Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> packages published to npm are immutable.

Depends how you'd refer to them... tags ("@latest", "@next" etc.) are not immutable and it's best to rely on the checksums in the lock file.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: