codeinabox@programming.dev to Programming@programming.devEnglish · 18 days agoEvery dependency you add is a supply chain attack waiting to happenbenhoyt.comexternal-linkmessage-square30linkfedilinkarrow-up145arrow-down11cross-posted to: technology@lemmy.world
arrow-up144arrow-down1external-linkEvery dependency you add is a supply chain attack waiting to happenbenhoyt.comcodeinabox@programming.dev to Programming@programming.devEnglish · 18 days agomessage-square30linkfedilinkcross-posted to: technology@lemmy.world
minus-squareBB_C@programming.devlinkfedilinkarrow-up1·14 days agoI will let you expand on this before responding to both: And also, cargo.toml has inconsistencies and double-standards.
I will let you expand on this before responding to both: