@enymo/adminium
This template provides a minimal setup to get React working in Vite with HMR and some ESLint rules.
55
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
gitHead linked
Maintainers
jserguhndanaeritter
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| publish-pattern | new-deps-added | AI (publish-pattern): lodash is a well-established utility library; addition is benign in this context. | ai | |
| phantom-deps | phantom-dep:immer | AI (phantom-deps): Declared dependency; likely used via re-exports or config. Stable pattern for this package. | ai | |
| phantom-deps | phantom-dep:@dnd-kit/core | AI (phantom-deps): Declared dependency; likely used via re-exports or config. Stable pattern for this package. | ai | |
| phantom-deps | phantom-dep:@dnd-kit/sortable | AI (phantom-deps): Declared dependency; likely used via re-exports or config. Stable pattern for this package. | ai | |
| phantom-deps | phantom-dep:@dnd-kit/modifiers | AI (phantom-deps): Declared dependency; likely used via re-exports or config. Stable pattern for this package. | ai | |
| phantom-deps | phantom-dep:@dnd-kit/utilities | AI (phantom-deps): Declared dependency; likely used via re-exports or config. Stable pattern for this package. | ai | |
| phantom-deps | phantom-dep:@enymo/ts-nullsafe | AI (phantom-deps): Same-org scoped dependency; likely used via re-exports. Stable pattern for this package. | ai | |
| dependencies | unvetted-dep:@enymo/comparison | AI (dependencies): Same-org first-party dependency; stable false positive for this package. | ai | |
| dependencies | unvetted-dep:@enymo/ts-nullsafe | AI (dependencies): Same-org first-party dependency; stable false positive for this package. | ai | |
| phantom-deps | phantom-dep:dayjs | AI (phantom-deps): dayjs is a declared runtime dependency; phantom-dep heuristic misfires on this package's build setup. | ai | |
| phantom-deps | phantom-dep:lodash | AI (phantom-deps): lodash is a declared runtime dependency; phantom-dep heuristic false positive for this package. | ai | |
| phantom-deps | phantom-dep:@enymo/comparison | AI (phantom-deps): Same-org dependency; phantom-dep heuristic false positive for this package. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Org-scoped internal library; sparse README and no keywords are typical for private ecosystem packages. | ai |
Versions (showing 55 of 55)
| Version | Deps | Published |
|---|---|---|
| 0.10.5 | 7 / 22 | |
| 0.10.4 | 7 / 22 | |
| 0.10.3 | 7 / 22 | |
| 0.10.2 | 7 / 22 | |
| 0.10.1 | 7 / 22 | |
| 0.10.0 | 7 / 22 | |
| 0.9.7 | 7 / 22 | |
| 0.9.6 | 7 / 22 | |
| 0.9.5 | 7 / 22 | |
| 0.9.4 | 7 / 22 | |
| 0.9.3 | 7 / 22 | |
| 0.9.2 | 7 / 22 | |
| 0.9.1 | 7 / 22 | |
| 0.9.0 | 7 / 22 | |
| 0.8.7 | 7 / 22 | |
| 0.8.6 | 7 / 22 | |
| 0.8.5 | 7 / 22 | |
| 0.8.4 | 7 / 22 | |
| 0.8.3 | 7 / 22 | |
| 0.8.2 | 7 / 22 | |
| 0.8.1 | 7 / 22 | |
| 0.8.0 | 7 / 22 | |
| 0.7.5 | 7 / 21 | |
| 0.7.4 | 7 / 21 | |
| 0.7.3 | 7 / 21 | |
| 0.7.2 | 7 / 21 | |
| 0.7.1 | 7 / 21 | |
| 0.7.0 | 7 / 21 | |
| 0.6.6 | 7 / 21 | |
| 0.6.4 | 7 / 21 | |
| 0.6.3 | 7 / 21 | |
| 0.6.2 | 7 / 21 | |
| 0.6.1 | 7 / 21 | |
| 0.6.0 | 7 / 21 | |
| 0.5.0 | 6 / 20 | |
| 0.4.6 | 6 / 20 | |
| 0.4.5 | 6 / 20 | |
| 0.4.4 | 6 / 20 | |
| 0.4.3 | 6 / 20 | |
| 0.4.2 | 6 / 20 | |
| 0.4.1 | 6 / 20 | |
| 0.4.0 | 6 / 20 | |
| 0.3.6 | 6 / 20 | |
| 0.3.5 | 6 / 20 | |
| 0.3.4 | 6 / 20 | |
| 0.3.3 | 6 / 20 | |
| 0.3.2 | 6 / 20 | |
| 0.3.1 | 6 / 20 | |
| 0.3.0 | 6 / 20 | |
| 0.2.6 | 6 / 20 | |
| 0.2.3 | 6 / 20 | |
| 0.2.2 | 6 / 20 | |
| 0.1.2 | 9 / 20 | |
| 0.1.1 | 9 / 20 | |
| 0.1.0 | 9 / 20 |
v0.10.5
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.10.4
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.