Safe Chain prevents developers from installing malware

4 danfritz 1 9/18/2025, 10:10:47 AM npmjs.com ↗

Comments (1)

move-on-by · 1m ago
I think it’s a valiant effort, but misses the forest for the trees.

It’s another dependency - which comes with 6 more dependencies. One of which is ‘Chalk’, which was one of the recently malware-infected packages. Unless it’s a joke, and the Chalk dependency is just the punchline.