Forem

npm

Node Package Manager

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
ライブラリのpatch

ライブラリのpatch

Comments
1 min read
node24 warning

node24 warning

Comments
1 min read
Use madge to generate dependencies for frontend project

Use madge to generate dependencies for frontend project

Comments
1 min read
Your response to the Shai-Hulud supply chain attack
Cover image for Your response to the Shai-Hulud supply chain attack

Your response to the Shai-Hulud supply chain attack

6
Comments
4 min read
Launching My First Open-Source Project: A React Editor

Launching My First Open-Source Project: A React Editor

Comments
1 min read
VSCode の拡張機能のバージョンを固定し、指定以外を無効化する方法

VSCode の拡張機能のバージョンを固定し、指定以外を無効化する方法

Comments
3 min read
Shai-Hulud: a self-propagating npm worm hits @ctrl/tinycolor and dozens more packages

Shai-Hulud: a self-propagating npm worm hits @ctrl/tinycolor and dozens more packages

2
Comments
2 min read
Why Debian packages are safer then NPM and PyPi
Cover image for Why Debian packages are safer then NPM and PyPi

Why Debian packages are safer then NPM and PyPi

Comments
3 min read
Facing the Shai-Hulud Worm: Where the Hell is Easystreet?

Facing the Shai-Hulud Worm: Where the Hell is Easystreet?

16
Comments 4
6 min read
Examining the impact of npm supply chain attacks on MCP

Examining the impact of npm supply chain attacks on MCP

5
Comments
3 min read
Want suggestions on my npm package

Want suggestions on my npm package

Comments 1
1 min read
Publish your packages to NPM automatically with GitHub Actions
Cover image for Publish your packages to NPM automatically with GitHub Actions

Publish your packages to NPM automatically with GitHub Actions

Comments
3 min read
Node.js Installation Guide

Node.js Installation Guide

Comments
3 min read
Introducing colorific-magic: Enhance Your Console Logs with Stunning Colors

Introducing colorific-magic: Enhance Your Console Logs with Stunning Colors

5
Comments
2 min read
The Largest NPM Supply Chain Attack of 2025: A Deep Dive into the Compromise of Billions of Downloads
Cover image for The Largest NPM Supply Chain Attack of 2025: A Deep Dive into the Compromise of Billions of Downloads

The Largest NPM Supply Chain Attack of 2025: A Deep Dive into the Compromise of Billions of Downloads

16
Comments 4
5 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.