@actuate-media/cms-admin
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| source-diff | obfuscated-file:dist/components/forms/WebhooksPanel.js | AI (source-diff): Readable compiled TS/React source, not obfuscated; long lines are just compiler output. | ai | |
| source-diff | large-new-source-files | AI (source-diff): Expected growth for active dev of a UI component package. | ai | |
| publish-pattern | new-deps-added | AI (publish-pattern): @sentry/react is a well-known, legitimate monitoring dependency. | ai | |
| source-diff | obfuscated-file:dist/views/settings/brand-voice/BrandVoiceAlignmentPanel.js | AI (source-diff): Sample shows plain readable React source, not true obfuscation. | ai | |
| source-diff | obfuscated-file:dist/views/settings/BrandVoiceCard.js | AI (source-diff): Readable compiled JSX with comments and imports; long lines are bundler output, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/views/settings/SeoSettingsTab.js | AI (source-diff): TypeScript-compiled ESM output; long lines from bundled imports, not obfuscation. Stable pattern for this package. | ai | |
| source-diff | obfuscated-file:dist/views/settings/UpdatesTab.js | AI (source-diff): Long lines are TypeScript-compiled JSX output, not obfuscation; readable code with comments throughout. | ai | |
| source-diff | obfuscated-file:dist/views/users/UserDetailDrawer.js | AI (source-diff): Same pattern: minified-looking but clearly readable compiled TypeScript/JSX with inline documentation. | ai | |
| source-diff | obfuscated-file:dist/views/settings/SessionPolicyCard.js | AI (source-diff): Minified TypeScript/JSX build output; readable code with standard imports, not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/views/settings/BrandingCard.js | AI (source-diff): Readable compiled ESM; long lines from inlined Tailwind classNames, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/views/profile/AccountSecurity.js | AI (source-diff): Readable compiled ESM; long lines from inlined Tailwind classNames, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/components/forms/EntryDetailDrawer.js | AI (source-diff): Readable compiled ESM; long lines from inlined Tailwind classNames, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/views/seo/OverviewTab.js | AI (source-diff): Readable compiled ESM; long lines from inlined Tailwind classNames, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/components/seo/RedirectEditorDrawer.js | AI (source-diff): Readable compiled ESM; long lines from inlined Tailwind classNames, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/views/seo/RedirectsTab.js | AI (source-diff): Readable compiled ESM; long lines from inlined Tailwind classNames, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/components/seo/SeoEditorDrawer.js | AI (source-diff): Readable compiled ESM; long lines from inlined Tailwind classNames, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/views/Posts/NewPostTypeInstructions.js | AI (source-diff): File is readable TypeScript-compiled ESM with clear comments and logic; long lines from JSX, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/components/SEOConfigPanel.js | AI (source-diff): Readable TypeScript-compiled React component; long lines are JSX output, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/components/CoauthorResultPopover.js | AI (source-diff): Readable TypeScript-compiled React component; long lines are JSX output, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/components/SchedulePublishDialog.js | AI (source-diff): Normal TypeScript-compiled React component; long lines are bundler output, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/views/ApiKeys.js | AI (source-diff): Standard tsc-compiled JSX output; long lines are from bundled imports, not obfuscation. Stable pattern for this package. | ai | |
| source-diff | obfuscated-file:dist/views/page-builder/AIGenerateDialog.js | AI (source-diff): Standard TSC/JSX compiled output with long lines; readable React component code, not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/views/page-builder/PageSettings.js | AI (source-diff): Standard TSC/JSX compiled output with long lines; readable React component code, not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/views/page-builder/BuilderToolbar.js | AI (source-diff): Standard TSC/JSX compiled output with long lines; readable React component code, not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/views/page-builder/NodeSettings.js | AI (source-diff): Standard TSC/JSX compiled output with long lines; readable React component code, not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/views/page-builder/SavedSections.js | AI (source-diff): Standard TSC/JSX compiled output with long lines; readable React component code, not obfuscated. | ai | |
