Every dependency you add is a supply chain attack waiting to happen(benhoyt.com)4 points by benhoyt 46 days ago | 1 comment