Sign in

Yarn

@yarnpkg.dev
1.3K followers 33 following 15 posts

Fast, reliable, and secure package management. Account managed by @mael.dev

PostsRepliesMedia
Yarn @yarnpkg.dev · 21/05/2026
They did it! We're now working hard to implement the relevant capabilities to let you enable staged publishing; that should come with the incoming 4.16 release 🥳 docs.npmjs.com/staged-publi...
docs.npmjs.com
Staged publishing for npm packages | npm Docs
Documentation for the npm registry, website, and command-line interface
010
Yarn @yarnpkg.dev · 19/05/2026
We just released the 4.15 branch 🎊 One important change is that npmMinimalAgeGate will now default to 1d for new projects.
092
Reposted by Yarn
Maël Nison @mael.dev · 14/05/2026
Making `npmMinimalAgeGate: 1d` the default github.com/yarnpkg/berr...
github.com
Makes `npmMinimalAgeGate: 1d` the default by arcanis · Pull Request #7135 · yarnpkg/berry
What's the problem this PR addresses? The rate at which supply chain attacks occur is growing, and given that we can't rely on the npm registry for good practices it means we need to beco...
1225
Yarn @yarnpkg.dev · 13/05/2026
The new Yarn website lets you diff packages between versions. No particular reason for that 😅 v6.yarnpkg.com/package/@tan...
060
Yarn @yarnpkg.dev · 12/05/2026
The right fixes would likely be for the npm registry to *finally* add support for 2FA publishing in a way compatible with both automations and monorepos. They announced some interest couple of months ago, but it hasn't transformed so far.
010
Yarn @yarnpkg.dev · 12/05/2026
Unfortunately it can't help people that happen to create new projects right when the vulnerability is up, since they rarely configure that in their home folder. And making it a default could impair security fixes (for instance the Next.js/React CVEs).
110
Yarn @yarnpkg.dev · 12/05/2026
Reminder that Yarn lets you filter out fresh packages with `npmMinimalAgeGate` and it's a good idea to use it on your work repos!
161
Reposted by Yarn
Maël Nison @mael.dev · 20/04/2026
I'll be speaking at #JSNation to tell you the story of how we ported Yarn to Rust over the past year, and what we learned doing that (A LOT 😁) Check out my #JSNation badge: gitnation.com/badges/jsnat.... Register via the badge and watch the stream for FREE! See you on June 11 & 15.
gitnation.com
Check out my badge & claim your free JSNation 2026 remote ticket!
Join 10k engineers worldwide at JSNation 2026 and meet 50 top speakers at June 11 - 15, 2026
051
Yarn @yarnpkg.dev · 17/04/2026
Neither of those are breaking: if you migrate from an older version Yarn will automatically update your `.yarnrc.yml` to explicitly apply the old default settings, which you can remove whenever you're ready. New projects on the other hand will immediately benefit from these changes.
000
Yarn @yarnpkg.dev · 17/04/2026
We just released the 4.14 branch! 🎊 Two important security changes: - `enableScripts` now defaults to `false` (can be overridden on a per-package basis) - A new `approvedGitRepositories` setting should be used to tell Yarn which git repos are safe to pack.
1275
Reposted by Yarn
Maël Nison @mael.dev · 28/01/2026
It’s happening. Yarn 6 Preview is here 💫 Yes, we rewrote it in Rust 🦀⚡️ I'm incredibly excited for the future of our beloved package manager. See the benchmarks and plans in our latest post:
yarn6.netlify.app
Yarn 6 Preview
Yarn is a modern JavaScript package manager focused on speed, security, and reliability.
712526
Yarn @yarnpkg.dev · 18/09/2025
