vldszn 3 hours ago
tiffanyh 2 hours ago
I ask because I don’t see anything posted on their official blog or status page.
uzyn 3 hours ago
I can understand the rationale, this feels lighter and not something that belongs on status.github.com or the blog. Maybe what's actually missing is an official channel for ephemeral stuff on a domain they own, somewhere between a status page and a tweet? Just sharing an observation.
keyle 2 hours ago
For a Fortune 100, to go out of your way to spook investors is the least desirable approach.
bananamogul 25 minutes ago
vldszn 4 hours ago
- set locally: pnpm config set minimum-release-age 4320 # 3 days in minutes https://pnpm.io/supply-chain-security for other package managers check: https://gist.github.com/mcollina/b294a6c39ee700d24073c0e5a4e...
- add Socket Free Firewall when installing npm packages on CI https://docs.socket.dev/docs/socket-firewall-free#github-act...
buryat an hour ago
dijksterhuis 3 hours ago
shevy-java 6 minutes ago
MallocVoidstar 2 hours ago
All of their repos have been copied and are up for sale. Attackers are TeamPCP, the creators of the Shai-Hulud malware.
killingtime74 2 hours ago
mstank 4 hours ago
starkeeper 21 minutes ago
3 hours ago
Comment deletedsurrTurr 2 hours ago
waynesonfire 3 hours ago
jonnyasmar 4 hours ago
syngrog66 3 hours ago
kiernanmcgowan 4 hours ago