⚡️ We're looking for a DevRel person @vltpkg based in our Toronto 🇨🇦 HQ. You'll work closely w/ me & should love the idea of owning various aspects of product marketing. You'll be vlt's biggest fan & advocate; molding this unique role in a way that plays to your strengths & ours.
Love the work @motdotla is doing with @dotenvx & am excited by what he's doing with Armor ⛨ - Our @vltpkg team got a excited when we first saw that first name change & appreciated Scott's willingness to adapt the name again to ensure there wasn't any confusion. Much love 🖤
While others race away from Open Source, @vltpkg is doubling down. 🖤⚡
Today we’re announcing our renewed commitment to @ThePledge and investing back into the ecosystem.
https://t.co/XHSHDQibVS
📖 This article by @sarahgooding at @SocketSecurity highlights a concerning trend (ref. https://t.co/HsofNvtqRM)
📕 Story time: this kind of supply chain targeting isn't unique. I myself & everyone on our team @vltpkg have been the targets of consistent, concerted efforts.
tldr; if you used @vltpkg as your package manager, then you were protected the minute @SocketSecurity flagged the malicious packages in the `axios` attack yesterday. The best time to switch your package manager was 48hrs ago, the next best time is right now.
More below: https://t.co/7ePAlJT54t
Coding isn't holding you back. Product work is.
Introducing Modem, your dev team's auto-triage PM.
It listens to user signals 24/7, finds problems before you do & does the work you're slow at – filing tickets, pinging teammates, closing the loop.
Sign up today at @modemdev
🚀 Launch Week Day 3! The #JavaScript ecosystem moves fast, especially in the package management and tooling space. Early adopters deserve best-in-class malicious package detection, so we're continuing our track record of supporting new tools with @bunjavascript and @vltpkg!
🚀 Happy to announce Phased Package Installations have landed in the @vltpkg client! `vlt install` now blocks all scripts by default while it & our new `vlt build` command are now utilizing our powerful Dependency Selector Syntax to intelligently configure opt-ins.
@fharper Hey Fred! We announced the winners & gave them out on stage just after the JSConf "family" picture but before the last talk (sorry if you missed it). @lukekarrys randomly drew from all the folks that had entered.
🚀 We just shipped support for a `:host()` selector in @vltpkg which allows for system-wide project querying. Combine this w/ all of our existing metadata selectors & integrations creates an ever more powerful, unified package management toolchain!
⚡ Point. Click. Discover.
🚀 We're excited to unveil a new Query Builder to @vltpkg's UI. It's now dead simple to visually navigate complex dependency graph filters without typing a thing. No need to memorize our selector syntax (if you don't want to).
🚀 New query-powered @vltpkg commands just dropped!
See how to release subsets of your packages with the new version, pack, and publish commands, all backed by the powerful dependency selector syntax.
https://t.co/BfhFboosgh
🚀Dependency Selector Syntax can now be used across @vltpkg commands like run, exec, and pkg!
This enables precise filtering when running scripts, executing commands, or getting package info. You have access to the whole graph!
Read more about it: https://t.co/nEKZKXX3sK
🚀 Excited to announce another major addition to the @vltpkg client: Graph Modifiers!
Graph Modifiers enable fine-grained customization of your install using our powerful Dependency Selector Syntax ⚡️ Read more about it here: https://t.co/7RMg4Z0YUE
🚀 We just shipped catalog support to `vlt`! If you go grab the latest version you can now install & manage dependencies with pnpm-like catalog definitions (ex. `vlt i typescript@catalog:dev`).
You can read more here:
https://t.co/QIYwWllpuc