@elementor/editor-mcp
> [!WARNING] > This package is under development and not ready for production use.
11
Versions
GPL-3.0-or-later
License
No
Install Scripts
Missing
Provenance
Supply chain provenance
Status for the latest visible version.
No SLSA provenance
npm registry signatures
gitHead linked
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
kingyesmati1000nevosschenecloud-devops
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| dependencies | unvetted-dep:@elementor-external/angie-sdk | AI (dependencies): Alias for @elementor/angie-sdk — same org, consistent with Elementor monorepo patterns. | ai | |
| phantom-deps | phantom-dep:@elementor/editor-v1-adapters | AI (phantom-deps): Same org scope (@elementor); declared as a pinned dep, phantom-dep heuristic is a stable false positive here. | ai | |
| provenance | no-provenance | AI (provenance): Elementor monorepo package; provenance absence is common and no other risk signals present. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Internal monorepo package; sparse README and no keywords are expected for org-internal packages. | ai | |
| phantom-deps | phantom-dep:@elementor/store | AI (phantom-deps): Same-org scoped dep; phantom-dep heuristic unreliable for monorepo packages. | ai | |
| phantom-deps | phantom-dep:zod-to-json-schema | AI (phantom-deps): Referenced in config files per finding; stable false positive for this package. | ai |