logoalt Hacker News

arczayesterday at 10:33 PM3 repliesview on HN

Wild claim that setting the minimum age to 7 days will result in me "never" getting a supply chain npm vuln.


Replies

andixyesterday at 10:55 PM

In this case it would have, because the compromised packages were pulled within 3 hours.

show 2 replies
pastel8739yesterday at 11:04 PM

There is a “fresh” in there