logoalt Hacker News

eliyesterday at 5:45 PM1 replyview on HN

And all that just to allow internet access for npm and pypi? If you've got the bandwidth and disk space, it's very easy to make an offline mirror of both.


Replies

essephyesterday at 9:40 PM

Their artifactory is both a package cache and CVE scanner.

The package cache is allowed to download packages directly from npm but other systems in that network won't be able to.

Basically the LLMs hacked the bastion host.