staged-publishing

Tag

Cards List
#staged-publishing

Staged publishing and new install-time controls for npm

Hacker News Top · 2026-05-22 Cached

npm introduces staged publishing, requiring human approval via 2FA for package releases, and new `--allow-*` flags (file, remote, directory) to control install sources, improving supply-chain security in npm CLI 11.15.0.

0 favorites 0 likes
#staged-publishing

Staged publishing for npm packages

Lobsters Hottest · 2026-05-20 Cached

npm introduces staged publishing, allowing package updates to be reviewed and approved with 2FA before going live on the registry, enhancing security for package maintainers.

0 favorites 0 likes
← Back to home

Submit Feedback