Hacker News new | past | comments | ask | show | jobs | submit login

The least they can do is create an alias system for common libs or disallow some lib names.

Another easy thing to implement would be a popularity check: "This package was only installed nnn times. Did you mean xxx, or do you want to proceed with the installation of yyy by author dev@g00gle.com?"

Email verification is a must.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: