aboutcode-org / aboutcode-org/scancode-toolkit

Test we can support very large npm module dependencies and other npm-related less common layouts

Open
#3,872 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Python
Stars
2.6k
Forks
791
Avg merge
1d 12h
Merged PRs (30d)
5

Description

See https://dev.to/atian25/in-depth-of-tnpm-rapid-mode-how-could-we-fast-10s-than-pnpm-3bpp

>
> Dependencies Installation
>
> Let's take vuepress@1.9.2 as an example. It has about 1000 distinct dependencies, taking up 170MB disk spaces with 18542 files.
>
> But if we install the dependencies in a nested way following npm@2's implementation, we'll end up installing as many as 3626 dependency packages. There are more than 2000 redundant dependencies. And the actual disk footprint is 523MB with 60257 files.

See also:
- https://rushjs.io/pages/advanced/phantom_deps/
- https://rushjs.io/pages/advanced/npm_doppelgangers/
- https://github.com/microsoft/rushstack/tree/main/apps/lockfile-explorer

> A "phantom dependency" occurs when a project uses a package that is not defined in its package.json file.

- pnpm links

> Given so many side effects of the 'flattening dependencies', pnpm proposed an alternative solution, by means of symbolic + hard links.

- cnpm, pnpm-like package manager

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.