| phantom-deps | phantom-dep:@radix-ui/react-switch | AI (phantom-deps): React component library; config-based imports are normal for UI packages. | ai | |
| phantom-deps | phantom-dep:@actuate-media/cms-core | AI (phantom-deps): Monorepo workspace dependency; expected pattern in multi-package repos. | ai | |
| phantom-deps | phantom-dep:@radix-ui/react-accordion | AI (phantom-deps): Config-referenced UI component; stable for this package. | ai | |
| phantom-deps | phantom-dep:react-dom | AI (phantom-deps): Config-referenced peer; stable for this UI library package. | ai |
Versions (showing 100 of 113)
| Version | Deps | Published |
|---|---|---|
| 0.81.0 | 38 / 20 | |
| 0.80.1 | 38 / 20 | |
| 0.80.0 | 38 / 20 | |
| 0.79.1 | 38 / 20 | |
| 0.79.0 | 38 / 20 | |
| 0.78.0 | 38 / 20 | |
| 0.77.0 | 38 / 20 | |
| 0.76.7 | 38 / 20 | |
| 0.76.6 | 38 / 20 | |
| 0.76.5 | 40 / 18 | |
| 0.76.4 | 40 / 11 | |
| 0.76.3 | 40 / 11 | |
| 0.76.2 | 40 / 11 | |
| 0.76.1 | 40 / 11 | |
| 0.73.0 | 40 / 11 | |
| 0.71.1 | 40 / 11 | |
| 0.66.0 | 40 / 11 | |
| 0.65.0 | 40 / 11 | |
| 0.64.0 | 40 / 11 | |
| 0.63.2 | 40 / 11 | |
| 0.63.1 | 40 / 11 | |
| 0.63.0 | 40 / 11 | |
| 0.62.0 | 40 / 11 | |
| 0.61.0 | 40 / 11 | |
| 0.60.0 | 40 / 11 | |
| 0.59.0 | 40 / 11 | |
| 0.58.1 | 40 / 11 | |
| 0.58.0 | 39 / 11 | |
| 0.57.3 | 39 / 11 | |
| 0.57.2 | 39 / 11 | |
| 0.57.1 | 39 / 11 | |
| 0.57.0 | 39 / 11 | |
| 0.56.2 | 39 / 11 | |
| 0.56.0 | 39 / 11 | |
| 0.54.0 | 39 / 11 | |
| 0.53.0 | 39 / 11 | |
| 0.52.1 | 39 / 11 | |
| 0.52.0 | 39 / 11 | |
| 0.51.0 | 39 / 11 | |
| 0.50.0 | 39 / 11 | |
| 0.49.4 | 39 / 11 | |
| 0.49.3 | 39 / 11 | |
| 0.49.1 | 39 / 11 | |
| 0.49.0 | 39 / 11 | |
| 0.48.0 | 39 / 11 | |
| 0.47.0 | 39 / 11 | |
| 0.46.0 | 39 / 11 | |
| 0.45.0 | 39 / 11 | |
| 0.44.0 | 39 / 11 | |
| 0.43.0 | 39 / 11 | |
| 0.42.4 | 39 / 11 | |
| 0.42.2 | 39 / 11 | |
| 0.42.1 | 39 / 11 | |
| 0.42.0 | 39 / 11 | |
| 0.41.0 | 39 / 11 | |
| 0.40.1 | 39 / 11 | |
| 0.40.0 | 39 / 11 | |
| 0.39.0 | 39 / 11 | |
| 0.38.1 | 39 / 11 | |
| 0.38.0 | 39 / 11 | |
| 0.37.2 | 39 / 11 | |
| 0.37.1 | 39 / 11 | |
| 0.37.0 | 39 / 11 | |
| 0.36.1 | 39 / 11 | |
| 0.36.0 | 39 / 11 | |
| 0.35.0 | 39 / 11 | |
| 0.34.0 | 39 / 11 | |
| 0.33.0 | 39 / 11 | |
| 0.32.0 | 39 / 11 | |
| 0.31.0 | 39 / 11 | |
| 0.30.0 | 39 / 11 | |
| 0.29.0 | 39 / 11 | |
| 0.28.0 | 38 / 11 | |
| 0.27.0 | 38 / 11 | |
| 0.26.0 | 38 / 11 | |
| 0.25.0 | 38 / 11 | |
| 0.24.0 | 38 / 11 | |
| 0.23.0 | 38 / 11 | |
| 0.22.0 | 38 / 11 | |
| 0.21.1 | 38 / 11 | |
| 0.21.0 | 38 / 11 | |
| 0.20.0 | 38 / 11 | |
| 0.19.0 | 38 / 11 | |
| 0.18.0 | 38 / 11 | |
| 0.17.0 | 38 / 11 | |
| 0.16.1 | 38 / 11 | |
| 0.16.0 | 38 / 11 | |
| 0.15.0 | 38 / 11 | |
| 0.14.1 | 38 / 11 | |
| 0.14.0 | 38 / 11 | |
| 0.13.0 | 38 / 11 | |
| 0.12.1 | 38 / 11 | |
| 0.12.0 | 31 / 9 | |
| 0.11.0 | 31 / 8 | |
| 0.10.0 | 31 / 7 | |
| 0.9.0 | 31 / 7 | |
| 0.8.2 | 31 / 7 | |
| 0.8.1 | 31 / 7 | |
| 0.8.0 | 31 / 7 | |
| 0.7.3 | 31 / 7 |
v0.81.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.80.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.80.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.79.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.79.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.78.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.77.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.76.7
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.76.6
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.76.5
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.76.4
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.76.3
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.76.2
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.76.1
8 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.73.0
9 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.71.1
9 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.66.0
3 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.65.0
3 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.64.0
3 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.63.2
3 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.63.1
3 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.63.0
3 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.62.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.61.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.60.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.59.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.58.1
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.