Skip to main content
Scour
Discover
Docs
Login
Sign Up
Discover
About
Docs
Changelog
You are offline. Trying to reconnect...
Copied to clipboard
Unable to share or copy to clipboard
Back to article
blog.packagist.com
3w
3 weeks ago
An Update on Composer and Packagist Supply Chain Security
(opens in new tab)
Covers
4 stories
See all stories this covers
including
Staged publishing and new install-time controls for npm
Covered by
5 sources
See all sources covering this story
including
Andrew Nesbitt
,
DEV Community
Discussed on
Hacker News
Love
Like
Not for me
Save
|
|
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Covers 4 related stories
github.blog
·
4w
4 weeks ago
Staged publishing and new install-time controls for npm
Discussed on
Hacker News
and
Lobsters
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Staged publishing and new install-time controls for npm
Aikido Security's Blog
·
4w
4 weeks ago
Supply Chain Attack Targets Laravel-Lang Packages with Credential Stealer
Discussed on
Hacker News
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Supply Chain Attack Targets Laravel-Lang Packages with Credential Stealer
slsa.dev
·
27w
27 weeks ago
SLSA • Supply-chain Levels for Software Artifacts
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for SLSA • Supply-chain Levels for Software Artifacts
sigstore.dev
·
73w
73 weeks ago
Sigstore: Making sure your software is what it claims to be
Discussed on
Hacker News
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Sigstore: Making sure your software is what it claims to be
Covered in 6 articles
Andrew Nesbitt
·
3w
3 weeks ago
This Week in Package Management: 30 May 2026
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for This Week in Package Management: 30 May 2026
Andrew Nesbitt
·
3w
3 weeks ago
Composer’s dependency policies
Discussed on
Hacker News
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Composer’s dependency policies
DEV Community
·
1w
1 week ago
Composer Update Is Not Safe Anymore
Discussed on
DEV
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Composer Update Is Not Safe Anymore
risky.biz
·
2w
2 weeks ago
Risky Bulletin: Russia greatly expands SORM surveillance requirements
Discussed on
Hacker News
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Risky Bulletin: Russia greatly expands SORM surveillance requirements
news.risky.biz
·
2w
2 weeks ago
Risky Bulletin: Russia greatly expands SORM surveillance requirements
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Risky Bulletin: Russia greatly expands SORM surveillance requirements
laravel-news.com
·
3w
3 weeks ago
Malware Blocking and Dependency Policies in Composer 2.10
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Malware Blocking and Dependency Policies in Composer 2.10
Keyboard Shortcuts
Navigation
Next / previous post
j
/
k
Open post
o
or
Enter
Preview post
v
Post Actions
Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s
Recommendations
Add interest / feed
Enter
Not interested
x
Go to
Home
g
h
Interests
g
i
Feeds
g
f
Likes
g
l
History
g
y
Changelog
g
c
Settings
g
s
Discover
g
b
Search
/
Pagination
Next page
n
Previous page
p
General
Show this help
?
Submit feedback
!
Close modal / unfocus
Esc
Press
?
anytime to show this help
Like
Save
Not for me
Report