LibreTechni.ca
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
codeinabox@programming.dev to Programming@programming.devEnglish · 2 days ago

Every dependency you add is a supply chain attack waiting to happen

benhoyt.com

external-link
message-square
25
fedilink
157
external-link

Every dependency you add is a supply chain attack waiting to happen

benhoyt.com

codeinabox@programming.dev to Programming@programming.devEnglish · 2 days ago
message-square
25
fedilink
Dependencies are a huge supply chain security risk; the more of them you have, and the more often you update, the bigger the attack surface.
  • shnizmuffin@lemmy.inbutts.lol
    link
    fedilink
    English
    arrow-up
    3
    ·
    2 days ago

    Implementing reactivity is a non-trivial task. With Alpine, you get Vue’s without the rest of Vue.

    • MonkderVierte@lemmy.zip
      link
      fedilink
      arrow-up
      5
      ·
      edit-2
      23 hours ago

      Yeah ok.

      To be fair, i have 3rd-party frames and js blocked on mobile. But cmon, not even the close button works without 3rd-party.

      I’m rusted, but even i could implement that one properly in html and css only in half a hour.

      • shnizmuffin@lemmy.inbutts.lol
        link
        fedilink
        English
        arrow-up
        1
        ·
        13 hours ago

        If you’re judging the website of a JS library by how it performs without JS, I’m not sure I can help you.

        Without third party

        Can you share the sources you blocked?

    • aegg@europe.pub
      link
      fedilink
      English
      arrow-up
      1
      ·
      20 hours ago

      WebComponents is a standard api and actually very simple.

      • shnizmuffin@lemmy.inbutts.lol
        link
        fedilink
        English
        arrow-up
        1
        ·
        13 hours ago

        I’ve written my fair share! Unfortunately, clients ask for dumb shit all the time and Alpine is fast and cheap.

Programming@programming.dev

programming@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !programming@programming.dev

Welcome to the main community in programming.dev! Feel free to post anything relating to programming here!

Cross posting is strongly encouraged in the instance. If you feel your post or another person’s post makes sense in another community cross post into it.

Hope you enjoy the instance!

Rules

Rules

  • Follow the programming.dev instance rules
  • Keep content related to programming in some way
  • If you’re posting long videos try to add in some form of tldr for those who don’t want to watch videos

Wormhole

Follow the wormhole through a path of communities !webdev@programming.dev



Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 126 users / day
  • 1.68K users / week
  • 3.67K users / month
  • 7.89K users / 6 months
  • 1 local subscriber
  • 26.4K subscribers
  • 799 Posts
  • 7.38K Comments
  • Modlog
  • mods:
  • snowe@programming.dev
  • Ategon@programming.dev
  • UlrikHD@programming.dev
  • bugsmith@programming.dev
  • Spyro@programming.dev
  • BE: 0.19.5
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org