Proposed Content
Document general purpose best practices when consuming community packages:
- Pin to patch versions
- Vet by reading the source code
- Look for minimal dependencies
Location
Under community packages
Rationale
Want to guide folks to the latest best practices/supply-chain problems
Content Outline (Optional)
No response
References
No response