DEV Community

npm

Node Package Manager

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
What We Actually Did About npm Supply Chain Attacks

What We Actually Did About npm Supply Chain Attacks

Comments
7 min read
Shipping archkit v0.1: a TypeScript Clean Architecture scaffolder built in one Claude Code session

Shipping archkit v0.1: a TypeScript Clean Architecture scaffolder built in one Claude Code session

Comments
7 min read
I Built My First npm Package — A CLI for Scaffolding Modular Node.js Projects

I Built My First npm Package — A CLI for Scaffolding Modular Node.js Projects

1
Comments
3 min read
npm Scripts and package.json: The Complete Guide (2026)

npm Scripts and package.json: The Complete Guide (2026)

1
Comments
5 min read
Angular 21 Multiselect Dropdown: A Migration-Friendly Component with Live Functional Tests

Angular 21 Multiselect Dropdown: A Migration-Friendly Component with Live Functional Tests

Comments
9 min read
I Built ShellReq - A Native API Client for VS Code & Terminal

I Built ShellReq - A Native API Client for VS Code & Terminal

Comments
2 min read
Architectural Collapse: How Extension Poisoning, Node Vulnerabilities, and Infrastructure Fog Enabled the GitHub Repository Breach

Architectural Collapse: How Extension Poisoning, Node Vulnerabilities, and Infrastructure Fog Enabled the GitHub Repository Breach

Comments
5 min read
The File Problems Every React Native App Eventually Hits

The File Problems Every React Native App Eventually Hits

Comments
5 min read
An npm Downloads Comparison Chart in 300 Lines of Vanilla JS — Nice-Tick Math and API-Direct Fetch

An npm Downloads Comparison Chart in 300 Lines of Vanilla JS — Nice-Tick Math and API-Direct Fetch

Comments
5 min read
Bumblebee vs OSV-Scanner: Two Takes on Supply Chain Scanning

Bumblebee vs OSV-Scanner: Two Takes on Supply Chain Scanning

1
Comments
4 min read
14,000 Python Developers Installed My Go Binary via pip. Here's How.

14,000 Python Developers Installed My Go Binary via pip. Here's How.

Comments 1
4 min read
Publishing a reusable React UI package as an npm module

Publishing a reusable React UI package as an npm module

Comments
1 min read
GitHub confirms internal repository breach via poisoned VS Code extension

GitHub confirms internal repository breach via poisoned VS Code extension

1
Comments
2 min read
Why You Shouldn't Run npm install in Production Containers

Why You Shouldn't Run npm install in Production Containers

Comments
2 min read
npm Supply Chain Audit: The Checklist Most Teams Stop Too Early

npm Supply Chain Audit: The Checklist Most Teams Stop Too Early

Comments
6 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.