@cratis/arc
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| typosquat | typosquat.levenshtein:ajv | AI (typosquat): Scoped @cratis package with 157 versions and SLSA provenance; Levenshtein match to ajv is coincidental. | ai |
Versions (showing 51 of 270)
| Version | Deps | Published |
|---|---|---|
| 20.61.2 | 2 / 0 | |
| 20.61.1 | 2 / 0 | |
| 20.61.0 | 2 / 0 | |
| 20.60.3 | 2 / 0 | |
| 20.60.2 | 2 / 0 | |
| 20.60.1 | 2 / 0 | |
| 20.60.0 | 2 / 0 | |
| 20.59.1 | 2 / 0 | |
| 20.59.0 | 2 / 0 | |
| 20.58.1 | 2 / 0 | |
| 20.58.0 | 2 / 0 | |
| 20.57.0 | 2 / 0 | |
| 20.56.0 | 2 / 0 | |
| 20.55.1 | 2 / 0 | |
| 20.55.0 | 2 / 0 | |
| 20.54.7 | 2 / 0 | |
| 20.54.5 | 2 / 0 | |
| 20.54.4 | 2 / 0 | |
| 20.54.3 | 2 / 0 | |
| 20.54.2 | 2 / 0 | |
| 20.54.1 | 2 / 0 | |
| 20.54.0 | 2 / 0 | |
| 20.53.1 | 2 / 0 | |
| 20.53.0 | 2 / 0 | |
| 20.52.0 | 2 / 0 | |
| 20.51.0 | 2 / 0 | |
| 20.49.2 | 2 / 0 | |
| 20.49.1 | 2 / 0 | |
| 20.49.0 | 2 / 0 | |
| 20.48.4 | 2 / 0 | |
| 20.48.3 | 2 / 0 | |
| 20.48.2 | 2 / 0 | |
| 20.48.1 | 2 / 0 | |
| 20.48.0 | 2 / 0 | |
| 20.47.1 | 2 / 0 | |
| 20.47.0 | 2 / 0 | |
| 20.46.0 | 2 / 0 | |
| 20.45.0 | 2 / 0 | |
| 20.44.2 | 2 / 0 | |
| 20.44.1 | 2 / 0 | |
| 20.44.0 | 2 / 0 | |
| 20.43.7 | 2 / 0 | |
| 20.43.6 | 2 / 0 | |
| 20.43.5 | 2 / 0 | |
| 20.43.4 | 2 / 0 | |
| 20.43.3 | 2 / 0 | |
| 20.43.2 | 2 / 0 | |
| 20.43.1 | 2 / 0 | |
| 20.43.0 | 2 / 0 | |
| 20.42.2 | 2 / 0 | |
| 20.42.1 | 2 / 0 |
v20.61.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.61.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.61.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.60.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.60.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.60.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.60.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.59.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.59.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.58.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.58.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.57.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.56.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.55.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.55.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.54.7
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.54.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.54.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.54.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.54.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.54.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.54.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.53.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.53.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.52.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.51.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.49.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.49.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.49.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.48.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.48.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.48.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.48.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.48.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v20.47.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.