Mauricio Lauffer
@mauriciolauffer.bsky.social
๐ค 346
๐ฅ 168
๐ 206
Into SAP tech, nodejs and web dev stuff...
reposted by
Mauricio Lauffer
James
10 days ago
Woooo yeaaah! The missing piece ๐ everything is about to get a lot more secure
loading . . .
Staged publishing for npm packages | npm Docs
Documentation for the npm registry, website, and command-line interface
https://docs.npmjs.com/staged-publishing
5
126
33
reposted by
Mauricio Lauffer
O'Reilly
17 days ago
"Cognitive debt and burnout arenโt new, alas. With or without AI, weโve all stayed up to 4AM working on a bug that wonโt go away or pursuing an interesting idea to its end. Sometimes thatโs heroic, but AI threatens to turn it into a lifestyle." Check out new
#Radar
article:
bit.ly/4uPmJ3N
loading . . .
Burnout and Cognitive Debt
Steve Yeggeโs article about programmer burnout (โThe AI Vampireโ) along with Margaret Storeyโs article about Cognitive Debt started an ongoing conversation
https://bit.ly/4uPmJ3N
0
3
1
SAP Stammtisch Brisbane - 28 May 2026! See y'all there!
#sap
#sapcommunity
#sapstammtisch
#brisbane
community.sap.com/t5/brisbane-...
loading . . .
SAP Stammtisch Brisbane - May 2026
SAP community + drinks === good vibes Let's all get together to have some drinks, share the nice things we have been doing and complain about the new API policy
https://community.sap.com/t5/brisbane-events/sap-stammtisch-brisbane-may-2026/ec-p/14393203
19 days ago
0
6
5
reposted by
Mauricio Lauffer
Node.js
22 days ago
ICYMI (and we hope you didn't): Node.js 20 went EOL last week. But you have options. Check out our EOL support:
https://nodejs.org/en/about/eol
0
21
3
reposted by
Mauricio Lauffer
Node.js
about 1 month ago
Reminder: Node.js v20 is end-of-life (EOL) today. Upgrade + get security support for EOL versions here:
https://nodejs.org/en/about/eol
loading . . .
Node.js โ End-Of-Life
Understand Node.js End-of-Life, what it means for security, tooling, and compliance, plus EOL version details and commercial support options.
https://nodejs.org/en/about/eol
0
67
27
reposted by
Mauricio Lauffer
Socket
about 1 month ago
๐จ Supply chain attack: SAP CAP and Cloud MTA npm packages compromised to download and execute unverified binaries. Affected versions: โ
[email protected]
โ @cap-js/
[email protected]
โ @cap-js/
[email protected]
โ @cap-js/
[email protected]
Details:
socket.dev/blog/sap-cap...
loading . . .
SAP CAP npm Packages Hit by Supply Chain Attack - Socket
Compromised SAP CAP npm packages download and execute unverified binaries, creating urgent supply chain risk for affected developers and CI/CD environ...
https://socket.dev/blog/sap-cap-npm-packages-supply-chain-attack
0
5
3
reposted by
Mauricio Lauffer
Liran Tal
about 2 months ago
avoid the next malicious package disaster with pnpm security hardening:
github.com/lirantal/npm...
Security Best Practice: Set trustPolicy: no-downgrade so that pnpm refuses to install any package version whose trust evidence is weaker than a previously published version of that package
1
3
2
reposted by
Mauricio Lauffer
Socket
about 2 months ago
AI agents are executing code, calling APIs, writing to databases, and most deployments have almost no controls around what they can do.
@microsoft.com
just open-sourced a runtime governance toolkit built around
@owasp.org
's Top 10 for Agentic Applications. Details โ
socket.dev/blog/microso...
loading . . .
Microsoft Releases Open Source Toolkit for AI Agent Runtime ...
Microsoft has released an open source toolkit for enforcing runtime security policies on AI agents as adoption accelerates faster than governance cont...
https://socket.dev/blog/microsoft-open-source-toolkit-for-ai-agent-runtime-security
0
2
1
reposted by
Mauricio Lauffer
Socket
about 2 months ago
๐จ New Investigation: Attackers are hunting the maintainers behind Lodash, Fastify, buffer, Pino, mocha, Express, and
#Nodejs
core, because compromising one of them means write access to packages downloaded billions of times a week.
socket.dev/blog/attacke...
loading . . .
Attackers Are Hunting High-Impact Node.js Maintainers in a C...
