Hacker Newsnew | past | comments | ask | show | jobs | submit | fromlogin
Lockfile Format Design and Tradeoffs (nesbitt.io)
1 point by 7777777phil 2 hours ago | past | discuss
Reducing Dependabot Noise (nesbitt.io)
64 points by zdw 6 days ago | past | 44 comments
Best Practices for Reducing Dependabot Noise (nesbitt.io)
1 point by todsacerdoti 7 days ago | past | discuss
Brew-vulns: CVE scanning for Homebrew (nesbitt.io)
4 points by chmaynard 10 days ago | past | discuss
The Package Management Landscape (nesbitt.io)
4 points by tqpcharlie 10 days ago | past | 1 comment
The Nine Levels of JavaScript Dependency Hell (nesbitt.io)
2 points by tqpcharlie 10 days ago | past | 1 comment
Git-pkgs: explore your dependency history (nesbitt.io)
1 point by riffraff 12 days ago | past | discuss
How dependabot works (nesbitt.io)
73 points by zdw 15 days ago | past | 14 comments
Git-pkgs: explore your dependency history (nesbitt.io)
4 points by chmaynard 16 days ago | past
How to Ruin All of Package Management (nesbitt.io)
2 points by birdculture 18 days ago | past
Community Tools Bring Lockfile Support to GitHub Actions (nesbitt.io)
3 points by emschwartz 19 days ago | past
How to Ruin All of Package Management (nesbitt.io)
4 points by progval 19 days ago | past
Categorizing Package Registries (nesbitt.io)
2 points by zdw 20 days ago | past
Cursed Bundler: Using Go Get to Install Ruby Gems – Andrew Nesbitt (nesbitt.io)
2 points by hboon 21 days ago | past
Why JavaScript Needed Docker (nesbitt.io)
2 points by ArmageddonIt 22 days ago | past
How to Ruin All of Package Management (nesbitt.io)
7 points by gpi 22 days ago | past
Cursed Bundler: Using go get to install Ruby Gems (nesbitt.io)
26 points by SPBS 22 days ago | past | 3 comments
How uv got so fast (nesbitt.io)
1290 points by zdw 23 days ago | past | 459 comments
Package managers keep using Git as a database, it never works out (nesbitt.io)
784 points by birdculture 23 days ago | past | 465 comments
Package managers keep using Git as a database, it never works out (nesbitt.io)
2 points by WhyNotHugo 24 days ago | past | 2 comments
Package managers keep using Git as a database, it never works out (nesbitt.io)
5 points by zdw 25 days ago | past | 1 comment
Could lockfiles just be SBOMs? (nesbitt.io)
77 points by zdw 25 days ago | past | 62 comments
Federated Package Management and the Zooko Triangle (nesbitt.io)
4 points by zdw 28 days ago | past
Typosquatting in Package Managers (nesbitt.io)
2 points by zdw 31 days ago | past | 1 comment
How I Assess Open Source Libraries (nesbitt.io)
2 points by gpi 32 days ago | past
Why I'm Fascinated by Package Management (nesbitt.io)
3 points by ryangibb 39 days ago | past
GitHub Actions has a package manager, and it might be the worst (nesbitt.io)
444 points by robin_reala 41 days ago | past | 262 comments
GitHub Actions Has a Package Manager, and It Might Be the Worst (nesbitt.io)
3 points by mperham 42 days ago | past | 1 comment
Package Manager Design Tradeoffs (nesbitt.io)
2 points by todsacerdoti 42 days ago | past
GitHub Actions Has a Package Manager, and It Might Be the Worst (nesbitt.io)
20 points by todsacerdoti 43 days ago | past | 2 comments

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: