Join us

ContentUpdates and recent posts about npm..
 Activity
@devopslinks added a new tool Grype , 5 months ago.
 Activity
@kaptain added a new tool Hadolint , 5 months ago.
 Activity
@varbear added a new tool Bandit , 5 months ago.
 Activity
@devopslinks added a new tool JFrog Xray , 5 months ago.
 Activity
@devopslinks added a new tool OWASP Dependency-Check , 5 months ago.
 Activity
@varbear added a new tool pre-commit , 5 months ago.
 Activity
@devopslinks added a new tool GitGuardian , 5 months ago.
 Activity
@devopslinks added a new tool detect-secrets , 5 months ago.
 Activity
@devopslinks added a new tool Gitleaks , 5 months ago.
Course
@eon01 published a course, 5 months ago
Founder, FAUN.dev

DevSecOps in Practice

TruffleHog Flask NeuVector detect-secrets pre-commit OWASP Dependency-Check Docker checkov Bandit Hadolint Grype KubeLinter Syft GitLab CI/CD Trivy Kubernetes

A Hands-On Guide to Operationalizing DevSecOps at Scale

DevSecOps in Practice
npm (Node Package Manager) is the primary package manager for JavaScript and the default package distribution platform for Node.js. It hosts the world’s largest software registry, containing millions of open-source packages used across web development, backend services, CLIs, build tools, and modern JavaScript frameworks.

Developers use npm to install libraries, manage project dependencies, and publish their own packages. It supports semantic versioning, dependency resolution, scoped packages, and audit features for identifying vulnerabilities. npm also provides organizational tools, including workspaces for monorepos, private package hosting, and automation through `npm scripts`.

As a central pillar of the JavaScript ecosystem, npm plays a critical role in the software supply chain, enabling rapid innovation but also introducing security challenges such as dependency confusion, malicious package uploads, and large-scale supply chain attacks. Its integration with Node.js and widespread adoption make it a foundational component of modern JavaScript development.