@applitools/nml-client
Client to integrate the SDKs to the Native Mobile Library (NML)
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| maintainer-change | maintainer-removed | AI (maintainer-change): Same org rotation context; no code changes accompany the maintainer list update. | ai | |
| maintainer-change | maintainer-added | AI (maintainer-change): Applitools org-level maintainer rotation; consistent with known monorepo publishing patterns. | ai | |
| publish-pattern | dormant-publish | AI (publish-pattern): Large SDK monorepo; per-package dormancy is expected when only active packages are republished. | ai | |
| dependencies | unvetted-dep:@applitools/utils | AI (dependencies): Internal Applitools monorepo dependency; expected for this SDK package. | ai | |
| dependencies | unvetted-dep:@applitools/logger | AI (dependencies): Internal Applitools monorepo dependency; expected for this SDK package. | ai | |
| provenance | no-provenance | AI (provenance): Applitools SDK monorepo; no provenance attestation is consistent across all their packages. | ai |
Versions (showing 51 of 175)
| Version | Deps | Published |
|---|---|---|
| 1.11.37 | 3 / 7 | |
| 1.11.36 | 3 / 7 | |
| 1.11.35 | 3 / 7 | |
| 1.11.34 | 3 / 7 | |
| 1.11.33 | 3 / 7 | |
| 1.11.32 | 3 / 7 | |
| 1.11.31 | 3 / 7 | |
| 1.11.30 | 3 / 7 | |
| 1.11.29 | 3 / 7 | |
| 1.11.28 | 3 / 7 | |
| 1.11.27 | 3 / 7 | |
| 1.11.26 | 3 / 7 | |
| 1.11.25 | 3 / 7 | |
| 1.11.24 | 3 / 7 | |
| 1.11.23 | 3 / 7 | |
| 1.11.22 | 3 / 7 | |
| 1.11.21 | 3 / 7 | |
| 1.11.20 | 3 / 7 | |
| 1.11.19 | 3 / 7 | |
| 1.11.18 | 3 / 7 | |
| 1.11.17 | 3 / 7 | |
| 1.11.16 | 3 / 7 | |
| 1.11.15 | 3 / 7 | |
| 1.11.14 | 3 / 7 | |
| 1.11.13 | 3 / 7 | |
| 1.11.12 | 3 / 7 | |
| 1.11.11 | 3 / 7 | |
| 1.11.10 | 3 / 7 | |
| 1.11.9 | 3 / 7 | |
| 1.11.8 | 3 / 7 | |
| 1.11.7 | 3 / 7 | |
| 1.11.6 | 3 / 7 | |
| 1.11.5 | 3 / 7 | |
| 1.11.4 | 3 / 7 | |
| 1.11.3 | 3 / 7 | |
| 1.11.2 | 3 / 7 | |
| 1.11.1 | 3 / 7 | |
| 1.11.0 | 3 / 7 | |
| 1.10.0 | 3 / 7 | |
| 1.9.7 | 3 / 7 | |
| 1.9.6 | 3 / 7 | |
| 1.9.5 | 3 / 7 | |
| 1.9.4 | 3 / 6 | |
| 1.9.3 | 3 / 6 | |
| 1.9.2 | 3 / 6 | |
| 1.9.1 | 3 / 6 | |
| 1.9.0 | 3 / 6 | |
| 1.8.27 | 3 / 6 | |
| 1.8.26 | 3 / 6 | |
| 1.8.25 | 3 / 6 | |
| 1.8.24 | 3 / 6 |
v1.11.37
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.11.36
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.11.35
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.11.34
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.9.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.9.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.8.27
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.8.26
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.8.25
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.8.24
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.