While working with open source code the following questions arise:

  • Is open-source secure?
  • Can I install this dependency?
  • Will this package decrease the security of my app?

The first question is very general and the short answer is YES. The other two, unfortunately, are unique cases and it’s impossible for someone to know beforehand.

Here’s what you should do for the other two. One thing that you can do is to take a look at the package/module/dependency that you want to use. …


Stan Georgian

Full-Stack Web Developer.

