Reply to post: Why is there no secure npm?

npm uninstall co-founder --global: Laurie Voss rides off into the sunset waving goodbye

cdrcat

Why is there no secure npm?

I want to use some of the build tools, but there is no way to judge if packages are secure.

Presumably many organisations are vetting code they use, so many packages have been checked, but the information is not public...

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon