Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Whether a hypothetical alternate world in which Rust didn't have a package manager or didn't make sharing code easy would be better or worse than the world we live in isn't an interesting question, because in that world nobody would use Rust to begin with. Developers have expected to be able to share code with package managers ever since Perl 5 and CPAN took off. Like it or not, supply chain attacks are things we have to confront and take steps to solve. Telling developers to avoid dependencies just isn't realistic.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: