Not discrediting Open Source Software, but nothing is 100% safe.
Have you seen the dependency trees of projects in npm? I really doubt most packages are audited on a regular basis.
Have you seen the dependency trees of projects in npm? I really doubt most packages are audited on a regular basis.