Running software applications in production today is crazy. One point release opens up for supply chain attacks. Whatβs crazier is not running your production applications without a lock file, potentially running dependencies youβve never ran before for the first time in prod.
π Running Software on Software Youβve Never Run
!https://blog.jim-nielsen.com/2025/run-software-on-software-youve-never-run/