Tag: JavaScript
Microsoft Engineers Highlight Git Repository Bloat Flaw
A Git functionality shortcoming means Git calculates changes between different versions of the same file, which ultimately creates repository bloat through the excess storage requirements that result ...
Open-Source Software Community Riled by Yet Another CVE
Another maintainer of an open-source software project has decided to no longer actively update IP address parsing utilities used widely by JavaScript developers ...
Polyfill Becomes a Supply-Chain Risk to 100,000 Websites
A Chinese company in February bought the domain and GitHub account for Polyfill, a popular open-source library used by more than 100,000 websites to deliver JavaScript code ...
Steady On. We Still Have a Job to Do
AI-generated change is not significantly different than the last couple decades where change has become IT’s constant companion ...
Dev of core-js Will Flip Table ¦ Another 451 PyPI Maldeps
In this week’s #TheLongView: Denis Pushkarev is fed up with core-js freeloaders, and hundreds more malicious packages found at PyPI ...
A DevSecOps Process for Node.js Projects
Node.js is an open source development platform for running JavaScript code on the server side. Node is useful for developing applications that require a persistent browser-server connection and is often used for ...
Best of 2022: We Must Kill ‘Dinosaur’ JavaScript | Microsoft Open Sources 3D Emoji
In this week’s The Long View: JavaScript is a bloated barrier to progress, and Microsoft’s emoji are on GitHub ...
AppSmith Adds Git Support to Low-Code App Dev Framework
AppSmith has added support for Git repositories to an open source framework for building custom applications using a low-code platform based on the JavaScript programming language. Rishabh Kaul, head of marketing for ...
Stytch Launches New, Flexibility-First SDK
Passwordless solutions have been a trend for a while now, improving user experience (UX) while reducing exposure to common attack vectors. Now, Stytch’s new JavaScript SDK aims to make password-free authentication a ...
NPMs Sabotaged as OSS Sustainability Crisis Continues
A long-simmering debate over the sustainability of smaller open source projects moved beyond the theoretical when two widely used open source node packaged modules (npm) were deliberately sabotaged this week, allegedly by ...
Vercel Acquires Turborepo to Gain Build System
Vercel today announced it has acquired Turborepo, a provider of a build system for JavaScript and TypeScript applications that provides developers with access to an easy-to-use monorepository for their code. In the ...
Is TypeScript the New JavaScript?
While JavaScript is frequently the language of choice for all sizes of frontend and backend applications, it’s not the only option; nor is it necessarily the most efficient or cost-effective. Increasingly, TypeScript ...