You Don't Know Your Dependencies


May 2019


I'm from Buenos Aires, Argentina

I work as platform engineer

I help run NodeConf Argentina and also collaborate with other local communities

Hi! I'm Alejandro


Pinning deps: yay or nay





Little known fact #2

Verdaccio is great to caching dependencies


Little known fact #3

npm has the option to reference the filesystem

  "dependencies": {
    "cool": "file:../test-dir"


npm / yarn / pnpm


I've pushed a what?

npm ci


npx dep-verify

npx tbv