Skip to main content Sebastian Schürmann

Software Supply-Chain Security

The code you did not write is still your problem. Attacks on npm and package registries, keeping dependency trees small, and what regulation like the Cyber Resilience Act means for open source.

8 posts on this topic, newest first.