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
https://socket.dev/blog/attackers-hunting-high-impact-nodejs-maintainers
1
28
23
@sapcommunity.bsky.social
@recap-conf.bsky.social
another reason to stop using axios in SAP packages like cap or ai-sdk. Standard js APIs should suffice. Fetch is safer, lighter, and better.
add a skeleton here at some point
about 2 months ago
2
9
1
reposted by
Mauricio Lauffer
TypeScript
2 months ago
TypeScript 6.0 is now available! This release brings better type-checking for methods, new standard library features, new module features for Node.js, and more! But most important, this release brings us one step closer to the upcoming native-speed 7.0!
devblogs.microsoft.com/typescript/a...
loading . . .
Announcing TypeScript 6.0 - TypeScript
TypeScript 6.0 is now available! TypeScript 6 is a stepping-stone release, aligning with the upcoming native-speed 7.0 release.
https://devblogs.microsoft.com/typescript/announcing-typescript-6-0/
6
315
99
reposted by
Mauricio Lauffer
MDN Web Docs
2 months ago
๐ The URL Pattern API is Newly Available! Use it to match and extract parts of URLs, no need to reinvent routing logic. Supports literals, wildcards, named groups, and even regex constraints. Learn how it works ๐
developer.mozilla.org/en-US/docs/...
0
52
6
reposted by
Mauricio Lauffer
Oliver Graeff
2 months ago
New in SAPUI5 Flexibility: Adapting UIs for specific user roles now also on SAP BTP, Cloud Foundry environment:
community.sap.com/t5/technolog...
0
3
1
reposted by
Mauricio Lauffer
Vite
3 months ago
โก๏ธ Vite 8.0 is here! The most significant architectural change since Vite 2. โฌ Powered by
@rolldown.rs
bringing faster production builds and more consistency ๐ค๏ธ New features such as tsconfig paths and emitDecoratorMetadata support
vite.dev/blog/announc...
loading . . .
Vite 8.0 is out!
Vite 8 Release Announcement
https://vite.dev/blog/announcing-vite8
7
404
106
Is this the SAP office in Buenos Aires!? ๐ป
3 months ago
0
0
0
reposted by
Mauricio Lauffer
UI5
3 months ago
Curious who's reviewing this year's
#UI5con2026
session submissions? ๐ฏ Our nine experts with deep UI5 knowledge, community passion & hands-on experience are shaping the program! ๐ Meet the jury:
openui5.org/ui5con/speakerinfo.html
2
6
4
reposted by
Mauricio Lauffer
Visual Studio Code
3 months ago
Looking for a weekend project? Create an app using GitHub Copilot and submit it as part of the Creative Apps track for Agents League! Some prizes: ๐ $500 for the winner ๐๏ธ Digital badge for every submission โญ GitHub Copilot Pro for community picks Deadline: March 1 ๐
aka.ms/agentsleague
loading . . .
GitHub - microsoft/agentsleague: A high-energy developer challenge that brings an e-sports twist to agentic AI with live AI Battles, asynchronous community challenges, GitHub-based submissions and more!
A high-energy developer challenge that brings an e-sports twist to agentic AI with live AI Battles, asynchronous community challenges, GitHub-based submissions and more! - microsoft/agentsleague
https://aka.ms/agentsleague
0
7
2
reposted by
Mauricio Lauffer
Wes Bos
3 months ago
Oh noooo, the company that extracted our data for their models is having others extracting data for their models
17
504
87
jQuery v4 has been released on its 20th anniversary! Nothing new, nothing really exciting, but a lot of much needed cleaning up and modernisation. Will it land on UI5? Or, will SAP get rid of it before?
blog.jquery.com/2026/01/17/j...
loading . . .
jQuery 4.0.0 | Official jQuery Blog
jQuery: The Write Less, Do More, JavaScript Library
https://blog.jquery.com/2026/01/17/jquery-4-0-0/
3 months ago
0
1
0
reposted by
Mauricio Lauffer
Mike Doyle
3 months ago
4 more sleeps until
#SAPStammtischSYD
, this Thurs (26th Feb) @
greenwoodhotel.com
๐ป. The Greenwood is right on top of North Sydney ๐. We'll be there from 5 but no worries if you come later. Everyone is welcome!
community.sap.com/t5/sydney-ev...
0
7
1
reposted by
Mauricio Lauffer
re>โกCAP unconference
3 months ago
CAP community: We're still accepting speaker proposals for reCAP 2026! ๐ฃ Got great ideas, innovative projects, or practical solutions? We want to hear from YOU! Proposals due: 13.3.2026 Conference: 15.7.2026 Submit your proposal:
recap.cfapps.eu12.hana.ondemand.com
๐
#SAPCAP
#CodeConnect
#reCAP
0
5
5
reposted by
Mauricio Lauffer
UI5
4 months ago
๐ Join the next
#UI5ersLive
on Feb 12, 15:15 CET. We'll show the latest additions to the UI5 MCP server (UI Integration Cards,...) and to Joule for developers (Adaptation Project support). NEW: we will stream via YouTube. Grab the link, calendar entry & all details here:
openui5.org/events.html#...
