vlt /vōlt/

101 posts

vlt /vōlt/ banner
vlt /vōlt/

vlt /vōlt/

@vltpkg

We are building the future of JavaScript packages.

Katılım Mart 2023
240 Takip Edilen1.4K Takipçiler
vlt /vōlt/ retweetledi
Darcy Clarke
Darcy Clarke@darcy·
While others race away from Open Source, @vltpkg is doubling down. 🖤⚡ Today we’re announcing our renewed commitment to @ThePledge and investing back into the ecosystem. vlt.io/blog/doubling-…
Toronto, Ontario 🇨🇦 English
1
5
11
712
vlt /vōlt/ retweetledi
Darcy Clarke
Darcy Clarke@darcy·
📖 This article by @sarahgooding at @SocketSecurity highlights a concerning trend (ref. socket.dev/blog/attackers…) 📕 Story time: this kind of supply chain targeting isn't unique. I myself & everyone on our team @vltpkg have been the targets of consistent, concerted efforts.
Mississauga, Ontario 🇨🇦 English
2
4
16
3.1K
vlt /vōlt/ retweetledi
Darcy Clarke
Darcy Clarke@darcy·
tldr; if you used @vltpkg as your package manager, then you were protected the minute @SocketSecurity flagged the malicious packages in the `axios` attack yesterday. The best time to switch your package manager was 48hrs ago, the next best time is right now. More below: blog.vlt.sh/blog/vlt-build
Socket@SocketSecurity

🧨 Axios only needed to be resolved somewhere in your dependency graph to affect you. Semver + transitive deps + runtime installs = hidden blast radius. If you only checked your project’s lockfile, you may still not know. socket.dev/blog/hidden-bl… #nodejs

Toronto, Ontario 🇨🇦 English
3
14
45
12.1K
vlt /vōlt/ retweetledi
Ben Vinegar
Ben Vinegar@bentlegen·
Coding isn't holding you back. Product work is. Introducing Modem, your dev team's auto-triage PM. It listens to user signals 24/7, finds problems before you do & does the work you're slow at – filing tickets, pinging teammates, closing the loop. Sign up today at @modemdev
English
73
86
999
263.7K
vlt /vōlt/ retweetledi
Sarah Gooding
Sarah Gooding@sarahgooding·
🚀 Launch Week Day 3! The #JavaScript ecosystem moves fast, especially in the package management and tooling space. Early adopters deserve best-in-class malicious package detection, so we're continuing our track record of supporting new tools with @bunjavascript and @vltpkg!
Feross@feross

🚀 Big news for JavaScript teams: Socket now supports Bun and vlt in beta. You no longer have to choose between innovation and security. Commit a bun.lock or vlt-lock.json and Socket gives you full supply chain protection.

English
0
3
5
2.1K
vlt /vōlt/ retweetledi
Darcy Clarke
Darcy Clarke@darcy·
🚀 Happy to announce Phased Package Installations have landed in the @vltpkg client! `vlt install` now blocks all scripts by default while it & our new `vlt build` command are now utilizing our powerful Dependency Selector Syntax to intelligently configure opt-ins.
Toronto, Ontario 🇨🇦 English
2
3
5
771
vlt /vōlt/
vlt /vōlt/@vltpkg·
@fharper Hey Fred! We announced the winners & gave them out on stage just after the JSConf "family" picture but before the last talk (sorry if you missed it). @lukekarrys randomly drew from all the folks that had entered.
English
1
0
1
30
Frédéric Harper
Frédéric Harper@fharper·
@vltpkg hey folks, who won the Lego kits for JSConf? Asking for a friend... the friend is me 😅
English
1
0
1
52
vlt /vōlt/ retweetledi
Darcy Clarke
Darcy Clarke@darcy·
🚀 We just shipped support for a `:host()` selector in @vltpkg which allows for system-wide project querying. Combine this w/ all of our existing metadata selectors & integrations creates an ever more powerful, unified package management toolchain!
Mississauga, Ontario 🇨🇦 English
1
2
11
1.3K
vlt /vōlt/ retweetledi
Darcy Clarke
Darcy Clarke@darcy·
⚡ Point. Click. Discover. 🚀 We're excited to unveil a new Query Builder to @vltpkg's UI. It's now dead simple to visually navigate complex dependency graph filters without typing a thing. No need to memorize our selector syntax (if you don't want to).
Toronto, Ontario 🇨🇦 English
1
3
5
934
vlt /vōlt/ retweetledi
luke
luke@lukekarrys·
🚀 New query-powered @vltpkg commands just dropped! See how to release subsets of your packages with the new version, pack, and publish commands, all backed by the powerful dependency selector syntax. blog.vlt.sh/blog/pack-publ…
English
0
4
6
774
vlt /vōlt/ retweetledi
luke
luke@lukekarrys·
🚀Dependency Selector Syntax can now be used across @vltpkg commands like run, exec, and pkg! This enables precise filtering when running scripts, executing commands, or getting package info. You have access to the whole graph! Read more about it: blog.vlt.sh/blog/run-exec-…
English
0
3
4
553
vlt /vōlt/ retweetledi
🦋 @ruyadorno.com
🦋 @ruyadorno.com@ruyadorno·
🚀 Excited to announce another major addition to the @vltpkg client: Graph Modifiers! Graph Modifiers enable fine-grained customization of your install using our powerful Dependency Selector Syntax ⚡️ Read more about it here: blog.vlt.sh/blog/introduci…
English
0
3
5
478
vlt /vōlt/ retweetledi
Darcy Clarke
Darcy Clarke@darcy·
🚀 We just shipped catalog support to `vlt`! If you go grab the latest version you can now install & manage dependencies with pnpm-like catalog definitions (ex. `vlt i typescript@catalog:dev`). You can read more here: blog.vlt.sh/blog/catalogs?…
Toronto, Ontario 🇨🇦 English
0
4
9
605
vlt /vōlt/ retweetledi
Darcy Clarke
Darcy Clarke@darcy·
We're looking for a Senior Backend Engineer to join our team at @vltpkg based here in Toronto 🇨🇦 at our HQ. If you love JavaScript & open source this may be right up your alley. Please share if you know anyone who would be a great fit. linkedin.com/posts/darcycla… #javascript #nodejs
Toronto, Ontario 🇨🇦 English
0
8
20
1.4K