← Home

@atlaskit/editor-toolbar

51
Versions
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures No source commit

Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.

Maintainers

atlassianartifactteam

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:@atlaskit/logo AI (phantom-deps): Internal monorepo package; phantom deps common in Atlassian's setup where deps may be re-exported or used transitively. ai
phantom-deps phantom-dep:@atlaskit/button AI (phantom-deps): Internal monorepo package; phantom deps common in Atlassian's setup where deps may be re-exported or used transitively. ai
phantom-deps phantom-dep:@atlaskit/platform-feature-flags-react AI (phantom-deps): Internal monorepo package; phantom deps common in Atlassian's setup where deps may be re-exported or used transitively. ai
dependencies unvetted-dep:@atlaskit/badge AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai
dependencies unvetted-dep:@atlaskit/popup AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai
dependencies unvetted-dep:@compiled/react AI (dependencies): Atlassian's official CSS-in-JS library; standard dependency across the Atlaskit ecosystem. ai
dependencies unvetted-dep:@atlaskit/tokens AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai
dependencies unvetted-dep:@atlaskit/tooltip AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai
dependencies unvetted-dep:chromatism AI (dependencies): chromatism is a well-known color manipulation library; legitimate dependency for a UI toolbar component. ai
dependencies unvetted-dep:@atlaskit/primitives AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai
dependencies unvetted-dep:@atlaskit/dropdown-menu AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai
dependencies unvetted-dep:@atlaskit/tmp-editor-statsig AI (dependencies): Official Atlaskit editor package from the same publisher; expected dependency. ai
dependencies unvetted-dep:@atlaskit/platform-feature-flags AI (dependencies): Official Atlaskit platform package from the same publisher; expected dependency. ai
bogus-package bogus-package AI (bogus-package): Atlaskit monorepo packages commonly lack keywords and have minimal READMEs; not indicative of spam for this established publisher. ai
dependencies unvetted-dep:@atlaskit/icon-lab AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai
dependencies unvetted-dep:@atlaskit/css AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai
dependencies unvetted-dep:@atlaskit/icon AI (dependencies): Official Atlaskit design system package from the same publisher; expected dependency. ai

Versions (showing 51 of 147)

View all versions
Version Deps Published
1.10.1 15 / 6
1.10.0 15 / 6
1.9.5 15 / 6
1.9.4 15 / 6
1.9.3 15 / 6
1.9.2 15 / 6
1.9.1 15 / 6
1.9.0 15 / 6
1.8.1 15 / 6
1.8.0 15 / 6
1.7.3 15 / 5
1.7.2 15 / 5
1.7.1 15 / 5
1.7.0 15 / 4
1.6.2 15 / 4
1.6.1 15 / 4
1.6.0 15 / 4
1.5.2 15 / 4
1.5.1 15 / 4
1.5.0 15 / 4
1.4.1 15 / 4
1.4.0 15 / 4
1.3.0 15 / 4
1.2.0 15 / 4
1.1.1 15 / 4
1.1.0 15 / 4
1.0.19 15 / 4
1.0.18 15 / 4
1.0.17 15 / 4
1.0.16 15 / 4
1.0.15 15 / 4
1.0.14 15 / 4
1.0.13 15 / 4
1.0.12 15 / 4
1.0.11 15 / 4
1.0.10 15 / 4
1.0.9 15 / 4
1.0.8 15 / 4
1.0.7 15 / 4
1.0.6 15 / 4
1.0.5 15 / 4
1.0.4 15 / 4
1.0.3 15 / 4
1.0.2 15 / 4
1.0.1 15 / 3
1.0.0 15 / 3
0.20.30 15 / 2
0.20.29 15 / 2
0.20.28 15 / 2
0.20.27 15 / 2
0.20.26 15 / 2

v1.10.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.10.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.9.5

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.9.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.9.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.9.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.9.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.9.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.8.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.8.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.7.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.7.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.7.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.7.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.6.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.6.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.6.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.5.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.5.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.5.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.4.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.4.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.3.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.2.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.1.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.1.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.19

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.18

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.17

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.16

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.15

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.14

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.13

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.10

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.8

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v1.0.7

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.6

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.5

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.20.30

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.20.29

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.20.28

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.20.27

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.20.26

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.