Tweet · 20 May 2018, 14:44 UTC

Replying to @null and @SimonDeDeo, @matthewstoller, @joftius

But if you suffer a breach for zero-day in a dependency seven layers down in npm, I don’t think anyone could possibly hold it against you. The GDPR is basically good housekeeping.