Ask HN: How do you securely develop in Node or Python?

  • https://socket.dev/

  • all exploits we've analyzed from npm and cargo (granted, github sourced ones) had code to break free from docker. and some even from virtualbox vms if run with the vscode helpers.