The Axios Breach Started with a Plaintext Token
Last week a North Korean actor compromised axios — 100 million weekly downloads — because one plaintext npm token was sitting on disk. Here's how I keep zero secrets in my repos.
Last week a North Korean actor compromised axios — 100 million weekly downloads — because one plaintext npm token was sitting on disk. Here's how I keep zero secrets in my repos.
I build side projects because I enjoy it, and it happens to make me a better manager. But let's be clear, it's not a requirement.
How I use Terraform to manage DNS, Workers KV, D1, Queues, R2, and AI Gateway across 8 Cloudflare domains — with zero secrets on disk and full disaster recovery.
3 patterns I'm seeing, 2 predictions for the next 6 months, and 1 experiment you can run this week. Management experience might be the best predictor of AI success.
It's not years of experience or a title on LinkedIn. A senior engineer is a force multiplier, and that distinction matters more than ever when a quarter of junior roles now carry senior titles.