A new npm / package registry signed with nostr keys
Inspired by @aljaz post on @Stacker News
@Dustin Dannenhauer @franzap @npub1kuy0...kdj8 @npub1ug8c...d9ry @Mat @Moritz @bumi @Alby @Ben Arc
Then you add in the split payments with lightning/cashu, which @Alby already has working (I think?)!
Stacker News
Tinycolor npm Package Compromised in (another) Supply Chain Attack \ stacker news
@aljaz stacked 953 sats posting https://socket.dev/blog/tinycolor-supply-chain-attack-affects-40-packages [3 comments]








