Personal blog built with Jekyll and hosted on GitHub Pages.
I write about package management, software supply chain security, and open source infrastructure. I'm building Ecosyste.ms, a collection of open datasets and tools for understanding and improving critical open source infrastructure.
- Package Security Problems for AI Agents
- Who Built This?
- The Cathedral and the Catacombs
- What does Open Source mean?
- Package Manager Easter Eggs
- npm’s Defaults Are Bad
- Git Diff Drivers
- The Roles of Packages
- The Top 10 Biggest Conspiracies in Open Source
- How to Attract AI Bots to Your Open Source Project