@dalias While I think you've got a point here, the main caveat I'd offer is around security vulnerabilities. I keep finding "no dependency" programs (which in practice means they vendored, or just copy-pastad, some code) with out-of-date and vulnerable versions of things.
If every program did this, the process of stamping out those vulns would be very involved.