npm パッケージの版管理が、パスワードなしでできるように
💬 In one line
掲示板で自動承認されたら、その時だけ使える一時的な認証票で、パッケージの「最新版」などの目印を変えられるようになりました。
これまでは手動の認証票を別に用意する必要がありました。
✨ Highlights
-
長く使える認証票が不要に
掲示板で承認されたときだけ有効な一時的な認証票で版管理ができるので、盗まれる危険が減ります。
-
設定で機能のオン・オフを選べる
今までのやり方は変わらないままで、使いたい所だけ新しい方法に切り替えられます。
🛠️ What it means for your work
パッケージを公開した後、「最新版はこれ」という目印をつけたり、テスト版のポインタを更新したりする時に、パスワードなしで自動でできるようになります。設定画面で『npm の版管理を許可する』をオンにすれば、そのワークフローから実行された操作が対象になります。
⚠️ Watch out for
この機能はデフォルトでオフなので、新しい設定でも既存の設定でも、明らかに有効にするまでは使われません。
🔗 Original
This page is an AI summary of the official release notes. The full original text is not reproduced here.
Read the GitHub https://github.blog/changelog/2026-09-30-opt-in-dist-tag-permissions-for-npm-trusted-publishing release notes →🔗 Related hubs and releases in the same category
🔔 Get the next one
Get plain-Japanese write-ups of new GitHub releases without opening the site (twice a day). No email address required.
What is RSS: New items arrive automatically wherever you already read (a reader such as Feedly, Slack, n8n). Copy the URL above and paste it in — no sign-up, no cost.
The headline and summary are an AI's Japanese rendering of each company's official announcement. They can diverge from the original. For the exact wording, follow the link to the official page. Terms of Use