Skip to content

Vendor dependencies#2

Open
cmcaine wants to merge 1 commit into
rague:mainfrom
cmcaine:vendor
Open

Vendor dependencies#2
cmcaine wants to merge 1 commit into
rague:mainfrom
cmcaine:vendor

Conversation

@cmcaine
Copy link
Copy Markdown

@cmcaine cmcaine commented Apr 11, 2025

Supply-chain attacks are harder if dependencies are vendored. And this also cuts down the number of servers that the code talks to.

Supply-chain attacks are harder if our dependencies are vendored.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant