Worrying About The Npm Ecosystem

- Sam Bleckley tl;dr: With over a million packages, it's impossible to establish security with dependency trees stretching ten or more levels deep." Sam suggest this is "a social problem" and proposes a "semi-social solution."

featured in #189

NPM Is Joining GitHub

- Nat Friedman tl;dr: "Npm is a critical part of the JavaScript world. The work of the npm team over the last 10 years, and the contributions of hundreds of thousands of open source developers and maintainers, have made npm home to over 1.3 million packages with 75 billion downloads a month."

featured in #177