upvote
Show HN: Safe-install – Docker-first install-time hardening for pip and NPM

(github.com)