Best Practices
Electron App Supply Chain Security Posture
Electron apps ship Chromium, Node.js, and your entire npm tree to a user's desktop, running with the privileges of the logged-in user. The supply chain implications are severe enough that they deserve their own category of threat model.
Sep 12, 20237 min read