Robin Berjon @robinberjon · 20 May 2018 Replying to @null and @SimonDeDeo, @matthewstoller, @joftius But if you suffer a breach for zero-day in a dependency seven layers down in npm, I don’t think anyone could possibly hold it against you. The GDPR is basically good housekeeping. ♥ 1