@everymatrix/casino-integrated-game-page
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:sirv-cli | AI (phantom-deps): Used in start script, not source-imported. | ai | |
| phantom-deps | phantom-dep:cross-env | AI (phantom-deps): Used in build scripts, not source-imported. | ai | |
| phantom-deps | phantom-dep:svelte | AI (phantom-deps): Framework dep referenced via config/svelte field. | ai | |
| source-diff | obfuscated-file:components/PlayerDeposit-gMRy4v97.cjs | AI (source-diff): Bundled Svelte component output, benign locale/style strings. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-NQ7M39UC.js | AI (source-diff): Bundled build output, standard bundler preamble. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-B8kzK04q.js | AI (source-diff): Bundled Svelte/build output, not true obfuscation; no malicious behavior. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-BkcpPuRv.cjs | AI (source-diff): Bundled build output (minified helper functions), not obfuscation. | ai | |
| source-diff | obfuscated-file:stencil/player-step-up-auth_2--4edZ0-c.cjs | AI (source-diff): Stencil component bundle for OTP UI, no exfil behavior. | ai | |
| source-diff | obfuscated-file:stencil/index-2ff63899-qt1Vej8s.cjs | AI (source-diff): Stencil runtime bundle, standard lazy-load logic. | ai | |
| source-diff | obfuscated-file:stencil/index-2ff63899-C0l4gDXZ.cjs | AI (source-diff): Standard minified Stencil runtime bundle; consistent with this package's build pipeline. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-LHjLWY1F.js | AI (source-diff): Minified ESM Svelte bundle; standard build artifact for this package. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-D8L0cwSE.js | AI (source-diff): Minified ESM Svelte bundle; standard build artifact for this package. | ai | |
| source-diff | obfuscated-file:components/PlayerDeposit-FKGOtwzV.cjs | AI (source-diff): Minified Svelte component with CSS-in-JS and i18n strings; standard build artifact. | ai | |
| source-diff | obfuscated-file:stencil/player-step-up-auth_2-CsB4lmme.cjs | AI (source-diff): Minified Stencil component bundle with readable i18n/OTP logic; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-C8agG41Y.cjs | AI (source-diff): Standard minified Svelte/Stencil bundle output; consistent with this package's build pipeline across all versions. | ai | |
| source-diff | obfuscated-file:components/PlayerDeposit-B6zM1aSk.cjs | AI (source-diff): Minified Svelte component with i18n strings; stable for this package. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-DrpBKY-K.cjs | AI (source-diff): Standard minified Svelte/Stencil component bundle output; stable for this package. | ai | |
| source-diff | obfuscated-file:stencil/index-1ef3a64c-Cyk6zG0z.cjs | AI (source-diff): Stencil runtime bootstrap code, minified; stable for this package. | ai | |
| source-diff | obfuscated-file:stencil/user-deposit-withdrawal-CNqcdWPQ.cjs | AI (source-diff): Stencil web component bundle; stable for this package. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-BKqtiXmT.js | AI (source-diff): ESM variant of the same Svelte component bundle; stable. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-CI-NNFSc.js | AI (source-diff): ESM variant of bundled component; stable for this package. | ai | |
| provenance | publisher-changed | AI (provenance): emfe_release is EveryMatrix's release bot with 19k+ approved packages. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-ChKrWCIw.js | AI (source-diff): Standard minified Svelte/Stencil build output; long lines are bundler artifacts, not obfuscation. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-Dbzdricx.js | AI (source-diff): Standard minified Svelte/Stencil build output; long lines are bundler artifacts, not obfuscation. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-DfX5VqqY.js | AI (source-diff): Standard minified Svelte/Stencil build output; consistent with this package's established pattern. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-D0ZmbbJY.js | AI (source-diff): Standard minified Svelte/Stencil build output; consistent with this package's established pattern. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-DpmN0g31.cjs | AI (source-diff): Standard minified Svelte/Stencil build output; consistent with this package's established pattern across 776 versions. | ai | |
