GitHub's plan for a more secure NPM supply chain | Not Hacker News!