Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

How this pattern/toolset protect against supply chain compromises of the dependencies used to build the "Datadog Agent" itself?


Apply pattern/toolset recursively. Software supply chain problems largely eventually solved this way.


Is there any initiative in this direction towards applying this pattern on big dependency management tools (e.g maven, pip, npm)?





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: