package-managers
Andrew Nesbitt
Package management and open source metadata expert. Building Ecosyste.ms, open datasets and tools for critical open source infrastructure.
LatestRecent writing
What Happened to tea.xyz
Jun 11, 2026package-managerssupply-chain
Forms of Open Source Government
Jun 9, 20261
Package Manager Patents
Jun 8, 2026package-managershistory
This Week in Package Management: 6 June 2026
Jun 6, 2026package-managersweekly
Install-script allowlists
Jun 5, 2026package-managerssecurity
gittuf - a signed log for git refs
Jun 4, 2026gitsecurity
Skills Registry Threat Models
Jun 3, 2026securitypackage-managers
The Infosec Phrasebook
Jun 1, 2026securitysatire
This Week in Package Management: 30 May 2026
May 30, 2026package-managersweekly
Composer's dependency policies
May 29, 2026package-managerssecurity
Protestware for coding agents
May 28, 20261
Package managers that package package managers
May 28, 2026package-managers