0
4
4
reposted by
Mauricio Lauffer
Kelsey Hightower
4 months ago
Our industry loves to create problems in the name of innovation only to turn around and sell you a solution to the problem we just created.
10
166
26
reposted by
Mauricio Lauffer
Sarah Drasner
4 months ago
๐ฅ I did a drawing that breaks down Transformers in AI Spent a good amount of time on this one, breaking down concepts in a way that someone new to the subject could come away with basic high-level understanding. I hope it's useful!
11
249
31
reposted by
Mauricio Lauffer
Code Connect
4 months ago
Mark your calendars ๐: Code Connect 2026 is approaching! Join us for a trio of exciting events: July 14, 2026: UI5con July 15, 2026: reCAP July 16, 2026: HANA Tech Con Visitโฏour event page for all the details:
code-connect.dev
.
#CodeConnect
#UI5con
#reCAP
#HANATechCon
#SAPCommunity
0
13
7
reposted by
Mauricio Lauffer
Mike Doyle
5 months ago
Happy New Year Everyone! The next
#SAPStammtischSYD
will be on Thursday 26th Feb at The Greenwood Hotel. Please add to your ๐ now!
community.sap.com/t5/sydney-ev...
loading . . .
Sydney SAP Stammtisch 2602 (Thurs 26th Feb Greenwood Hotel)
The nextย #SAPStammtischSYD will be on Thursday 26th February at The Greenwood Hotel We had a great time last year at our inaugural Greenwood Stammtisch.ย The pub's right on top of North Sydney Station...
https://community.sap.com/t5/sydney-events/sydney-sap-stammtisch-2602-thurs-26th-feb-greenwood-hotel/ev-p/14308213
0
2
1
reposted by
Mauricio Lauffer
Liran Tal
5 months ago
open invite to jump on a call with me and chat about MCP servers for 15 minutes I'd be happy to also show you the Snyk MCP server for security and get your insights
0
3
2
@sapcommunity.bsky.social
#sap
#sapteched
#bangalore
#india
๐ฎ๐ณ
6 months ago
0
10
1
reposted by
Mauricio Lauffer
ESLint
6 months ago
ESLint in Copilot Code Review is now in public preview!
https://github.blog/chan...
0
3
1
reposted by
Mauricio Lauffer
OpenJS Foundation
7 months ago
With npm supply chain attacks on the rise, secure publishing practices are becoming a pressing concern for anyone maintaining npm packages. โ ๏ธ We've released updated guidance to help maintainers reduce exposure, strengthen release processes, and protect the ecosystem:
openjsf.org/blog/publish...
loading . . .
Publishing More Securely on npm: Guidance from the OpenJS Security Collaboration Space | OpenJS Foundation
The OpenJS Security Collaboration Space has been working closely with GitHubโs npm team to understand how new security features affect projects and maintainers, especially as threats and tools keep ev...
https://openjsf.org/blog/publishing-securely-on-npm
1
29
13
reposted by
Mauricio Lauffer
Mike Doyle
7 months ago
#masteringsap
#saptechedontour
left the best till last:
@mauriciolauffer.bsky.social
great session on
#sapui5
#sap
1
9
1
Mastering SAP TechEd on Tour in Sydney - day 1 (yesterday). Aussie community representing!
7 months ago
0
2
0
reposted by
Mauricio Lauffer
Rob Palmer
7 months ago
Node excitement ๐ Congrats to
@marcoippolito.dev
on making it official: type-stripping in Node 25 is now declared to be stable ๐ You can run: node index.ts The capabilities have not changed since Node 24. This is purely a maturity indicator.
add a skeleton here at some point
1
166
35
reposted by
Mauricio Lauffer
Gregor Wolf - 15 kWp โ๏ธ/ 13 kWh๐ก๐58 kWh ๐๐
7 months ago
New
#SAPCAP
Node.JS Package: CDS Enterprise Analytics Plugin
www.npmjs.com/package/@sap...
exposing CAP Services via the InA (Information Access) Protocoll
#SAP
0
9
2
reposted by
Mauricio Lauffer
Simon Coen
7 months ago
It was nice meeting you
@mauriciolauffer.bsky.social
in the beautiful
#GoldCoast
!
#SAPCommunity
1
11
1
reposted by
Mauricio Lauffer
Marco Ippolito
7 months ago
it's time
github.com/nodejs/node/...
4
27
6
reposted by
Mauricio Lauffer
Augustin Mauroy
7 months ago
If you have a codebase that uses an older version of Node.js, we have started to put together articles and tools to help you migrate your code.
nodejs.org/en/learn/get...
nodejs.org/en/blog/migr...
loading . . .
