (zka)15
, ,
10 Node.js Best Practices: Enlightenment From the Node Gurus14
, , , , , , ,
Why npm Scripts? (css)13
, , , , , , ,
why-is-node-running12
,
How to Solve the Global npm Module Dependency Problem11
,
image-dimensions (sin)10
,
Learning Node.js: The “npm link”9
,
9 Quick Tips About npm8
, ,
Peer Dependencies (dom)7
,
Madge6
, ,
npm Package Download Statistics Checker5
, , , , ,
npm Dependency Visualizer4
, , , , ,
npm Package Types Checker3
, , , , , ,
npm, Yarn, and pnpm Command Converter2
, , , , ,
npm Package Size Checker1
, , , ,