← Home

@acidify/core

Kotlin NTQQ protocol implementation, ported to JS

40
Versions
GPL-3.0-only
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

wesley-young

Keywords

qqoicq

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff encoded-string-file:dist/acidify-acidify-core.mjs AI (source-diff): Encoded strings are Kotlin/JS transpiler output (decodeVarLenBase64 pattern); stable false positive for this Kotlin-compiled package. ai
source-diff net-exec-file:dist/acidify-acidify-core.mjs AI (source-diff): Large bundled Kotlin/JS stdlib output; polyfill patterns are not malicious network+exec behavior. ai
source-diff encoded-string-file:dist/acidify-acidify-core.js AI (source-diff): Encoded strings are Kotlin/JS compiled Unicode range tables (decodeVarLenBase64), not obfuscated payloads. Stable pattern for this package. ai
typosquat typosquat.levenshtein:cors AI (typosquat): Scoped package @acidify/core is a QQ protocol library; name similarity to 'cors' is coincidental, not impersonation. ai
phantom-deps phantom-dep:ws AI (phantom-deps): ws is a declared runtime dep; likely consumed via bundled output rather than direct import. ai
phantom-deps phantom-dep:fflate AI (phantom-deps): fflate is a declared runtime dep; likely consumed via bundled output rather than direct import. ai

Versions (showing 40 of 40)

Version Deps Published
1.6.3 2 / 2
1.6.1 2 / 2
1.6.0 2 / 2
1.5.1 2 / 2
1.5.0 2 / 2
1.4.0 2 / 2
1.3.2 2 / 2
1.3.1 2 / 2
1.3.0 2 / 2
1.2.1 2 / 2
1.2.0 2 / 2
1.1.4 2 / 2
1.1.3 2 / 2
1.1.2 2 / 2
1.1.1 2 / 2
1.1.0 2 / 2
1.0.1 2 / 2
1.0.0 2 / 2
0.10.2 2 / 2
0.10.1 2 / 2
0.10.0 2 / 2
0.9.5 2 / 2
0.9.4 2 / 2
0.9.3 2 / 2
0.9.1 1 / 2
0.9.0 1 / 2
0.8.1 1 / 2
0.8.0 1 / 2
0.7.0 1 / 2
0.6.1 1 / 2
0.6.0 1 / 2
0.5.4 1 / 2
0.5.3 1 / 2
0.5.2 1 / 2
0.5.1 1 / 2
0.5.0 1 / 2
0.4.1 1 / 2
0.4.0 1 / 2
0.3.4 1 / 2
0.3.3 1 / 2

v1.6.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.4.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.3.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.3.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.3.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.10.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.10.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.10.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.9.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.9.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.9.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.9.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.9.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.8.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.8.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.