634
you are viewing a single comment's thread
view the rest of the comments

It's an imported library, since when are devs expected to be inspecting the source code of every library they import?

[-] yessikg@fedia.io 5 points 2 days ago

Since forever? Don't you do security audits on the libraries you use?

One person from the team, maybe. You don't have every single dev read every line of code in the libraries, which is what is being specified here

[-] sakuraba@lemmy.ml 5 points 2 days ago

it used to be a thing but javascript npm brainrot happened

this post was submitted on 29 May 2026
634 points (100.0% liked)

Technology

85060 readers
3122 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS