Replies: 1 comment
-
This is an issue for npm, not Node.js. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Given that unscoped packages are more vulnerable to spoofing, would be good to deprecate them.
Went ahead and prototyped a linter to warn on unscoped packages:
https://github.com/mcandre/periscope
Beta Was this translation helpful? Give feedback.
All reactions