Ulises Gascón
@ulisesgascon.com
590 followers 250 following 120 posts
#OpenSource Maintainer (@nodejs.org, @expressjs.bsky.social...), #TC39 Delegate and #Maker | He/Him
Posts Media Videos Starter Packs
Pinned
ulisesgascon.com
🌍 Hello, BlueSky! 🤠

I'm Ulises Gascón from Spain! Passionate about #Nodejs, #Express, #JavaScript, and the world of #OpenSource.

I spend my days building, maintaining, and improving tools and libraries for our #devCommunity 🫶

👉 Check out my projects and support my work:
github.com/sponsors/Uli...
Ulises Gascón, smiling widely in a red shirt and headphones, proudly holds up his multi-layered robotic creation. Behind him is a Manhattan map on the wall and shelves filled with tech gadgets and pop culture figures (like 'This is fine' character), reflecting his passion for technology and open-source projects.
Reposted by Ulises Gascón
openjsf.org
Lit is joining OpenJS as an Impact Project! 🔥

Donated by Google Open Source, Lit powers 10,000+ custom elements inside Google and is loved for its fast, standards-based web components.

Welcome to the OpenJS family, @lit.dev!

Learn more: hubs.la/Q03Np1Mm0
Lit Project Moves to OpenJS Foundation with Google Open Source Contribution | OpenJS Foundation
Lit joins a neutral home within the OpenJS Foundation community
hubs.la
ulisesgascon.com
♥️ I’m very happy to announce that @weorbitant.bsky.social is now a Platinum Sponsor!

They’re fueling my #OpenSource work and helping make my journey as a #maintainer more #sustainable.

Huge thanks to the @weorbitant.bsky.social team for the support and trust 🙏

orbitant.com/en/
Home - Orbitant
We build robust engineering solutions with business insights.
orbitant.com
Reposted by Ulises Gascón
jordan.har.band
Don’t worry, this is going to involve dropping lots of no-longer-needed APIs :-D
openjsf.org
Lodash is entering a new chapter 📖 With investment from @sovereign.tech the project is getting key updates for security, modernization, and community-led governance.

Details: hubs.la/Q03NrdfR0
ulisesgascon.com
✨ Gracias al increíble trabajo de @jddalton.bsky.social, #Lodash sigue siendo una de las librerías más confiables de #JavaScript.

Ahora ampliamos la #colaboración, la #gobernanza y la #seguridad para garantizar su futuro.

blog.ulisesgascon.com/el-futuro-de...
blog.ulisesgascon.com
ulisesgascon.com
✨ Thanks to @jddalton.bsky.social’s incredible work, #Lodash remains one of the most trusted libraries in #JavaScript.

We’re now expanding #collaboration, #governance, and #security to ensure its future.

blog.ulisesgascon.com/the-future-o...
blog.ulisesgascon.com
Reposted by Ulises Gascón
openjsf.org
New Era for React = Stronger JavaScript Ecosystem 💙

React doesn’t live in isolation - It works alongside Node.js, Electron, webpack, and more. A dedicated foundation under the Linux Foundation means more collaboration, security, and sustainability across the ecosystem.

hubs.la/Q03MylxX0
Celebrating the Launch of the React Foundation | OpenJS Foundation
A New Era for React, and a Stronger JavaScript Ecosystem
hubs.la
Reposted by Ulises Gascón
rginn206.bsky.social
So cool to be in the room at React Conf when the new React Foundation was announced 💙 with its new home at the Linux Foundation. At @openjsf.org we’re celebrating this big win for JavaScript communities.
openjsf.org
New Era for React = Stronger JavaScript Ecosystem 💙

React doesn’t live in isolation - It works alongside Node.js, Electron, webpack, and more. A dedicated foundation under the Linux Foundation means more collaboration, security, and sustainability across the ecosystem.

hubs.la/Q03MylxX0
Celebrating the Launch of the React Foundation | OpenJS Foundation
A New Era for React, and a Stronger JavaScript Ecosystem
hubs.la
Reposted by Ulises Gascón
crutchcorn.dev
React is being fostered going forward with a new foundation!
React Foundation
Reposted by Ulises Gascón
reaper.is
After using it for almost a year, I guess I can recommend it to people

usebruno.com
usebruno.com
Reposted by Ulises Gascón
darcyclarke.me
ℹ️ Don't know who needs to hear this but npm has had a --before= flag since v6.9.0 (02/2019): github.com/npm/cli/blob/v…

Setting a relative date is easy w/:
$ npm install --before="$(date -v -7d)"
# & only get registry deps that are over a week olddocs.npmjs.com/cli/v11/usin...re
https://github.com/npm/cli/blob/v…
Reposted by Ulises Gascón
notwes.bsky.social
Lots of GREAT progress and discussion on our @expressjs.bsky.social Performance Working Group. Thanks everyone who is participating as I think this is the second most (security comes first) impactful thing we could be working on.

For anyone interested in helping out: github.com/expressjs/pe...
GitHub - expressjs/perf-wg: Performance Working Group
Performance Working Group. Contribute to expressjs/perf-wg development by creating an account on GitHub.
github.com
ulisesgascon.com
🚩 Keep up to date with @nodejs.org by watching the #Nodejs Security Working Group's last meeting on YouTube!

www.youtube.com/watch?v=2_ex...
2025-09-11 - Security Team meeting
YouTube video by node.js
www.youtube.com
Reposted by Ulises Gascón
expressjs.bsky.social
The maintainer of one of our dependencies, debug, was the target of a phishing attack resulting in the release of [email protected] with malware.

Supply chain security is all of our responsibilities. Be careful out there, and for today don't update your deps.

socket.dev/blog/npm-aut...
npm Author Qix Compromised via Phishing Email in Major Suppl...
npm author Qix’s account was compromised, with malicious versions of popular packages like chalk-template, color-convert, and strip-ansi published.
socket.dev
ulisesgascon.com
🍿 Exciting news! The @openjsf.org Foundation #AI Collaboration Space holds its first meeting next week.

A community hub where developers, maintainers and policy thinkers explore how #JavaScript connects billions of people to #AI.

github.com/openjs-found...
GitHub - openjs-foundation/ai-collab-space: A community hub exploring how JavaScript powers the future of AI.
A community hub exploring how JavaScript powers the future of AI. - openjs-foundation/ai-collab-space
github.com
ulisesgascon.com
🗞️ Exciting news: #webpack now has a Security Working Group!

We’ll:
👉 Define triage & policies
👉 Guide secure plugin development
👉 Improve report processes
👉 Promote best practices
👉 Support #OpenJS & #OpenSSF initiatives

github.com/webpack/secu...
GitHub - webpack/security-wg: Webpack Security Working Group
Webpack Security Working Group. Contribute to webpack/security-wg development by creating an account on GitHub.
github.com
Reposted by Ulises Gascón