Node.js โ Userland Migrations
Node.jsยฎ is a free, open-source, cross-platform JavaScript runtime environment that lets developers create servers, web apps, command line tools and scripts.
https://nodejs.org/en/learn/getting-started/userland-migrations
0
28
8
reposted by
Mauricio Lauffer
Andrew Whalley
7 months ago
It's time to make HTTPS the web's default, and reap the full security benefit from years worth of HTTPS adoption!
security.googleblog.com/2025/10/http...
loading . . .
HTTPS by default
One year from now, with the release of Chrome 154 in October 2026, we will change the default settings of Chrome to enable โAlways Use Secu...
https://security.googleblog.com/2025/10/https-by-default.html
3
91
33
reposted by
Mauricio Lauffer
nixCraft
7 months ago
History Of
#Linux
Project: a timeline with cards and images to illustrate how Linux came to be
github.com/MarkGotLasag...
2
72
14
reposted by
Mauricio Lauffer
DJ Adams
7 months ago
Celebrating a couple of great
#Devtoberfest
sessions on
#SAPCAP
, from
@mauriciolauffer.bsky.social
and Christian Georgi, via a quick blog post all about getting succinct output when testing your CAP services. ๐ Share & enjoy
qmacro.org/blog/posts/2...
loading . . .
Quiet cds test output - two ways
Reducing CAP server log output during tests, in two different ways, via a profile encapsulated set of log level configurations, or via the new cds test command.
https://qmacro.org/blog/posts/2025/10/20/quiet-cds-test-output-two-ways/
2
3
1
reposted by
Mauricio Lauffer
DJ Adams
7 months ago
Here's another great
#Devtoberfest
session from Friday (
#SAPCAP
day) from
@mauriciolauffer.bsky.social
on testing CAP Node.js apps with cds.test - and yes Mauricio, the REPL use made me ๐ป
www.youtube.com/watch?v=6kfi...
0
2
1
reposted by
Mauricio Lauffer
UI5
8 months ago
๐ We've dropped a new, in-depth guide to Component Instantiation. Learn how and when to instantiate components, and migrate to modern async methods to write cleaner, future-proof code. ๐ OpenUI5:
sdk.openui5.org/topic/346599...
๐ SAPUI5:
ui5.sap.com#/topic/34659...
0
3
3
@sapcommunity.bsky.social
would be possible to have Devtoberfest playlists per year? It's quite hard to find the year you want in a list with +400 videos ๐ข
www.youtube.com/playlist?lis...
8 months ago
3
5
0
reposted by
Mauricio Lauffer
John Patterson
8 months ago
Made me lol
0
3
1
#sap
#sapbtp
#sapcap
#capirates
#testing
#nodetest
#jest
#devtoberfest
๐ดโโ ๏ธ
community.sap.com/t5/devtoberf...
loading . . .
๐ Testing SAP CAP Node.js apps with cds.test
This session provides a comprehensive overview of how to build and maintain automated tests for SAP CAP Node.js apps. From theoretical concepts to practical, hands-on application using the cds.test fr...
https://community.sap.com/t5/devtoberfest/testing-sap-cap-node-js-apps-with-cds-test/ev-p/14214726
8 months ago
0
4
0
#sap
#sapfiori
#sapui5
#ui5
#testing
#e2e
#webdriverio
#wdio
#wdi5
#devtoberfest
community.sap.com/t5/devtoberf...
loading . . .
๐ฃ Wdi5 v3: Faster, Smoother, Smarter
This session will introduce whatโs new in WebdriverIO v9 and introduce the new wdi5 v3. Itโll cover the new BIDI protocol and the differences compared to DevTools. The session will also cover what has...
https://community.sap.com/t5/devtoberfest/wdi5-v3-faster-smoother-smarter/ev-p/14219010
8 months ago
1
3
0
reposted by
Mauricio Lauffer
nixCraft
8 months ago
Suddenly, Mfs are submitting PRs with flawless grammar, detailed steps to reproduce it, and all sorts of technical references. The detailed report is 15 page long. Me:
0
80
7
I love this pic! ๐
#codeconnect2025
#ui5Con
10 months ago
1
7
0
reposted by
Mauricio Lauffer
Socket
10 months ago
๐ npm Adopts OIDC for Trusted Publishing: npm joins PyPI, RubyGems, and
Crates.io
in enhancing security by enabling secure package publishing directly from CI/CD workflows, eliminating long-lived tokens. Read more โ
socket.dev/blog/npm-tru...
#NodeJS
#JavaScript
0
1
3
reposted by
Mauricio Lauffer
Safia Abdalla
10 months ago
There's enough horrible things happening in the world. Please don't have your API return a 200 OK with an error code and add to that list.
4
26
7
Load more
feeds!
log in