Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
brabel
7mo ago
0 comments
Save
Share
If anything people should use an older version of the packages. Your newest versions had just been compromised, why should anyone believe this time and next time it will be different?!
0 comments
1 comments · 1 top-level
top
newest
oldest
timgl
7mo ago
The packages were published using a compromised key directly, not through our ci/cd. We rolled the key, and published a new clean version from our repo through our CI/CD:
https://github.com/PostHog/posthog-js/actions/runs/196303581...
1 more reply
j
/
k
navigate · click thread line to collapse