Continue
user

Inedo Blog


Navigation
CategoryPackage Management
Featured

Package Management

How File Shares for OSS Packages Create More Problems Than They Solve

Posted on December 11th, 2025.

If you’re managing projects that rely on multiple teams delivering consistent components, you’ve probably noticed the chaos that comes from storing build artifacts and libraries in shared folders. Each team has its own way of organizing files, versions get mixed up, and no one really knows which asset the project should be using....

Featured

Package Management

How Pulling OSS Packages Directly Leads to Chaos

Posted on December 9th, 2025.

You’re likely pulling OSS packages straight from NuGet.org, npmjs.com, or PyPI.org, via the CLI. It’s the path of least resistance and the fastest way to get what your teams need. But without something sitting in the middle, it’s hard to know exactly what’s being pulled in or whether it meets your org’s requirements. When you pull OSS...

Featured

Package Management

How Team-Specific Registries Lead to Organization Wide Friction

Posted on December 4th, 2025.

Internal registries are a smart way to manage OSS packages. They let you curate reusable code for your apps and cut down on risky repeat pulls from the wild. But when every team spins up its own siloed registry and tooling sprawls across the org, you end up with duplicate work, outdated packages, and security headaches that didn’t need...

Featured

Package Management

How Downloading Without Curation Leads to Security Risks 

Posted on November 25th, 2025.

Many teams pull open-source packages into their projects without thinking twice. They might stash them locally, pass them around through CI pipelines, or build and test on their own. But without internal repositories or any guardrails in place, each team ends up working in its own bubble. That kind of flexibility can feel great at first,...

Featured

Package Management

How Using GitHub Packages Creates Duplicative Work Across Teams

Posted on November 11th, 2025.

Using GitHub Packages for internal package sharing is a common choice for many teams. Since it’s already part of the GitHub ecosystem, teams adopt it naturally, without spending much time looking over other options. Each project manages its own dependencies, and publishing or consuming internal libraries is relatively straightforward. On...

Featured

Package Management

Why Team Rules Without Central Governance Don’t Scale

Posted on November 4th, 2025.

Many organizations think that letting independent development teams manage their own package workflows is efficient …but in practice, it’s not.  Every team tends to develop “its own way” of versioning, approving, and documenting packages. One might use a NuGet Server, while another stores artifacts on a shared drive....

Featured

Package Management

How Using GitLab Packages Leads to Duplicative Work and Operational Friction

Posted on September 16th, 2025.

The GitLab Package Registry is one of the more popular alternatives to GitHub Packages for sharing internal libraries. Like GitHub Packages, it’s built right into the platform, feels familiar, and works smoothly with GitLab CI/CD. For teams already using GitLab, it’s an easy pick. On the surface, it all seems pretty seamless: each...