logoalt Hacker News

smlavinetoday at 6:28 PM2 repliesview on HN

All dependency management is speculative. You've got to hedge your bets that the dependency is reliable and fit for purpose. It is reasonable to view Bun's recent choices as increasing the risk associated with depending on it.


Replies

popinman322today at 6:41 PM

Very much agree. Until the vibe-coded version has been fully audited and profiled to perform, within reasonable tolerances, as well as the original code base, it feels like a bad idea to support it downstream or use it in production.

show 3 replies
doug_durhamtoday at 7:41 PM

Really?? So you base your engineer in "speculation". The Bun team has a deep track record of delivering a high quality product. What makes you think that is going to stop?

show 2 replies