Fetch dependencies? Aaaaaah!
Fetch dependencies? Aaaaaah!
Posted Sep 13, 2021 5:51 UTC (Mon) by LtWorf (subscriber, #124958)In reply to: Fetch dependencies? Aaaaaah! by mirabilos
Parent article: Cro: Maintain it With Zig
Hehehe, npm packages.
Some weird stuff I found inside js packages:
* .c and .h files (why??)
* .py files
* A library made by a tiny js file, coming with HTML documentation, and a 5MiB example image of a coffee cup.
* windows exe files
* fonts
* configuration files for every possible IDE and editor
I too do not trust languages that autodownload stuff. Plus the build agents are harder to secure.
