frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Can NPM, pnpm etc. use frontier models to check packages for malware?

4•VikRubenfeld•6h ago
Just a thought. This seems like something that should happen

Comments

benoau•6h ago
Surely Microsoft would already be doing this extensively across GitHub, NPM, NuGet etc...
SpyCoder77•1h ago
Yes, users don't need copilot (the desktop version), they need to not get malware
lalsanhim•6h ago
Hii
twunde•2h ago
This is essentially what some 3rd party vendors do, which is why supply chain malware is typically found in hours now and not weeks.

The reason why npmjs, pypy and other public registries don't do this is because it would likely 10x+ the cost of their infrastructure while not bringing in much new revenue. It's also potentially orthogonal to paint customers needs since it could likely lead to downtime or at least block new releases going out

Rumors of my death are slightly exaggerated

1496•CliffStoll•2d ago•233 comments

Ask HN: We just had an actual UUID v4 collision...

289•mittermayr•16h ago•257 comments

Can NPM, pnpm etc. use frontier models to check packages for malware?

4•VikRubenfeld•6h ago•4 comments

Novel macro signals for AI-related job loss?

3•sfmz•6h ago•1 comments

Reflections on NetBSD 11

4•morpheos137•10h ago•2 comments

0ctx – Local-first project memory for AI workflows

3•som3on3•16h ago•2 comments

Ask HN: How do you find good personal blogs on Google nowadays?

4•xapet•3h ago•7 comments

Ask HN: How do we handle the rise of low quality "This is LLM" comments?

6•shantnutiwari•10h ago•19 comments

Ask HN: How are you handling QA being bottlenecked with more AI-generated PRs?

3•softneon•17h ago•4 comments

Ask HN: What is your go-to solution for a personal wiki in 2026?

14•ex-aws-dude•1d ago•18 comments

Ask HN: What will happen as AI costs increase?

13•MetaWhirledPeas•1d ago•19 comments

Claude Flags Hantavirus Vaccine Questions as Security Risk

11•pell•15h ago•9 comments

"Surface" a Governed AI-Agentic Surface

3•paulbernard•1d ago•0 comments

Ask HN: Are we gonna back less powerful local LLMs

9•omertt27•1d ago•8 comments

Ask HN: What do you still do manually in 2026 that should be automated?

16•lishunsheng•1d ago•29 comments

Ask HN: How to start up as an individual developer?

12•alexyan0431•2d ago•10 comments

Ask HN: Who got hired with Who wants to be hired? (On 2026)

18•Gooblebrai•2d ago•11 comments

Ask HN: Is the Job Market Actually Bad?

133•idontwantthis•6d ago•206 comments

Ask HN: Is the future everyone having 100 MCP processes running on their PC?

7•ex-aws-dude•2d ago•4 comments

Ask HN: Is anyone seriously considering a career change?

31•zeven7•2d ago•28 comments

Ask HN: Best Embedding Models?

18•devstein•3d ago•18 comments

Ask HN: Terafab – Smart move or insane financial risk?

3•imheretolearn•2d ago•2 comments

You've reached the end!