30/01/2018
This is a fascinating and scary article to read. It's a bit on the technical side, but the implications concern all of us on the web - especially those of us who develop for it. I think the main take away is that you should use npm dependencies, but certainly be aware of what's going into your project. There are very good audit tools you can use to check your dependencies and see what's going in / on.
The following is a true story. Or maybe it’s just based on a true story. Perhaps it’s not true at all.