Personal blog built with Jekyll and hosted on GitHub Pages.
I write about package management, software supply chain security, and open source infrastructure. I'm building Ecosyste.ms, a collection of open datasets and tools for understanding and improving critical open source infrastructure.
- npm’s Defaults Are Bad
- Git Diff Drivers
- The Roles of Packages
- The Top 10 Biggest Conspiracies in Open Source
- How to Attract AI Bots to Your Open Source Project
- Package Manager Mirroring
- The Fragmented World of Dependency Policy
- Git Remote Helpers
- Guided Meditation for Developers
- What’s Going On with FAIR Package Manager