← Home

@darraghor/eslint-plugin-nestjs-typed

51
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

darraghor

Keywords

eslinteslintplugineslint-pluginnestjslinterlintstyle

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff obfuscated-file:dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js AI (source-diff): Sample shows readable ESLint rule code; long-line heuristic fires on bundled output, not actual obfuscation. ai
source-diff obfuscated-file:dist/rules/useDependencyInjection/useDependencyInjection.js AI (source-diff): Sample shows readable ESLint rule code; long-line heuristic fires on bundled output, not actual obfuscation. ai
provenance publisher-changed AI (provenance): Publisher is GitHub Actions CI with SLSA provenance attestation; publishConfig sets provenance:true — this is intentional automation. ai
source-diff obfuscated-file:dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js AI (source-diff): Sample shows readable ESLint rule code; long-line heuristic fires on bundled output, not actual obfuscation. ai
source-diff obfuscated-file:dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js AI (source-diff): Sample shows readable ESLint rule code; long-line heuristic fires on bundled output, not actual obfuscation. ai
phantom-deps phantom-dep:@typescript-eslint/scope-manager AI (phantom-deps): Listed as a runtime dependency in package.json; phantom-dep heuristic misfires here. ai
source-diff obfuscated-file:dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js AI (source-diff): Compiled TypeScript output; long lines are normal for tsc-built dist files in this package. ai

Versions (showing 51 of 63)

View all versions
Version Deps Published
7.1.32 7 / 30
7.1.31 7 / 30
7.1.30 7 / 30
7.1.29 7 / 30
7.1.28 7 / 30
7.1.27 7 / 30
7.1.26 7 / 30
7.1.25 7 / 30
7.1.24 7 / 30
7.1.23 7 / 30
7.1.22 7 / 30
7.1.21 7 / 30
7.1.20 7 / 30
7.1.19 7 / 30
7.1.18 7 / 30
7.1.17 7 / 30
7.1.16 7 / 30
7.1.15 7 / 30
7.1.14 7 / 30
7.1.13 7 / 30
7.1.12 7 / 30
7.1.11 7 / 30
7.1.10 7 / 30
7.1.9 7 / 30
7.1.8 7 / 30
7.1.7 7 / 30
7.1.6 7 / 30
7.1.5 7 / 30
7.1.4 7 / 30
7.1.3 7 / 30
7.1.2 7 / 30
7.1.1 7 / 30
7.1.0 7 / 30
7.0.2 7 / 30
7.0.1 7 / 30
7.0.0 7 / 30
6.18.0 7 / 30
6.17.0 7 / 30
6.16.0 7 / 30
6.15.0 7 / 30
6.14.0 7 / 30
6.13.0 7 / 30
6.12.0 7 / 30
6.11.0 7 / 30
6.10.2 7 / 30
6.10.1 7 / 30
6.10.0 7 / 30
6.9.19 7 / 30
6.9.18 7 / 30
6.9.17 7 / 30
6.9.16 7 / 30

v7.1.32

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.31

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.30

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.29

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.28

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.27

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-03-22) provenance

This version was published by a different npm account than previous versions on 2026-03-22. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.26

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-03-09) provenance

This version was published by a different npm account than previous versions on 2026-03-09. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.25

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-03-08) provenance

This version was published by a different npm account than previous versions on 2026-03-08. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.24

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-02-26) provenance

This version was published by a different npm account than previous versions on 2026-02-26. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.23

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-02-25) provenance

This version was published by a different npm account than previous versions on 2026-02-25. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.22

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-02-12) provenance

This version was published by a different npm account than previous versions on 2026-02-12. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.21

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-02-11) provenance

This version was published by a different npm account than previous versions on 2026-02-11. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.20

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-02-10) provenance

This version was published by a different npm account than previous versions on 2026-02-10. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.19

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-02-08) provenance

This version was published by a different npm account than previous versions on 2026-02-08. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.18

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-28) provenance

This version was published by a different npm account than previous versions on 2026-01-28. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.17

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-22) provenance

This version was published by a different npm account than previous versions on 2026-01-22. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.16

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-22) provenance

This version was published by a different npm account than previous versions on 2026-01-22. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.15

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-20) provenance

This version was published by a different npm account than previous versions on 2026-01-20. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.14

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-12) provenance

This version was published by a different npm account than previous versions on 2026-01-12. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.13

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-10) provenance

This version was published by a different npm account than previous versions on 2026-01-10. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.12

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-08) provenance

This version was published by a different npm account than previous versions on 2026-01-08. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.11

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-08) provenance

This version was published by a different npm account than previous versions on 2026-01-08. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.10

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-04) provenance

This version was published by a different npm account than previous versions on 2026-01-04. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.9

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-02) provenance

This version was published by a different npm account than previous versions on 2026-01-02. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.8

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2026-01-01) provenance

This version was published by a different npm account than previous versions on 2026-01-01. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.7

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2025-12-31) provenance

This version was published by a different npm account than previous versions on 2025-12-31. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.6

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2025-12-28) provenance

This version was published by a different npm account than previous versions on 2025-12-28. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.5

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2025-12-27) provenance

This version was published by a different npm account than previous versions on 2025-12-27. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.4

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2025-12-26) provenance

This version was published by a different npm account than previous versions on 2025-12-26. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.3

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2025-12-22) provenance

This version was published by a different npm account than previous versions on 2025-12-22. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.2

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2025-12-20) provenance

This version was published by a different npm account than previous versions on 2025-12-20. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.1

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2025-12-15) provenance

This version was published by a different npm account than previous versions on 2025-12-15. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.1.0

7 findings
HIGH Publisher changed: darraghor → GitHub Actions (on 2025-12-15) provenance

This version was published by a different npm account than previous versions on 2025-12-15. This could indicate a legitimate maintainer transition or an account compromise.

HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.0.2

6 findings
HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.0.1

6 findings
HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v7.0.0

6 findings
HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.18.0

6 findings
HIGH New obfuscated file: dist/rules/apiOperationSummaryDescriptionCapitalized/apiOperationSummaryDescriptionCapitalized.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.17.0

5 findings
HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useDependencyInjection/useDependencyInjection.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.16.0

4 findings
HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.15.0

4 findings
HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.14.0

4 findings
HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.13.0

4 findings
HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.12.0

4 findings
HIGH New obfuscated file: dist/rules/apiPropertyShouldHaveApiExtraModels/apiPropertyShouldHaveApiExtraModels.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.11.0

3 findings
HIGH New obfuscated file: dist/rules/useCorrectEndpointNamingConvention/useCorrectEndpointNamingConvention.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.10.2

2 findings
HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.10.1

2 findings
HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.10.0

2 findings
HIGH New obfuscated file: dist/rules/useInjectableProvidedToken/useInjectableProvidedToken.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.9.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.9.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.9.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v6.9.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.