
The modern software supply chain resembles a fragile house of cards where a single compromised line of code in a foundational library can trigger a massive digital collapse across thousands of global cloud environments. Open-source repositories like the npm registry have become the bedrock of the global digital infrastructure, serving as a central hub for millions of developers. However, this










