Ask HN: How do you security-audit external software using NPM packages? | Dark Hacker News