Ran a BoF session at #OpenJSWorld / #OpenSourceSummitEurope #ossummiteu on the upcoming Secure The Web Forward virtual workshop https://www.w3.org/2023/03/secure-the-web-forward/. Really good discussion! The need for better automation for web developers to help identify security threats was one key area of interest. Lots to digest. Thanks to @rginn206 for making this possible!
Workshop overview

Bringing together experts to drive developer awareness and adoption of Web security standards and practices

Terminalator, wherein the npm cli becomes sentient and begins fully running itself @lukekarrys #OpenJSWorld

Attending #OpenJSWorld at #OSSummit. Excited about the work Open #JavaScript foundation is communicating to related projects, government funding, & many other #opensource initiatives. I’d love to see them speak at #WCUS. #WordPress

https://events.linuxfoundation.org/open-source-summit-north-america/about/openjs-world/

OpenJS World | Linux Foundation Events

At OpenJS World, attendees collaborate, network, and learn how to use and contribute to JavaScript and web technologies. From frontend to backend, serverless to IoT, there are many opportunities for…

Linux Foundation Events

my #openjsworld talk was accepted:

“How the npm CLI Team Manages (Almost) 100 Open Source Projects”

i think our team has some really useful experience in processes and tooling around managing all that goes in to open source software at that scale that i’m excited to share!

https://ossna2023.sched.com/event/1K59x/how-the-npm-cli-team-manages-almost-100-open-source-projects-luke-karrys-github

Open Source Summit North America 2023: How the npm CLI Team Manages (Almost) 10...

View more about this event at Open Source Summit North America 2023

RT @[email protected]

🤔 Did you miss my talk "The State of JavaScript Supply Chain Security in 2022" at #OpenJSWorld?

🛝 Check out the slides here: https://speakerdeck.com/feross/the-state-of-javascript-supply-chain-security-in-2022

📺 Talk video will be online soon!

#OpenJSWorld22 #SoftwareSupplyChain @[email protected] @[email protected]

🐦🔗: https://twitter.com/feross/status/1534641027323006976

The State of JavaScript Supply Chain Security in 2022

How do you know that you can trust your JavaScript dependencies? Software supply chain attacks have exploded over 2021 and they’re only accelerating in 2022 and beyond. We’ll dive into examples of recent supply chain attacks and what concrete steps we can take as an ecosystem to protect ourselves from this emerging threat. Try Socket at: https://socket.dev

Speaker Deck