← Home

@apify/utilities

51
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

mtrunkatjancurnpetrpatekmnmkngjaroslavhejlekdrobnikjmetalwarrior665fnesvedab4nanjanbucharapify-service-account

Keywords

apify

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
semgrep semgrep:api-obfuscation-reflect AI (semgrep): Reflect.get used for safe error property access in retry logic; not obfuscation. ai
semgrep semgrep:base64-decode AI (semgrep): Base64 decode is part of a documented crypto/decryption utility in the Apify shared lib. ai

Versions (showing 51 of 128)

View all versions
Version Deps Published
2.35.1 2 / 1
2.35.0 2 / 1
2.34.2 2 / 1
2.34.1 2 / 1
2.34.0 2 / 1
2.33.1 2 / 1
2.32.2 2 / 1
2.32.1 2 / 1
2.32.0 2 / 1
2.31.2 2 / 1
2.31.1 2 / 1
2.31.0 2 / 1
2.30.0 2 / 1
2.29.4 2 / 1
2.29.3 2 / 1
2.29.2 2 / 1
2.29.1 2 / 1
2.29.0 2 / 1
2.28.0 2 / 1
2.27.0 2 / 1
2.26.1 2 / 1
2.26.0 2 / 1
2.25.6 2 / 1
2.25.5 2 / 1
2.25.4 2 / 1
2.25.3 2 / 1
2.25.2 2 / 1
2.25.1 2 / 1
2.25.0 2 / 1
2.24.1 2 / 1
2.24.0 2 / 1
2.23.4 2 / 1
2.23.3 2 / 1
2.23.2 2 / 1
2.23.1 2 / 1
2.23.0 2 / 1
2.20.3 2 / 1
2.20.2 2 / 1
2.20.1 2 / 1
2.20.0 2 / 1
2.19.1 2 / 1
2.19.0 2 / 1
2.18.2 2 / 1
2.18.1 2 / 1
2.18.0 2 / 1
2.17.0 2 / 1
2.16.2 2 / 1
2.16.1 2 / 1
2.16.0 2 / 1
2.15.6 2 / 1
2.15.5 2 / 1

v2.35.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.35.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.34.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.