@effect/sql-pg
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): Transition to GitHub Actions CI publishing with SLSA provenance; stable for @effect org packages. | ai | |
| phantom-deps | phantom-dep:pg-pool | AI (phantom-deps): pg-pool is a transitive dep of pg; used via pg internals, not direct import. | ai | |
| phantom-deps | phantom-dep:pg-types | AI (phantom-deps): pg-types is a transitive dep of pg; used via pg internals, not direct import. | ai | |
| bogus-package | bogus-package | AI (bogus-package): @effect/sql-pg is a legitimate scoped package; low README score is a false positive. | ai |
Versions (showing 100 of 298)
| Version | Deps | Published |
|---|---|---|
| 0.53.0 | 5 / 0 | |
| 0.52.1 | 5 / 0 | |
| 0.52.0 | 5 / 0 | |
| 0.51.0 | 5 / 0 | |
| 0.50.3 | 5 / 0 | |
| 0.50.2 | 5 / 0 | |
| 0.50.1 | 5 / 0 | |
| 0.50.0 | 5 / 0 | |
| 0.49.7 | 5 / 0 | |
| 0.49.6 | 5 / 0 | |
| 0.49.5 | 5 / 0 | |
| 0.49.4 | 5 / 0 | |
| 0.49.3 | 4 / 0 | |
| 0.49.2 | 4 / 0 | |
| 0.49.1 | 4 / 0 | |
| 0.49.0 | 2 / 0 | |
| 0.48.0 | 2 / 0 | |
| 0.47.0 | 1 / 0 | |
| 0.46.0 | 1 / 0 | |
| 0.45.1 | 1 / 0 | |
| 0.45.0 | 2 / 0 | |
| 0.44.0 | 2 / 0 | |
| 0.43.0 | 2 / 0 | |
| 0.42.0 | 2 / 0 | |
| 0.41.14 | 2 / 0 | |
| 0.41.13 | 2 / 0 | |
| 0.41.12 | 2 / 0 | |
| 0.41.11 | 2 / 0 | |
| 0.41.10 | 2 / 0 | |
| 0.41.9 | 2 / 0 | |
| 0.41.8 | 2 / 0 | |
| 0.41.7 | 2 / 0 | |
| 0.41.6 | 2 / 0 | |
| 0.41.5 | 2 / 0 | |
| 0.41.4 | 2 / 0 | |
| 0.41.3 | 2 / 0 | |
| 0.41.2 | 2 / 0 | |
| 0.41.1 | 2 / 0 | |
| 0.41.0 | 2 / 0 | |
| 0.40.0 | 2 / 0 | |
| 0.39.2 | 2 / 0 | |
| 0.39.1 | 2 / 0 | |
| 0.39.0 | 2 / 0 | |
| 0.38.12 | 2 / 0 | |
| 0.38.11 | 2 / 0 | |
| 0.38.10 | 2 / 0 | |
| 0.38.9 | 2 / 0 | |
| 0.38.8 | 2 / 0 | |
| 0.38.7 | 2 / 0 | |
| 0.38.6 | 2 / 0 | |
| 0.38.5 | 2 / 0 | |
| 0.38.4 | 2 / 0 | |
| 0.38.3 | 2 / 0 | |
| 0.38.2 | 2 / 0 | |
| 0.38.1 | 2 / 0 | |
| 0.38.0 | 2 / 0 | |
| 0.37.0 | 2 / 0 | |
| 0.36.8 | 2 / 0 | |
| 0.36.7 | 2 / 0 | |
| 0.36.6 | 2 / 0 | |
| 0.36.5 | 2 / 0 | |
| 0.36.4 | 2 / 0 | |
| 0.36.3 | 2 / 0 | |
| 0.36.2 | 2 / 0 | |
| 0.36.1 | 2 / 0 | |
| 0.36.0 | 2 / 0 | |
| 0.35.1 | 2 / 0 | |
| 0.35.0 | 2 / 0 | |
| 0.34.21 | 2 / 0 | |
| 0.34.20 | 2 / 0 | |
| 0.34.19 | 2 / 0 | |
| 0.34.18 | 2 / 0 | |
| 0.34.17 | 2 / 0 | |
| 0.34.16 | 2 / 0 | |
| 0.34.15 | 2 / 0 | |
| 0.34.14 | 2 / 0 | |
| 0.34.13 | 2 / 0 | |
| 0.34.12 | 2 / 0 | |
| 0.34.11 | 2 / 0 | |
| 0.34.10 | 2 / 0 | |
| 0.34.9 | 2 / 0 | |
| 0.34.8 | 2 / 0 | |
| 0.34.7 | 2 / 0 | |
| 0.34.6 | 2 / 0 | |
| 0.34.5 | 2 / 0 | |
| 0.34.4 | 2 / 0 | |
| 0.34.3 | 2 / 0 | |
| 0.34.2 | 2 / 0 | |
| 0.34.1 | 2 / 0 | |
| 0.34.0 | 2 / 0 | |
| 0.33.4 | 2 / 0 | |
| 0.33.3 | 2 / 0 | |
| 0.33.2 | 2 / 0 | |
| 0.33.1 | 2 / 0 | |
| 0.33.0 | 2 / 0 | |
| 0.32.1 | 2 / 0 | |
| 0.32.0 | 2 / 0 | |
| 0.31.7 | 2 / 0 | |
| 0.31.6 | 2 / 0 | |
| 0.31.4 | 2 / 0 |
v0.53.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.14
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.13
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.12
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.11
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.10
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.9
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.8
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.7
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.34.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.33.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.33.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.33.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.33.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.33.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.32.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.32.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.31.7
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.31.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.31.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.