Context: https://news.ycombinator.com/item?id=46035533 Action Items: - [ ] set minimumReleaseAge/npmMinimalAgeGate where possible - [ ] https://github.com/filecoin-project/filsnap/pull/439 - [ ] https://github.com/FilOzone/synapse-sdk/pull/463 - [ ] scan fil orgs in search for compromised packages usage (?) - [ ] check if the offending dependencies are getting flagged by github security already