npm weekly #211: npm@6.11.0 is out now, plus a new GitHub action for npx!
Ta-da! npm v6.11.0
Earlier this week, we released version npm@6.11.0. This latest release includes a new feature (peerDependenciesMeta), some major bugfixes, and the ever-continuing catalog of dependency updates. Read on for the full release notes.
To get it, run:
npm install -g npm@latest
Security suggests enumerate-iam
Built by cloud security expert Andres Riancho, enumerate-iam is a library that allows you to enumerate the permissions associated with AWS credential set. Very useful if you’ve found a set of AWS credentials and have no idea what they’re linked to, and you’d like to find out in a non-destructive way.
Recommended project: CalqueJS
Tiny? Check. Dependency free? Check. Framework free? Also check! Calque is a tiny helper library (only ~7KB, so maybe the tiniest) for the native web, aimed to help build interfaces easily. The goal is bringing the power and functionality of JavaScript, but with the readability of HTML. Check it out!
What we’re reading: Ten Things I’ve Learned in Six Months of Being a Junior Frontend Developer
If you haven’t been to dev.to yet, it continues to be the source of some really fantastic original content. This week, we are big fans of Ellen Macpherson’s Ten Things I’ve Learned in Six Months of Being a Junior Frontend Developer. Her insights aren’t just for newbies, but are applicable to the most veteran on your team.
An npx action we can approve
Hey npx fans! Recently, that one internet guy created a GitHub Action for your favorite package runner. Ready to automate npx? Look no further!
npm.community Corner
Wondering how to do something with npm? We have a section for that at npm.community! In the how do i…category you can find answers for how-tos that have come up before or are likely to come up again. Go see for yourself at npm.community!
Curious about what it would be like to work on a product with 10 million+ users and over 40 billion software package downloads every month? We’re currently looking for engineers, design folks and more. See our open positions at npmjs.com/jobs.
Private packages + team management tools!
The same tools that empower developers to work together on Open Source projects can make teams more efficient when collaborating on mission-critical applications.
Learn how npm Orgs can help your team!
Goodbye from the voice in your head as you read this
(Wishing you all the best, Wombat Jenn! We will miss you!️)