Really having problems building trust in anything nowadays. Putting an AI Agent between you and npm just makes it that much more obscure. Detectable, sure, but it would be nice to be able to just TRUST something lately. www.wiz.io/blog/keyv-an...

keyv and cacheable npm Package Hijacked in Supply Chain Attack | Wiz BlogWiz Research is actively investigating an ongoing software supply chain attack affecting multiple keyv/cacheable npm packages.www.wiz.io