Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Noticed that after ten mins, contacted author immediatly and he seems to be working on it / restoring his account / removing malware on published packages.

Kinda "proud" on it haha :D



Doesn’t npmjs do things like signing, pinning, and yanking packages, like rubygems?


Yes




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: