Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the wp-plugin-hostgator domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home4/scienrds/scienceandnerds/wp-includes/functions.php on line 6114

Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the ol-scrapes domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home4/scienrds/scienceandnerds/wp-includes/functions.php on line 6114

Warning: Cannot modify header information - headers already sent by (output started at /home4/scienrds/scienceandnerds/wp-includes/functions.php:6114) in /home4/scienrds/scienceandnerds/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home4/scienrds/scienceandnerds/wp-includes/functions.php:6114) in /home4/scienrds/scienceandnerds/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home4/scienrds/scienceandnerds/wp-includes/functions.php:6114) in /home4/scienrds/scienceandnerds/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home4/scienrds/scienceandnerds/wp-includes/functions.php:6114) in /home4/scienrds/scienceandnerds/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home4/scienrds/scienceandnerds/wp-includes/functions.php:6114) in /home4/scienrds/scienceandnerds/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home4/scienrds/scienceandnerds/wp-includes/functions.php:6114) in /home4/scienrds/scienceandnerds/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home4/scienrds/scienceandnerds/wp-includes/functions.php:6114) in /home4/scienrds/scienceandnerds/wp-includes/rest-api/class-wp-rest-server.php on line 1893

Warning: Cannot modify header information - headers already sent by (output started at /home4/scienrds/scienceandnerds/wp-includes/functions.php:6114) in /home4/scienrds/scienceandnerds/wp-includes/rest-api/class-wp-rest-server.php on line 1893
{"id":10947,"date":"2022-07-27T14:40:28","date_gmt":"2022-07-27T14:40:28","guid":{"rendered":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/"},"modified":"2022-07-27T14:40:29","modified_gmt":"2022-07-27T14:40:29","slug":"npm-users-can-now-connect-a-twitter-account-as-a-recovery-method","status":"publish","type":"post","link":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/","title":{"rendered":"NPM users can now connect a Twitter account as a recovery method"},"content":{"rendered":"

Source: https:\/\/www.theverge.com\/2022\/7\/26\/23279502\/npm-twitter-account-recovery-2fa-github-security<\/a>
\n
<\/br><\/code><\/p>\n

\n

Developers who use NPM, the popular JavaScript package manager, will now be able to connect their Twitter and GitHub accounts to the software as a recovery method. <\/p>\n

The move was announced Tuesday along with a handful of other features meant to combine enhanced security with usability for the GitHub-owned package manager.<\/p>\n

In a blog post<\/a>, GitHub said that the changes would make it easier for users to secure their accounts, while also streamlining some security features that users had found burdensome. <\/p>\n

\u201cThe JavaScript community downloads over 5 billion packages from npm a day, and we at GitHub recognize how important it is that developers can do so with confidence,\u201d wrote GitHub product managers Myles Borins and Monish Mohan. \u201cAs stewards of the npm registry, it\u2019s important that we continue to invest in improvements that increase developer trust and the overall security of the registry itself.\u201d<\/p>\n

\n <\/p>\n

<\/p>\n\"\"<\/p>\n

<\/source><\/picture>\n

<\/span><\/p>\n

<\/span><\/p>\n

GitHub and Twitter accounts can now be used as recovery options for NPM.<\/em><\/figcaption>Image: GitHub\/NPM<\/cite><\/p>\n

<\/span><\/p>\n<\/figure>\n

Besides the ability to connect Twitter and GitHub accounts as an authentication method, GitHub also announced that the use of two-factor authentication (2FA) for login and package publishing on NPM would be made easier.<\/p>\n

Per the blog post, NPM had previously trialed the use of enhanced 2FA logins<\/a> in a public beta release, but after feedback from the community, decided that certain features should be tweaked in order to be more user-friendly. This included adding a \u201cremember me for 5 minutes\u201d option so that users who successfully authenticated could disable 2FA prompts for a short period of time.<\/p>\n

\u201cAccount security is significantly improved by adopting 2FA, but if the experience adds too much friction, we can\u2019t expect customers to adopt it,\u201d Borins and Mohan wrote. \u201cEarly adopters of our new 2FA experience shared feedback around the process of logging in and publishing with the npm CLI, and we recognized there was room for improvement.\u201d<\/p>\n

The improved security features are being made available in NPM 8.15.0, released July 26th, the post said.<\/p>\n

As a core part of the open-source software ecosystem for the JavaScript programming language, NPM has been targeted by a number of malicious actors over the years. One of the main strategies has been for attackers to take control of packages by purchasing expired domains registered to package publishers<\/a> and using these to set up email accounts that can be used to receive password reset emails for the package. In light of this, increasing the use of 2FA when logging into NPM accounts stands to create big security improvements.<\/p>\n

NPM\u2019s parent company, GitHub, is also working to improve security on the larger code-hosting platform: earlier this year, the company announced that all users who contribute code would need to have some form of 2FA enabled by the end of 2023<\/a>.<\/p>\n<\/div>\n


<\/br><\/code><\/p>\n

Source: https:\/\/www.theverge.com\/2022\/7\/26\/23279502\/npm-twitter-account-recovery-2fa-github-security<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"

