Mastodon Feed: Post

Mastodon Feed

Boosted by jwz:
jschauma@mstdn.social ("Jan Schaumann") wrote:

Re-posting due to current events.

The secret language of coders, part N of many. Today: "npm"

A table mapping "npm" to "possible meaning": a package manager for javascript a public registry for javascript packages using pm the package manager a company owned by GitHub owned by Microsoft that owns pm the registry for use with pm the package manager much like git a command you run by pasting random invocations from Stackoverflow into your terminal one of the reasons your prod systems call out to the internet regularly what you mirror from the internet (without any additional checks) so that your prod systems don't call out to the internet like a box of chocolates: you never know what you're gonna get a surprisingly effective method to accidentally take down half the internet a dictionary of supply-chain attack vectors "signed packages" - what's that? infosec for "right here, there's your problem" one of the many reasons I drink