| source-diff | obfuscated-file:components/PlayerDeposit-CEIsSVoA.cjs | AI (source-diff): Standard minified Svelte/Stencil build output with readable i18n strings and CSS; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:stencil/index-1ef3a64c-D1uFrb8w.cjs | AI (source-diff): Standard Stencil runtime bundle; consistent with all prior versions of this package. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-DGLNOMVn.js | AI (source-diff): Standard Svelte/Stencil ESM bundle; consistent with all prior versions of this package. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-CrTERiuc.js | AI (source-diff): Standard Svelte/Stencil ESM bundle; consistent with all prior versions of this package. | ai | |
| source-diff | obfuscated-file:stencil/user-deposit-withdrawal-Dh33YYVW.cjs | AI (source-diff): Standard Stencil lazy-load bundle; consistent with all prior versions of this package. | ai | |
| source-diff | obfuscated-file:components/PlayerDeposit-DP_zeXy-.cjs | AI (source-diff): Standard Svelte component bundle; consistent with all prior versions of this package. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-Crhm6_cC.cjs | AI (source-diff): Standard Svelte/Stencil build bundle; consistent with all prior versions of this package. | ai | |
| npm-metadata | no-description | AI (npm-metadata): Stable false positive for this scoped component package. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-sXNuAPBn.js | AI (source-diff): Standard minified Svelte/Stencil build output; consistent with package's established release pattern. | ai | |
| source-diff | obfuscated-file:components/CasinoIntegratedGamePage-B79nJZyL.js | AI (source-diff): Standard minified Svelte/Stencil build output; consistent with package's established release pattern. | ai | |
| provenance | no-provenance | AI (provenance): Publisher has not enabled provenance; consistent across all 774 versions. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Private-label component library; no repo/description/keywords is stable for this package across all versions. | ai |
Versions (showing 100 of 700)
| Version | Deps | Published |
|---|---|---|
| 1.57.0 | 0 / 0 | |
| 1.56.3 | 0 / 0 | |
| 1.56.2 | 0 / 0 | |
| 1.56.0 | 0 / 0 | |
| 1.55.0 | 0 / 0 | |
| 1.54.12 | 0 / 0 | |
| 1.54.11 | 0 / 0 | |
| 1.54.10 | 0 / 0 | |
| 1.54.9 | 1 / 0 | |
| 1.54.8 | 1 / 0 | |
| 1.54.6 | 1 / 0 | |
| 1.54.4 | 1 / 0 | |
| 1.54.2 | 1 / 0 | |
| 1.54.0 | 2 / 0 | |
| 1.53.12 | 0 / 0 | |
| 1.53.11 | 0 / 0 | |
| 1.53.10 | 0 / 0 | |
| 1.53.0 | 2 / 0 | |
| 1.52.6 | 2 / 0 | |
| 1.52.5 | 2 / 0 | |
| 1.52.4 | 2 / 0 | |
| 1.52.3 | 2 / 0 | |
| 1.52.2 | 2 / 0 | |
| 1.52.1 | 2 / 0 | |
| 1.52.0 | 2 / 0 | |
| 1.51.4 | 2 / 0 | |
| 1.51.3 | 2 / 0 | |
| 1.51.2 | 2 / 0 | |
| 1.51.1 | 2 / 0 | |
| 1.51.0 | 2 / 0 | |
| 1.50.1 | 2 / 0 | |
| 1.50.0 | 2 / 0 | |
| 1.49.2 | 2 / 0 | |
| 1.49.1 | 2 / 0 | |
| 1.49.0 | 2 / 0 | |
| 1.48.2 | 2 / 0 | |
| 1.48.1 | 2 / 0 | |
| 1.48.0 | 2 / 0 | |
| 1.47.3 | 2 / 0 | |
| 1.47.2 | 2 / 0 | |
| 1.47.1 | 2 / 0 | |
| 1.47.0 | 2 / 0 | |
| 1.46.1 | 2 / 0 | |
| 1.46.0 | 2 / 0 | |
| 1.45.14 | 2 / 0 | |
| 1.45.13 | 2 / 0 | |
| 1.45.11 | 2 / 0 | |
| 1.45.10 | 2 / 0 | |
| 1.45.9 | 2 / 0 | |
| 1.45.8 | 2 / 0 | |
| 1.45.7 | 2 / 0 | |
| 1.45.6 | 2 / 0 | |
| 1.45.5 | 2 / 0 | |
| 1.45.4 | 2 / 0 | |
| 1.45.3 | 2 / 0 | |
| 1.45.2 | 2 / 0 | |
| 1.45.0 | 2 / 0 | |
| 1.44.0 | 3 / 15 | |
| 1.43.4 | 3 / 15 | |
| 1.43.3 | 3 / 15 | |
| 1.43.2 | 3 / 15 | |
| 1.43.1 | 3 / 15 | |
| 1.43.0 | 3 / 15 | |
| 1.42.0 | 3 / 15 | |
| 1.41.0 | 3 / 15 | |
| 1.40.0 | 3 / 15 | |
| 1.39.3 | 3 / 15 | |
| 1.39.2 | 3 / 15 | |
| 1.39.1 | 3 / 15 | |
| 1.39.0 | 3 / 15 | |
| 1.38.0 | 3 / 15 | |
| 1.37.12 | 3 / 15 | |
| 1.37.11 | 3 / 15 | |
| 1.37.10 | 3 / 15 | |
| 1.37.9 | 3 / 15 | |
| 1.37.8 | 3 / 15 | |
| 1.37.7 | 3 / 15 | |
| 1.37.6 | 3 / 15 | |
| 1.37.5 | 3 / 15 | |
| 1.37.4 | 3 / 15 | |
| 1.37.3 | 3 / 15 | |
| 1.37.2 | 3 / 15 | |
| 1.37.1 | 3 / 15 | |
| 1.37.0 | 3 / 15 | |
| 1.36.1 | 3 / 15 | |
| 1.36.0 | 3 / 15 | |
| 1.35.0 | 3 / 15 | |
| 1.34.3 | 3 / 15 | |
| 1.34.2 | 3 / 15 | |
| 1.34.1 | 3 / 15 | |
| 1.34.0 | 3 / 15 | |
| 1.33.5 | 3 / 15 | |
| 1.33.4 | 3 / 15 | |
| 1.33.3 | 3 / 15 | |
| 1.33.2 | 3 / 15 | |
| 1.33.1 | 3 / 15 | |
| 1.33.0 | 3 / 15 | |
| 1.32.16 | 3 / 15 | |
| 1.32.14 | 3 / 15 | |
| 1.32.13 | 3 / 15 |
v1.57.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.56.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.56.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.56.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.55.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.12
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.11
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.10
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.9
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.8
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.6
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.4
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.54.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.53.12
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.53.11
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.53.10
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.53.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.52.6
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.52.5
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.52.4
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.52.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.52.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.52.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.52.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.51.4
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.51.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.51.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.51.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.51.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.50.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.50.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.49.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.49.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.49.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.48.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.48.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.48.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.47.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.47.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.47.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.47.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.46.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.46.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.14
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.13
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.11
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.10
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.9
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.8
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.7
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.6
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.5
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.4
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.45.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.44.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.43.4
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.43.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.43.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.43.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.43.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.42.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.41.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.40.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.39.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.39.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.39.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.39.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.38.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.12
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.11
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.10
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.9
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.8
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.7
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.6
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.5
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.4
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.37.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.36.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.36.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.35.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.34.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.34.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.34.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.34.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.33.5
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.33.4
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.33.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.33.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.33.1
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.33.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.32.16
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.32.14
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.32.13
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.