← Home

@fern-api/php-dynamic-snippets

51
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

sandeep-fernelizabeth.fungwillkendall01postman-admin

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff net-exec-file:esm/chunk-34WVNBJS.js AI (source-diff): Bundled ESM output from fern-api monorepo; sample shows only standard polyfills, not dropper/loader behavior. ai
npm-metadata no-description AI (npm-metadata): Scoped internal build-tool package; missing description is cosmetic, not a risk signal. ai
bogus-package bogus-package AI (bogus-package): Signals reflect internal tooling conventions (no deps, no keywords); not indicative of spam/malware. ai
source-diff obfuscated-file:dist/index.cjs AI (source-diff): Standard minified CJS bundle from esbuild/tsup; SLSA provenance confirms CI build origin. ai
source-diff net-exec-file:dist/index.js AI (source-diff): Network/exec pattern is JSPM process polyfill in bundled output, not dropper behavior. ai
source-diff obfuscated-file:dist/index.js AI (source-diff): Standard minified ESM bundle from esbuild/tsup; SLSA provenance confirms CI build origin. ai
source-diff net-exec-file:dist/index.cjs AI (source-diff): Network/exec pattern is JSPM process polyfill in bundled output, not dropper behavior. ai

Versions (showing 51 of 90)

View all versions
Version Deps Published
2.16.0 0 / 0
2.15.0 0 / 0
2.14.1 0 / 0
2.14.0 0 / 0
2.13.4 0 / 0
2.13.3 0 / 0
2.13.2 0 / 0
2.13.1 0 / 0
2.13.0 0 / 0
2.12.0 0 / 0
2.11.2 0 / 0
2.11.1 0 / 0
2.10.15 0 / 0
2.10.14 0 / 0
2.10.13 0 / 0
2.10.12 0 / 0
2.10.11 0 / 0
2.10.10 0 / 0
2.10.9 0 / 0
2.10.8 0 / 0
2.10.7 0 / 0
2.10.6 0 / 0
2.10.5 0 / 0
2.10.4 0 / 0
2.10.3 0 / 0
2.10.2 0 / 0
2.10.1 0 / 0
2.10.0 0 / 0
2.9.7 0 / 0
2.9.6 0 / 0
2.9.5 0 / 0
2.9.4 0 / 0
2.9.3 0 / 0
2.9.2 0 / 0
2.9.1 0 / 0
2.9.0 0 / 0
2.8.1 0 / 0
2.8.0 0 / 0
2.7.0 0 / 0
2.6.0 0 / 0
2.5.2 0 / 0
2.5.1 0 / 0
2.5.0 0 / 0
2.4.4 0 / 0
2.4.3 0 / 0
2.4.2 0 / 0
2.4.1 0 / 0
2.4.0 0 / 0
2.3.1 0 / 0
2.3.0 0 / 0
2.2.6 0 / 0

v2.16.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.15.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.14.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.14.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.13.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.13.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.13.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.13.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.13.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.12.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.11.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.11.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.