← Home

@bobfrankston/npmglobalize

Transform file: dependencies to npm versions for publishing

51
Versions
MIT
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures No source commit

Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.

Maintainers

bobfrankston

Keywords

npmpublishdependenciesrelease

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:pacote AI (phantom-deps): Dep is declared and used at runtime via config transform pattern; phantom detection is a false positive for this package. ai
phantom-deps phantom-dep:simple-git AI (phantom-deps): Same config-transform pattern; stable false positive for this package. ai
phantom-deps phantom-dep:npm-registry-fetch AI (phantom-deps): Same config-transform pattern; stable false positive for this package. ai
phantom-deps phantom-dep:@npmcli/package-json AI (phantom-deps): Same config-transform pattern; stable false positive for this package. ai
phantom-deps phantom-dep:@bobfrankston/npmglobalize AI (phantom-deps): Self-referential dep is intentional per the package's publish-transform purpose. ai

Versions (showing 51 of 163)

View all versions
Version Deps Published
1.0.186 10 / 3
1.0.185 10 / 3
1.0.184 10 / 3
1.0.183 12 / 3
1.0.182 12 / 3
1.0.181 12 / 3
1.0.180 12 / 3
1.0.179 12 / 3
1.0.178 12 / 3
1.0.177 12 / 3
1.0.176 12 / 3
1.0.175 12 / 3
1.0.174 12 / 3
1.0.173 11 / 3
1.0.172 11 / 3
1.0.171 11 / 3
1.0.170 11 / 3
1.0.169 11 / 3
1.0.168 11 / 3
1.0.167 11 / 3
1.0.166 11 / 3
1.0.165 11 / 3
1.0.164 11 / 3
1.0.163 11 / 3
1.0.162 11 / 3
1.0.161 11 / 3
1.0.160 11 / 3
1.0.159 11 / 3
1.0.158 11 / 3
1.0.157 11 / 3
1.0.156 11 / 3
1.0.155 11 / 3
1.0.154 11 / 3
1.0.153 10 / 3
1.0.152 10 / 3
1.0.151 10 / 3
1.0.150 10 / 3
1.0.149 10 / 3
1.0.148 10 / 3
1.0.147 10 / 3
1.0.146 10 / 3
1.0.145 10 / 3
1.0.144 10 / 3
1.0.143 10 / 3
1.0.142 10 / 3
1.0.141 10 / 3
1.0.140 10 / 3
1.0.139 10 / 3
1.0.138 10 / 3
1.0.137 9 / 3
1.0.136 9 / 3

v1.0.186

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.185

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.184

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.183

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.182

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.181

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.180

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.179

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.178

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.177

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.176

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.175

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.174

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.173

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.172

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.171

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.170

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.169

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.0.168

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.