Skip to main content
btheo.com btheo.com > press start to play
NEW POST: NODE.JS SECURITY 2025 OPEN FOR FREELANCE 10+ YEARS EXP REACT × NODE × AWS NEW POST: NODE.JS SECURITY 2025 OPEN FOR FREELANCE 10+ YEARS EXP REACT × NODE × AWS
TIL · 21 FEB 2025 · NOTE #008 ESC
TIL NOTE #008

The Cost of Dependencies

Every package you install is a potential security risk and maintenance burden.

Before adding a dependency, ask:

  • Can I implement this in a few lines of code myself?
  • Is the package actively maintained?
  • Has it had security issues in the past?

Less is more. The fewer dependencies, the fewer things that can break.