shrinkpack is a tool that helps npm and Yarn projects reduce external dependency risks by storing package tarballs inside the repository. This allows developers to have full control over dependencies, avoiding issues with disappearing or compromised packages.
Features
- Stores package tarballs inside the project to prevent registry dependency issues
- Ensures consistent builds even when registry packages are removed
- Works with both npm and Yarn for flexibility
- Reduces the risk of supply chain attacks by locking dependencies
- Automatically updates tarballs when dependencies change
- Improves offline development by providing local package storage
Categories
Package ManagersLicense
MIT LicenseFollow shrinkpack
You Might Also Like
Gen AI apps are built with MongoDB Atlas
MongoDB Atlas is the developer-friendly database used to build, scale, and run gen AI and LLM-powered apps—without needing a separate vector database. Atlas offers built-in vector search, global availability across 115+ regions, and flexible document modeling. Start building AI apps faster, all in one place.
Rate This Project
Login To Rate This Project
User Reviews
Be the first to post a review of shrinkpack!