Updating my priors: the true cost of a new dependency in an npm project is at least 5x the initial install time, due to inevitable debugging of downstream issues and dealing with cryptic errors from transitive dependencies.