Postmortem: TanStack NPM supply-chain compromise

kysely 0.29 is out btw.

A Linux-like kernel in a browser tab - deep dive in the BrowserPod architecture

HYML Sanitizer API

I built StreamShield: A Twitch/Kick ad-blocker using a custom stream-recovery engine (Manifest V3)

Make install scripts opt-in ยท npm/rfcs

The Unreasonable Effectiveness of ProseMirror Model in Rich Text Transformation

9 Times the Web Platform was Influenced by Libraries

Mini Shai-Hulud npm worm compromises 160+ packages, including TanStack-related packages

TravelsJS v1.3 - Patch-based undo/redo optimized for large state, small updates, long history, and persistence.