We’ve seen more issues with Yarn in CI & prod than with npm 5.x
Both are great projects but npm is significantly more mature.
We do use private scoped packages a lot so that might have some bearing on it.
Would be interested in specifics of your reliability and failure problems too.
Yarn claims to be deterministic but I still need to `rm -rf node_modules` regularly when I run into weird build errors. It's quite strange.
I had mistakenly setup our CI to do that at one point and it caused a lot of hard to debug problems.
Still have to do the install on a deploy server.
What kind of problems?
yarn workspaces works a treat though.
I can't think of a single package management system that works well and people seem to love.
Major version numbers in Javascript are defined using SEMVER. What this means is that a major version only implies that a breaking change was included (e.g. the API contract is different). It doesn't really have anything to do with a classic pattern where V2 is seen as the second phase, and V5 is seen as the fifth phase, etc, of a project.