this post was submitted on 11 Aug 2025
85 points (97.8% liked)

Open Source

40110 readers
289 users here now

All about open source! Feel free to ask questions, and share news, and interesting stuff!

Useful Links

Rules

Related Communities

Community icon from opensource.org, but we are not affiliated with them.

founded 6 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[โ€“] stsquad@lemmy.ml 9 points 2 weeks ago* (last edited 2 weeks ago) (1 children)

I've long avoided npm but attacks on PyPi are a worry.

[โ€“] helloworld@lemmy.ml 1 points 20 hours ago

If you are paranoid enough: Run all pypi packages in a QubesOs virtual machine I guess?