A Protocol for Package Management

Reducing Dependabot Noise

git-pkgs: explore your dependency history

How dependabot works

Cursed Bundler: Using go get to install Ruby Gems

Package managers keep using Git as a database, it never works out

How uv got so fast

How to Ruin All of Package Management

GitHub Actions has a package manager, and it might be the worst

Could lockfiles just be SBOMs?

Package Manager Design Tradeoffs

What is a Package Manager?

From ZeroVer to SemVer: A Comprehensive List of Versioning Schemes in Open Source