@arsia-mons/silencer-darwin-arm64
An action/strategy multiplayer side-scrolling platform game set on a futuristic Mars.
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| npm-metadata | bundled-binaries | AI (npm-metadata): Platform-specific game binary package; SDL3/minizip dylibs are expected game runtime dependencies, backed by SLSA provenance. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Native binary distribution packages legitimately have no deps, no keywords, and minimal READMEs. | ai |
Versions (showing 17 of 17)
| Version | Deps | Published |
|---|---|---|
| 0.0.59 | 0 / 0 | |
| 0.0.58 | 0 / 0 | |
| 0.0.57 | 0 / 0 | |
| 0.0.56 | 0 / 0 | |
| 0.0.55 | 0 / 0 | |
| 0.0.54 | 0 / 0 | |
| 0.0.53 | 0 / 0 | |
| 0.0.52 | 0 / 0 | |
| 0.0.51 | 0 / 0 | |
| 0.0.50 | 0 / 0 | |
| 0.0.49 | 0 / 0 | |
| 0.0.48 | 0 / 0 | |
| 0.0.47 | 0 / 0 | |
| 0.0.46 | 0 / 0 | |
| 0.0.45 | 0 / 0 | |
| 0.0.44 | 0 / 0 | |
| 0.0.43 | 0 / 0 |
v0.0.59
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.58
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.57
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.56
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.55
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.54
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.53
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.2.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.52
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.2.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.51
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.2.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.50
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.2.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.49
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.0.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.48
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.0.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.47
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.0.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.46
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.0.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.45
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.0.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.44
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.0.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.43
2 findingsPackage contains compiled binaries that could be backdoors: • Silencer.app/Contents/MacOS/Silencer • Silencer.app/Contents/Frameworks/libminizip.1.dylib • Silencer.app/Contents/Frameworks/libSDL3_mixer.0.2.0.dylib • Silencer.app/Contents/Frameworks/libSDL3.0.dylib
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.