A Andres Hernandez
Home Projects Portfolio Dashboard Export PDF Log in

Languages

English
172

Filtered Posts (Clear all)

September 25, 2026 0 JavaScript Node.js

Keeping Dependencies Fresh: The Importance of Automated Upgrades

Dependency management is one of those thankless tasks that quietly keeps your application running smoothly. Recently, while working on the Astro-portfolio project, we took a proactive step to address technical debt by bumping our bundler version from 4.46.2 to 4.59.0.

The Why Behind the Bump

It is easy to let dependencies drift. Over time, minor versions accumulate, bringing performance improvements, critical security patches, and compatibility updates for the newer JavaScript runtimes.

September 10, 2026 0 JavaScript Node.js

Keeping SVG Assets Lean: Why Version Upgrades Matter

The Dependency Debt

Dependency management is often seen as a background chore until a build starts failing or performance degrades. In the Gothsec/Astro-portfolio project, we recently addressed a minor version update for our SVG processing library. While individual patch updates might seem trivial, they represent the front line of defense against bloated bundles and latent security vulnerabilities.

The Update Strategy

Our portfolio site relies heavily on vector graphics for responsive

September 09, 2026 0 TypeScript Node.js

Maintaining Developer Velocity with Automated Dependency Management

Staying Current

Dependency rot is a silent killer of productivity. In our Astro-portfolio project, we recently completed a routine update to our development environment to ensure our tooling remains secure and performant. Keeping base definitions up to date is not just about security patches; it's about avoiding the dreaded 'dependency hell' when moving to major framework versions.

The Process

We utilize automated tooling to identify and apply patches to our project configuration.

August 22, 2026 0 JavaScript Node.js

Standardizing Dependency Management in Promptd

Managing dependencies in a modern JavaScript project is like organizing a library; without a proper catalog, you eventually lose track of which versions are on the shelves and why they are there. In the Gothsec/promptd project, we recently took a step toward stricter reproducibility by introducing a pnpm-lock.yaml file.

The Problem of Uncertainty

When working on Node.js projects, the package.json file defines the dependencies your application needs.

April 09, 2026 0 JavaScript Node.js

Deployment Authorization Workflow in svgl Project

This post examines the deployment authorization workflow within the svgl project, focusing on how team members manage and authorize deployments. While specific functionalities are not detailed, the process highlights a key aspect of collaborative software development: ensuring proper authorization and oversight during deployment.

The Authorization Request

When a team member, such as @garaven, attempts to deploy a commit, the system initiates an authorization request.

Andres Hernandez

Andres Hernandez

Product-focused Software Developer specializing in the React ecosystem (Next.js, TypeScript). Proven experience contributing to high-impact open source projects and building scalable web applications. Committed to clean code, UI/UX design principles, and SOLID architecture to solve complex problems.