Forem

npm

Node Package Manager

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
genkode — Random ID & String Generator for Node.js

genkode — Random ID & String Generator for Node.js

Comments
4 min read
The Axios npm Supply Chain Attack (March 2026): A 2-Second Breach Window That Compromised the JavaScript Ecosystem
Cover image for The Axios npm Supply Chain Attack (March 2026): A 2-Second Breach Window That Compromised the JavaScript Ecosystem

The Axios npm Supply Chain Attack (March 2026): A 2-Second Breach Window That Compromised the JavaScript Ecosystem

5
Comments
5 min read
I got tired of guessing semver bumps in PRs, so I built a tool
Cover image for I got tired of guessing semver bumps in PRs, so I built a tool

I got tired of guessing semver bumps in PRs, so I built a tool

1
Comments
2 min read
I Built an npm Package That Makes Every Function Fail — With Inspirational Quotes and Enterprise-Grade Error Boxes 🫖

I Built an npm Package That Makes Every Function Fail — With Inspirational Quotes and Enterprise-Grade Error Boxes 🫖

1
Comments
4 min read
[Axios Hacked] How .npmrc Can Protect Your Node.js Projects from Supply Chain Attacks??
Cover image for [Axios Hacked] How .npmrc Can Protect Your Node.js Projects from Supply Chain Attacks??

[Axios Hacked] How .npmrc Can Protect Your Node.js Projects from Supply Chain Attacks??

6
Comments 2
2 min read
Your browser speaks 200+ languages.
Cover image for Your browser speaks 200+ languages.

Your browser speaks 200+ languages.

Comments
4 min read
The Axios NPM Package Compromise: Lessons for Startups and Tech Firms

The Axios NPM Package Compromise: Lessons for Startups and Tech Firms

1
Comments 2
5 min read
🚀 Candy Logger v2 is here — a browser logger with a real UI
Cover image for 🚀 Candy Logger v2 is here — a browser logger with a real UI

🚀 Candy Logger v2 is here — a browser logger with a real UI

1
Comments
2 min read
Why bcrypt Is Not Enough in 2026 And What We Built Instead

Why bcrypt Is Not Enough in 2026 And What We Built Instead

2
Comments
9 min read
NPM Archaeology: 5 Years in the Ground, Still Breathing
Cover image for NPM Archaeology: 5 Years in the Ground, Still Breathing

NPM Archaeology: 5 Years in the Ground, Still Breathing

2
Comments
4 min read
CanisterWorm Malware Wipes Data on Iranian Machines via Compromised npm Packages and ICP Canisters

CanisterWorm Malware Wipes Data on Iranian Machines via Compromised npm Packages and ICP Canisters

1
Comments 1
7 min read
pnpm vs npm vs yarn vs bun: The Real Comparison Nobody Gives You in 2025
Cover image for pnpm vs npm vs yarn vs bun: The Real Comparison Nobody Gives You in 2025

pnpm vs npm vs yarn vs bun: The Real Comparison Nobody Gives You in 2025

Comments
6 min read
Lock Files and Package Manager Migration: A Practical Risk Analysis

Lock Files and Package Manager Migration: A Practical Risk Analysis

Comments
9 min read
From Chaos to Control: Multiple Node.js Environments with Multi-Env CLI

From Chaos to Control: Multiple Node.js Environments with Multi-Env CLI

1
Comments
3 min read
Detecting Event Loop Blocking in Production Node.js — Without Touching Your Code

Detecting Event Loop Blocking in Production Node.js — Without Touching Your Code

1
Comments 1
7 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.