logoalt Hacker News

jacquesmyesterday at 11:36 AM1 replyview on HN

Sorry, but that had me laughing out loud.

No, they haven't.

I should know, I check those companies for a living. This is one of the most often flagged issues: unaudited Node.js dependencies. "Oh but we don't have the manpower to do that, think about how much code that is".


Replies

DamonHDyesterday at 12:12 PM

When I last looked (as a consulting dev in a bank or three, horrified) absolutely they had not!

show 1 reply