
About this episode
Scott and Wes break down a chaotic week in dev news — the Claude Code source leak, a nasty Axios npm supply chain hack, and Railway’s private cache exposure — plus how to keep these nightmare scenarios from hitting your own projects.
Show Notes
00:00 Welcome to Syntax!
00:55 Claude Code Leaked!
Wes’ X Post
Apple Source Code Video
05:42 Burning through Claude Code token limits.
Reddit Thread
08:57 Axios hacked!
Step Security
pnpm Supply Chain Security
pnpm minimumReleaseAge
16:13 Pretext blew up!
Pretext.js Demos
Wes’ Demo
27:24 Railway shared private cache.
Railway Incident Report
31:54 Sick Picks & Shameless Plugs.
Sick Picks
Scott: Kindle Colorsoft Kids
Wes: UGREEN 200W 8-Port GaN USB C Charger Block, Wyze Headphones
Shameless Plugs
Scott: Syntax on YouTube
Hit us up on Socials!
Syntax: X Instagram Tiktok LinkedIn Threads
Wes: X Instagram Tiktok LinkedIn Threads
Scott: X Instagram Tiktok LinkedIn Threads
Randy: X Instagram YouTube Threads
Get every episode summarized
Each time Syntax - Tasty Web Development Treats publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Syntax - Tasty Web Development Treats

1037: WebMCP is here (and you should care)
Syntax - Tasty Web Development Treats
Sep 9, 202656:30completed

1036: Cursor & OpenAI Break Up
Syntax - Tasty Web Development Treats
Sep 7, 20261:12:19pending

1035: Why everyone is moving to Stylex?
Syntax - Tasty Web Development Treats
Sep 2, 202626:36pending

1034: Omarchy Quattro Release
Syntax - Tasty Web Development Treats
Aug 31, 20261:15:47pending