Skip to content

security: add minimum release age (7 days)#56

Open
wera-trollcode wants to merge 1 commit into
masterfrom
security/min-release-age
Open

security: add minimum release age (7 days)#56
wera-trollcode wants to merge 1 commit into
masterfrom
security/min-release-age

Conversation

@wera-trollcode

@wera-trollcode wera-trollcode commented Jun 10, 2026

Copy link
Copy Markdown
Collaborator

Introduces a 7-day minimum release age gate to mitigate npm supply-chain attacks (preventing the installation of brand-new, potentially malicious packages).

As part of the initiative described here, I am leaving this PR open for the repository maintainers to review, discuss, and decide on adoption.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant