The Anthropic SDK Looks Safe. Two of Its Transitive Dependencies Aren't.

📰 Dev.to · Pico

Run a supply chain audit on @anthropic-ai/sdk and it looks healthy. Audit at depth 2 and two transitive dependencies are CRITICAL — sole maintainer, 15M weekly downloads, no release in over a year.

Published 25 Apr 2026
Read full article → ← Back to Reads