Hacker News new | past | comments | ask | show | jobs | submit login

Yes that helps but brings in other problems. For example many many security problems in the thousands of used npm packages of meteor and its dependencies.



Unfortunately thousands of dependencies is not unique to meteor, it is the hallmark of any popular npm package. So even react and vue would have too many dependencies.


I think at a certain point, very restrictive sandboxing is going to be the only way to safely run JavaScript-based projects.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: