Chapters
Welcome to The Changelog
0:00 to 1:01
Sponsor: Tiger Data
1:01 to 3:34
Start the show!
3:34 to 4:55
Recent npm history
4:55 to 10:07
GitHub's response
10:07 to 13:17
Trusted publishing
13:17 to 16:28
What makes it trusted
16:28 to 20:17
What they're not doing
20:17 to 22:53
Sponsor: Namespace
22:53 to 24:31
Misaligned incentives
24:31 to 27:48
One big attack away
27:48 to 31:15
How staffed is npm?
31:15 to 33:32
Is using npm still prudent?
33:32 to 37:54
Pre/post install hooks
37:54 to 47:22
Verified publishers
47:22 to 50:19
Sponsor: Squarespace
50:19 to 51:42
JSR and vlt
51:42 to 57:18
An Anthropic registry
57:18 to 1:03:24
How other ecosystems do it
1:03:24 to 1:08:36
The cool factor
1:08:36 to 1:10:07
The profit incentive
1:10:07 to 1:13:02
Nicholas' work
1:13:02 to 1:15:44
Connecting with Nicholas
1:15:44 to 1:16:51
AI: not just hype
1:16:51 to 1:19:26
Wrapping up
1:19:26 to 1:19:52
Closing thoughts
1:19:52 to 1:21:09
