Aube: A fast Node.js package manager(github.com) |
Aube: A fast Node.js package manager(github.com) |
It's not feasible to believe we can just disable post-install scripts since so many older packages rely on these. Having them contained to avoid dubious scripts seems like the next best solution.
Benchmarks seem to be missing them at the moment, would be a useful thing to understand why I'd want Aube over others!
Thanks for adding more ideas into the space, love the work of mise!
I'm still opening pnpm-behavior bug reports against aube daily (boo) but they are getting fixed very quickly (yay). I'm really looking forward to seeing if it's worth rolling out once he catches up with the long tail of subtle behaviors we rely on.
Again, pnpm sets a high bar, so even if aube ends up getting faster, it's not a sure thing.