Source: Developers who use NPM, the popular JavaScript package manager, will now be able to connect their Twitter and GitHub accounts to the software as a recovery method. The move was announced Tuesday along with a handful of other features meant to combine enhanced security with usability for the GitHub-owned package manager. In a blog […]<\/p>\n","protected":false},"author":1,"featured_media":10948,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"nf_dc_page":"","om_disable_all_campaigns":false,"pagelayer_contact_templates":[],"_pagelayer_content":"","_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[15,8],"tags":[16],"class_list":["post-10947","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-policy","category-technology","tag-policy"],"yoast_head":"\nNPM users can now connect a Twitter account as a recovery method - Science and Nerds<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"NPM users can now connect a Twitter account as a recovery method - Science and Nerds\" \/>\n<meta property=\"og:description\" content=\"Source: Developers who use NPM, the popular JavaScript package manager, will now be able to connect their Twitter and GitHub accounts to the software as a recovery method. The move was announced Tuesday along with a handful of other features meant to combine enhanced security with usability for the GitHub-owned package manager. In a blog […]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/\" \/>\n<meta property=\"og:site_name\" content=\"Science and Nerds\" \/>\n<meta property=\"article:published_time\" content=\"2022-07-27T14:40:28+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-07-27T14:40:29+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"628\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"admin\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"admin\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/\",\"url\":\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/\",\"name\":\"NPM users can now connect a Twitter account as a recovery method - Science and Nerds\",\"isPartOf\":{\"@id\":\"https:\/\/scienceandnerds.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/i0.wp.com\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg?fit=1200%2C628&ssl=1\",\"datePublished\":\"2022-07-27T14:40:28+00:00\",\"dateModified\":\"2022-07-27T14:40:29+00:00\",\"author\":{\"@id\":\"https:\/\/scienceandnerds.com\/#\/schema\/person\/ea2991abeb2b9ab04b32790dff28360e\"},\"breadcrumb\":{\"@id\":\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#primaryimage\",\"url\":\"https:\/\/i0.wp.com\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg?fit=1200%2C628&ssl=1\",\"contentUrl\":\"https:\/\/i0.wp.com\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg?fit=1200%2C628&ssl=1\",\"width\":1200,\"height\":628},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/scienceandnerds.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"NPM users can now connect a Twitter account as a recovery method\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/scienceandnerds.com\/#website\",\"url\":\"https:\/\/scienceandnerds.com\/\",\"name\":\"Science and Nerds\",\"description\":\"My WordPress Blog\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/scienceandnerds.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/scienceandnerds.com\/#\/schema\/person\/ea2991abeb2b9ab04b32790dff28360e\",\"name\":\"admin\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/scienceandnerds.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/7e6e14fc6691445ef2b2c0a3a6c43882?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/7e6e14fc6691445ef2b2c0a3a6c43882?s=96&d=mm&r=g\",\"caption\":\"admin\"},\"sameAs\":[\"https:\/\/scienceandnerds.com\"],\"url\":\"https:\/\/scienceandnerds.com\/author\/admin\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"NPM users can now connect a Twitter account as a recovery method - Science and Nerds","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/","og_locale":"en_US","og_type":"article","og_title":"NPM users can now connect a Twitter account as a recovery method - Science and Nerds","og_description":"Source: Developers who use NPM, the popular JavaScript package manager, will now be able to connect their Twitter and GitHub accounts to the software as a recovery method. The move was announced Tuesday along with a handful of other features meant to combine enhanced security with usability for the GitHub-owned package manager. In a blog […]","og_url":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/","og_site_name":"Science and Nerds","article_published_time":"2022-07-27T14:40:28+00:00","article_modified_time":"2022-07-27T14:40:29+00:00","og_image":[{"width":1200,"height":628,"url":"https:\/\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg","type":"image\/jpeg"}],"author":"admin","twitter_card":"summary_large_image","twitter_misc":{"Written by":"admin","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/","url":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/","name":"NPM users can now connect a Twitter account as a recovery method - Science and Nerds","isPartOf":{"@id":"https:\/\/scienceandnerds.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#primaryimage"},"image":{"@id":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#primaryimage"},"thumbnailUrl":"https:\/\/i0.wp.com\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg?fit=1200%2C628&ssl=1","datePublished":"2022-07-27T14:40:28+00:00","dateModified":"2022-07-27T14:40:29+00:00","author":{"@id":"https:\/\/scienceandnerds.com\/#\/schema\/person\/ea2991abeb2b9ab04b32790dff28360e"},"breadcrumb":{"@id":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#primaryimage","url":"https:\/\/i0.wp.com\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg?fit=1200%2C628&ssl=1","contentUrl":"https:\/\/i0.wp.com\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg?fit=1200%2C628&ssl=1","width":1200,"height":628},{"@type":"BreadcrumbList","@id":"https:\/\/scienceandnerds.com\/2022\/07\/27\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/scienceandnerds.com\/"},{"@type":"ListItem","position":2,"name":"NPM users can now connect a Twitter account as a recovery method"}]},{"@type":"WebSite","@id":"https:\/\/scienceandnerds.com\/#website","url":"https:\/\/scienceandnerds.com\/","name":"Science and Nerds","description":"My WordPress Blog","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/scienceandnerds.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/scienceandnerds.com\/#\/schema\/person\/ea2991abeb2b9ab04b32790dff28360e","name":"admin","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/scienceandnerds.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/7e6e14fc6691445ef2b2c0a3a6c43882?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/7e6e14fc6691445ef2b2c0a3a6c43882?s=96&d=mm&r=g","caption":"admin"},"sameAs":["https:\/\/scienceandnerds.com"],"url":"https:\/\/scienceandnerds.com\/author\/admin\/"}]}},"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"https:\/\/i0.wp.com\/scienceandnerds.com\/wp-content\/uploads\/2022\/07\/npm-users-can-now-connect-a-twitter-account-as-a-recovery-method_62e14e5d08de2.jpeg?fit=1200%2C628&ssl=1","_links":{"self":[{"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/posts\/10947","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/comments?post=10947"}],"version-history":[{"count":1,"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/posts\/10947\/revisions"}],"predecessor-version":[{"id":10949,"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/posts\/10947\/revisions\/10949"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/media\/10948"}],"wp:attachment":[{"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/media?parent=10947"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/categories?post=10947"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/scienceandnerds.com\/wp-json\/wp\/v2\/tags?post=10947"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}