@hikhvar @sszuecs I agree that you should vet updates to your dependencies, but the cost of making sure that your vendored code is updated with the latest upstream changes is less effort than taking a quick look over the diff of a library update.
Mastodon is the best way to keep up with what's happening.
Follow anyone across the fediverse and see it all in chronological order. No algorithms, ads, or clickbait in sight.