TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

I think the JavaScript community needs to step up and boycott NPM

59 点作者 calypso大约 6 年前

6 条评论

keypusher大约 6 年前
&gt; &quot;The actual concern I have is that the JavaScript package manager and language commons are in the hands of a VC-funded company<p>I&#x27;m not primarily a JS developer, but I guess I just assumed NPM was run by a non-profit foundation like the Python Software Foundation runs PyPi. So I started looking into the governance of other significant library repos. Homebrew actually sets a good example[0], with a clear governance structure. On the other hand I have no idea who owns RubyGems.org, perhaps a loose collection of GitHub users called the RubyGems Team [1]. Maven Central (Java) is owned+operated by Sonatype [2], Packagist (PHP) is owned+operated by Private Packagist[3], Nuget (C#) is unsurprisingly owned+operated by Microsoft, and CPAN seems to be governed by the Perl Foundation. According to modulecounts.com, NPM has more hosted packages than any of the others. It&#x27;s also the only one where the registry source code does not seem to be publicly available, and there are very few full mirrors that don&#x27;t just proxy upstream to npmjs.org. Yikes.<p>[0] <a href="https:&#x2F;&#x2F;docs.brew.sh&#x2F;Homebrew-Governance" rel="nofollow">https:&#x2F;&#x2F;docs.brew.sh&#x2F;Homebrew-Governance</a><p>[1] <a href="https:&#x2F;&#x2F;rubygems.org&#x2F;pages&#x2F;about" rel="nofollow">https:&#x2F;&#x2F;rubygems.org&#x2F;pages&#x2F;about</a><p>[2] <a href="https:&#x2F;&#x2F;central.sonatype.org&#x2F;" rel="nofollow">https:&#x2F;&#x2F;central.sonatype.org&#x2F;</a><p>[3] <a href="https:&#x2F;&#x2F;packagist.org&#x2F;" rel="nofollow">https:&#x2F;&#x2F;packagist.org&#x2F;</a><p>[4] <a href="http:&#x2F;&#x2F;www.modulecounts.com&#x2F;" rel="nofollow">http:&#x2F;&#x2F;www.modulecounts.com&#x2F;</a>
takinola大约 6 年前
The style of this article is really disingenuous. The new leadership at NPM may (or may not) be acting disrespectfully to the terminated workers but to go from that to speculating about their financial health just seems unwarranted. The statement &quot;a company which may, or may not have financial problems&quot; is meaningless. Every company in the world &quot;may, or may not,&quot; have financial problems. That sentence only serves to impute doubt about the company&#x27;s viability while skirting the limits of truthfulness
评论 #19563124 未加载
colejohnson66大约 6 年前
@mods The actual title is “Nice People Matter? NPM may stand for Not Politely Managed – job cuts leave staff sore”.
评论 #19561870 未加载
NelsonMinar大约 6 年前
I&#x27;m grateful for this article. It&#x27;s been clearly reading on Twitter #npmlayoffs something bad has been going down but hard to piece the story together. The Reg puts it together in a relatively straightforward way.
the_fonz大约 6 年前
Capitalism&#x27;s hubris... co-op workplaces, organized labor and sharing salary info are musts. We don&#x27;t need fascism nor communism to solve inequality, just a shift back to decency and earned respect through workplace action. <i>Power concedes nothing without organized resistance.</i> Violence carries water for the opposition, so only nonviolent disobedience will be strategically-successful.
jonny_eh大约 6 年前
That title, yikes.