Quick wins:
✓ Disable postinstall scripts
✓ Use cooldown period
✓ Immutable lockfiles
✓ 2FA on npm
Full security guide with code examples 👇
literat.dev/blog/2025-12...
#DevSec #JavaScript #npm
Quick wins:
✓ Disable postinstall scripts
✓ Use cooldown period
✓ Immutable lockfiles
✓ 2FA on npm
Full security guide with code examples 👇
literat.dev/blog/2025-12...
#DevSec #JavaScript #npm
You can check the slides here:
talk-npm-security-best-practice.netlify.app
#JavaScript #Security #npm #WebDev #SupplyChainSecurity
You can check the slides here:
talk-npm-security-best-practice.netlify.app
#JavaScript #Security #npm #WebDev #SupplyChainSecurity
Example: you don’t need Lodash anymore.
Modern JS has built-ins for most of it, and es-toolkit.dev gives you the rest - smaller, faster, typed, maintained.
📚 github.com/you-dont-need
#JavaScript #WebDev #Frontend
Example: you don’t need Lodash anymore.
Modern JS has built-ins for most of it, and es-toolkit.dev gives you the rest - smaller, faster, typed, maintained.
📚 github.com/you-dont-need
#JavaScript #WebDev #Frontend
A huge step for design systems:
• real theming support
• modern color spaces (Display P3, OKLCH)
• cross-tool + cross-platform format
Feels like the “CSS moment” for tokens.
👉 www.w3.org/community/de...
#DesignTokens #DesignSystems #WebDev #UXEngineering
A huge step for design systems:
• real theming support
• modern color spaces (Display P3, OKLCH)
• cross-tool + cross-platform format
Feels like the “CSS moment” for tokens.
👉 www.w3.org/community/de...
#DesignTokens #DesignSystems #WebDev #UXEngineering
Just fill out the recently opened State of HTML 2025 survey. 👉 survey.devographics.com/en-US/survey...
What have I discovered? 🧵
#html #web #development #survey
Just fill out the recently opened State of HTML 2025 survey. 👉 survey.devographics.com/en-US/survey...
What have I discovered? 🧵
#html #web #development #survey
👉 socket.dev/blog/npm-phi...
👉 thehackernews.com/2025/07/malw...
👉 github.com/advisories/G...
#javascript #npm #developers #web
👉 socket.dev/blog/npm-phi...
👉 thehackernews.com/2025/07/malw...
👉 github.com/advisories/G...
#javascript #npm #developers #web
#typescript #error #web #dev #todayilearn #til
#typescript #error #web #dev #todayilearn #til
So take the survey :-)
survey.devographics.com/en-US/survey...
So take the survey :-)
survey.devographics.com/en-US/survey...
#FreeJavaScript
deno.com/blog/deno-v-...
#FreeJavaScript
deno.com/blog/deno-v-...
www.youtube.com/watch?v=NBDn...
www.youtube.com/watch?v=NBDn...
Master best practices:
🛠️ consistent naming
🛠️ organized namespaces
🛠️ tools like npm-run-all
🛠️ clear lifecycle hooks
#webdev #coding #bestpractice #npm #javascript
literat.dev/blog/2024-12...
Master best practices:
🛠️ consistent naming
🛠️ organized namespaces
🛠️ tools like npm-run-all
🛠️ clear lifecycle hooks
#webdev #coding #bestpractice #npm #javascript
literat.dev/blog/2024-12...
new killer usecase: using it for react 19 refs to prevent returning a non-function
new killer usecase: using it for react 19 refs to prevent returning a non-function
Connect Bluesky
Enter your Bluesky handle and app password to unlock posting, likes, and your Following feed.
Need an app password? Open Bluesky, go to Settings > App passwords, and create a new one.
Connect with Bluesky
Sign in with your Bluesky account to unlock posting, likes, and your Following feed.