What’s New

GitHub — npm publish-time malware scanning and dual-use metadata

npm publish-time malware scanning and dual-use metadata

As part of our ongoing supply-chain security work, npm is introducing automatic scanning of packages at publish time. This changelog covers what publishers can expect and a new metadata requirement… T…

View original