Tag
publishing
Safeguard articles tagged "publishing" — guides, analysis, and best practices for software supply chain and application security.
2 articles
Security Guides
How to Build a Secure npm Package (2026)
A practical checklist for shipping an npm package that resists supply chain attacks: provenance, granular tokens, minimal published files, no install scripts, and ReDoS-safe code.
Jul 1, 20265 min read
Open Source
How to Make an npm Package: A Step-by-Step Guide
Learning how to make an npm package takes about ten minutes of setup and a lifetime of not shipping your .env file. This guide covers the full path from init to publish, safely.
Jun 9, 20256 min read
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.