Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
#
supplychain
Follow
Hide
Posts
Left menu
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
Ahmad Kanj
Ahmad Kanj
Ahmad Kanj
Follow
for
AWS Community Builders
May 8
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
#
security
#
devsecops
#
githubactions
#
supplychain
Comments
Add Comment
28 min read
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
Ahmad Kanj
Ahmad Kanj
Ahmad Kanj
Follow
for
AWS Community Builders
May 8
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
#
security
#
devsecops
#
githubactions
#
supplychain
Comments
Add Comment
28 min read
Add Real Business Trust Signals to Claude Desktop in 60 Seconds
Pico
Pico
Pico
Follow
May 8
Add Real Business Trust Signals to Claude Desktop in 60 Seconds
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
2 min read
Add Trust Scoring to Your CI Pipeline in 5 Minutes
Pico
Pico
Pico
Follow
May 8
Add Trust Scoring to Your CI Pipeline in 5 Minutes
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
3 min read
AGENTS.md moved AI performance up a model tier. Package trust needs the same.
Pico
Pico
Pico
Follow
May 8
AGENTS.md moved AI performance up a model tier. Package trust needs the same.
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
2 min read
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
Ahmad Kanj
Ahmad Kanj
Ahmad Kanj
Follow
for
AWS Community Builders
May 8
Twelve Trust Boundaries: A Field Guide to Supply-Chain Defense After axios@1.14.1
#
security
#
devsecops
#
axios
#
supplychain
1
 reaction
Comments
Add Comment
29 min read
How to Choose a PCB Manufacturer – A Practical Guide for Hardware Engineers
Maggie‌ Wang@AnyPCBA
Maggie‌ Wang@AnyPCBA
Maggie‌ Wang@AnyPCBA
Follow
for
AnyPCBA
May 6
How to Choose a PCB Manufacturer – A Practical Guide for Hardware Engineers
#
pcbmanufacturing
#
hardwareengineering
#
supplychain
#
smallbatch
Comments
Add Comment
4 min read
MCPwn Is Live. We Scanned the Supply Chains of 14 MCP Servers. Here's What We Found.
Pico
Pico
Pico
Follow
May 5
MCPwn Is Live. We Scanned the Supply Chains of 14 MCP Servers. Here's What We Found.
#
security
#
mcp
#
supplychain
#
javascript
Comments
Add Comment
5 min read
One Year of Liberation Day: What the Tariff Rollout Actually Revealed About AI Infrastructure
David Aronchick
David Aronchick
David Aronchick
Follow
May 5
One Year of Liberation Day: What the Tariff Rollout Actually Revealed About AI Infrastructure
#
ai
#
infrastructure
#
supplychain
#
distributedcomputing
Comments
Add Comment
8 min read
161 verified AI package hallucinations across 8.5M indexed — open dataset
Vincenzo Rubino
Vincenzo Rubino
Vincenzo Rubino
Follow
May 4
161 verified AI package hallucinations across 8.5M indexed — open dataset
#
ai
#
security
#
supplychain
#
mcp
Comments
Add Comment
4 min read
Proof-of-Commitment Internals: How the Scoring Algorithm Works
Pico
Pico
Pico
Follow
May 8
Proof-of-Commitment Internals: How the Scoring Algorithm Works
#
npm
#
security
#
javascript
#
supplychain
1
 reaction
Comments
Add Comment
6 min read
Four MCP packages, four ways the supply chain shifted in two weeks of npm monitoring
Michael Kayode Onyekwere
Michael Kayode Onyekwere
Michael Kayode Onyekwere
Follow
May 1
Four MCP packages, four ways the supply chain shifted in two weeks of npm monitoring
#
security
#
supplychain
#
mcp
#
npm
Comments
Add Comment
7 min read
Slopsquatting in Python: What 205,474 Hallucinated Package Names Mean for Your Supply Chain
Sour durian
Sour durian
Sour durian
Follow
Apr 30
Slopsquatting in Python: What 205,474 Hallucinated Package Names Mean for Your Supply Chain
#
python
#
security
#
ai
#
supplychain
Comments
Add Comment
8 min read
I built chainscope: reading supply chain attacks across 6 surfaces, one slide at a time
kt
kt
kt
Follow
Apr 29
I built chainscope: reading supply chain attacks across 6 surfaces, one slide at a time
#
showdev
#
security
#
supplychain
Comments
Add Comment
7 min read
SLSA Provenance Hands-on: Generate with GitHub Actions, Verify with slsa-verifier
kt
kt
kt
Follow
Apr 29
SLSA Provenance Hands-on: Generate with GitHub Actions, Verify with slsa-verifier
#
security
#
supplychain
#
slsa
#
sigstore
Comments
Add Comment
11 min read
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account