@apideck/better-ajv-errors
Human-friendly JSON Schema validation for APIs
15
Versions
MIT
License
No
Install Scripts
Missing
Provenance
Supply chain provenance
Status for the latest visible version.
No SLSA provenance
npm registry signatures
gitHead linked
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
gdewildenicklloydritiksingh7samzanilagonijakeprinsgmenoiaa
Keywords
apideckajvjsonschemajson-schemaerrorshuman
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| publish-pattern | rapid-publish | AI (publish-pattern): Package has 1800+ days of history and 6.8M weekly downloads; rapid successive publishes are consistent with automated release tooling (np) used by this maintainer, not malicious activity. | ai | |
| maintainer-change | maintainer-added | AI (maintainer-change): Package is scoped to @apideck org; adding trinix is consistent with internal team expansion. No content changes accompany the maintainer addition. | ai | |
| dependencies | unvetted-dep:jsonpointer | AI (dependencies): jsonpointer is a well-known, widely-used RFC 6901 utility; its use in a JSON Schema error formatter is entirely appropriate and poses no security risk. | ai | |
| provenance | no-provenance | AI (provenance): Package predates widespread Sigstore provenance adoption; 1800+ day old package with 6.8M weekly downloads and clean history. Absence of provenance is not a risk signal here. | ai |