https://mvnpm.org/
mvnpm - Use NPM packages as Maven/Gradle dependencies
Seamlessly integrate NPM packages into Java through Maven and Gradle dependencies. The bridge between NPM and Maven Central.
mvnpm use npmmaven gradle
https://mvnpm.org/live/
Live - mvnpm - mvnpm - Use NPM packages as Maven/Gradle dependencies
Watch live synchronization progress of NPM packages being converted to Maven artifacts.
mvnpm use npmmaven gradlelive
https://mvnpm.org/releases/
Releases - mvnpm - mvnpm - Use NPM packages as Maven/Gradle dependencies
Track Maven Central sync status for NPM packages. Monitor packaging, uploading, and release stages.
mvnpm use npmmaven gradle
https://bundlephobia.com/
Bundlephobia | Size of npm dependencies
Bundlephobia helps you find the performance impact of npm packages. Find the size of any javascript package and its effect on your frontend bundle.
npm dependenciesbundlephobia
https://github.blog/changelog/2026-03-17-dependabot-now-detects-malware-in-npm-dependencies/
Dependabot now detects malware in npm dependencies - GitHub Changelog
Mar 19, 2026 - You can now receive Dependabot alerts when your repositories depend on npm packages with known malicious versions. When you enable malware alerting, Dependabot...
npm dependenciesdependabot
https://syntax.fm/show/186/potluck-terminal-configs-css-reset-flexbox-freelancing-npm-dependencies-project-hand-off-more
Potluck - Terminal Configs × CSS Reset × Flexbox × Freelancing × NPM Dependencies × Project...
css resetpotluckterminal
https://blog.maximeheckel.com/posts/duplicate-dependencies-npm-link/
How to fix NPM link duplicate dependencies issues - The Blog of Maxime Heckel
Mar 31, 2020 - Dealing with dependencies when developing a package and using it through npm link.
fixnpmduplicatedependencies
https://www.koi.ai/blog/phantomraven-npm-malware-hidden-in-invisible-dependencies
PhantomRaven: NPM Malware Hidden in Invisible Dependencies
PhantomRaven NPM malware hides in invisible dependencies, silently compromising projects and putting entire software supply chains at risk.
npm malwarehiddeninvisible
https://safedep.io/malicious-npm-packages-hyatt-campaign/
Malicious npm Packages Impersonating Hyatt Internal Dependencies — Real-time Open Source Software...
Three malicious npm packages disguised as Hyatt internal dependencies were discovered using install hooks to execute malicious payloads. All packages share...
malicious npm packageshyatt