Reading about the hot mess that is Node.js (pulled-dependencies, crypto miner-embeds, etc.)...
What is the sane way to deploy a Node.js project such as VuePress in the enterprise environment?
Is there one?
How do you vet the security of packages and their dependencies?