Yarn 4.10 is fresh off the press! 💫 It includes a new npmMinimalAgeGate setting, catalog support, and OIDC publishing.
github.com
Release v4.10.0 · yarnpkg/berry
What's Changed Bumps TypeScript to 5.9 by @arcanis in #6889 Updates tests for the merge conflict resolution v5 by @arcanis in #6892 Tweaks tests by @arcanis in #6894 docs: fix typo in enableScript...
0168
Reposted by Yarn
Maël Nison @mael.dev · 12/06/2025
Package manager summit with @kochan.io at #JSNation !
Me and Zoltan
1213
Yarn @yarnpkg.dev · 12/06/2025
The npm registry is currently experiencing an elevated error rate.
000
Yarn @yarnpkg.dev · 22/04/2025
You can now natively use dependencies from @jsr.io using the `jsr:` prefix in your package.json and CLI commands! 📦
1183
Reposted by Yarn
Gautier @gautier.dev · 09/04/2025
Breaking news: @yarnpkg.dev 4.9.0 was just released with `yarn npm publish --provenance` and `yarn add jsr:package` support. Update your CIs and brag to your friends about your shiny provenance badges!
052
Reposted by Yarn
Victor @vjo.li · 17/03/2025
Looking good today, @yarnpkg.dev! ☘️
yarn progress bar in the command line is showing shamrock
041
Reposted by Yarn
Rspack @rspack.dev · 22/01/2025
Announcing Rspack 1.2: ⚡️ Persistent cache: up to 250% faster ⚡️ Faster code splitting ⚡️ Less memory usage ⚡️ Smaller bundle size 💡 Yarn PnP support 💡 Bump SWC v10 Release blog: rspack.dev/blog/announc...
rspack.dev
Rspack
Fast Rust-based Web Bundler
0248
Reposted by Yarn
Paris TypeScript @typescript.paris · 21/01/2025
🇬🇧 Hello TypeScripters 👋 Meet @mael.dev, the brilliant mind behind @yarnpkg.dev, the popular JavaScript package manager! A passionate open-source contributor, Maël has been transforming the way developers manage dependencies, making their workflow faster and more efficient.
Mael Nison at Paris TS la Conf'
174
Reposted by Yarn
Rspack @rspack.dev · 09/01/2025
Rspack v1.2.0 will support Yarn PnP. Special thanks to @mael.dev for implementing PnP resolution in the Rspack resolver. ❤️
1146
Yarn @yarnpkg.dev · 31/12/2024
We're considering it as well.
1306
Reposted by Yarn
Wojciech Maj @wojtekmaj.pl · 08/12/2024
Affected by npm maintenance? 😬 Prepare yourself next time! 💡 All my mission critical projects use @yarnpkg.dev "Offline mirror" functionality, which enables you to check out all the required dependencies in the repository itself. Read more: yarnpkg.com/features/cac...
yarnpkg.com
Cache strategies | Yarn
How to ensure your installs perform the absolute minimal amount of work.
121
Yarn @yarnpkg.dev · 08/12/2024
You can't talk about value without cost, and I'd wager redesigning it would rank very low in the priorities of any open-source core team. Unless someone takes ownership of this work, it'll have to wait for the next major redesign.
000
Yarn @yarnpkg.dev · 07/12/2024
There's an emoji if stable and canary are the same value. It's like "we worked X months on this release and it's now stable, woohoo 🎉🎉🎉".
210
Reposted by Yarn
ESLint @eslint.org · 25/11/2024
Hello Bluesky! ❤️
2740126
Reposted by Yarn
Maël Nison @mael.dev · 20/11/2024
I wrote about what I'd like to focus on for the next @yarnpkg.dev supermajor: github.com/yarnpkg/berr...
github.com
Road to the next supermajor · yarnpkg berry · Discussion #6608
I'm opening this issue to share my vision and hear potential feedback regarding the next supermajor Yarn release. I’ve been working on a prototype intermittently for the past few months, but I expe...
0114
Reposted by Yarn
Node.js @nodejs.org · 10/11/2024
🦋
541193172
Yarn @yarnpkg.dev · 02/11/2024
Much better 👌
000