← Home

@finos/legend-extension-dsl-data-space

Legend extension for Data Space DSL

100
Versions
Apache-2.0
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures gitHead linked

Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.

Maintainers

finos-adminmaoo

Keywords

legendlegend-extensiondsldsl-data-space

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance no-provenance AI (provenance): Stable for FINOS packages; provenance adoption is org-wide, not per-version. ai
dependencies unvetted-dep:serializr AI (dependencies): serializr is a well-known, benign serialization library; stable false positive for this package. ai
phantom-deps phantom-dep:react-dom AI (phantom-deps): react-dom is a standard peer/runtime dep declared in package.json; phantom-dep heuristic false positive for this package. ai
phantom-deps phantom-dep:@types/react AI (phantom-deps): Framework-scoped type package loaded by convention; stable false positive for this package. ai
phantom-deps phantom-dep:@finos/legend-server-sdlc AI (phantom-deps): Same-org sibling dep; phantom-dep heuristic false positive for this monorepo package. ai

Versions (showing 100 of 481)

Version Deps Published
10.4.138 17 / 9
10.4.137 17 / 9
10.4.136 17 / 9
10.4.135 17 / 9
10.4.134 17 / 9
10.4.133 17 / 9
10.4.132 17 / 9
10.4.131 17 / 9
10.4.130 17 / 9
10.4.129 17 / 9
10.4.128 17 / 9
10.4.127 17 / 9
10.4.126 17 / 9
10.4.125 17 / 9
10.4.124 17 / 9
10.4.123 17 / 9
10.4.122 17 / 9
10.4.121 17 / 9
10.4.120 17 / 9
10.4.119 17 / 9
10.4.118 17 / 9
10.4.117 17 / 9
10.4.116 17 / 9
10.4.115 17 / 9
10.4.114 17 / 9
10.4.113 17 / 9
10.4.112 17 / 9
10.4.111 17 / 9
10.4.110 17 / 9
10.4.109 17 / 9
10.4.108 17 / 9
10.4.107 17 / 9
10.4.106 17 / 9
10.4.105 17 / 9
10.4.104 17 / 9
10.4.103 17 / 9
10.4.102 17 / 9
10.4.101 17 / 9
10.4.100 17 / 9
10.4.99 17 / 9
10.4.98 17 / 9
10.4.97 17 / 9
10.4.96 17 / 9
10.4.95 17 / 9
10.4.94 17 / 9
10.4.93 17 / 9
10.4.92 17 / 9
10.4.91 17 / 9
10.4.90 17 / 9
10.4.89 17 / 9
10.4.88 17 / 9
10.4.87 17 / 9
10.4.86 17 / 9
10.4.85 17 / 9
10.4.84 17 / 9
10.4.83 17 / 9
10.4.82 17 / 9
10.4.81 17 / 9
10.4.80 17 / 9
10.4.79 17 / 9
10.4.78 17 / 9
10.4.77 17 / 9
10.4.76 17 / 9
10.4.75 17 / 9
10.4.74 17 / 9
10.4.73 17 / 9
10.4.72 17 / 9
10.4.71 17 / 9
10.4.70 17 / 9
10.4.69 17 / 9
10.4.68 17 / 9
10.4.67 17 / 9
10.4.66 17 / 9
10.4.65 17 / 9
10.4.64 17 / 9
10.4.63 17 / 9
10.4.62 17 / 9
10.4.61 17 / 9
10.4.60 17 / 9
10.4.59 17 / 9
10.4.58 17 / 9
10.4.57 17 / 9
10.4.56 17 / 9
10.4.55 17 / 9
10.4.54 17 / 9
10.4.53 17 / 9
10.4.52 17 / 9
10.4.51 17 / 9
10.4.50 17 / 9
10.4.49 17 / 9
10.4.48 17 / 9
10.4.47 17 / 9
10.4.46 17 / 9
10.4.45 17 / 9
10.4.44 17 / 9
10.4.43 17 / 9
10.4.42 17 / 9
10.4.41 17 / 9
10.4.40 17 / 9
10.4.39 17 / 9
Showing 100 of 481 Next page →

v10.4.69

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.68

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.67

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.66

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.65

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.64

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.63

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.62

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.61

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.60

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.59

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.58

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.57

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.56

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.55

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.54

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.53

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.52

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.51

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.50

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.49

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.48

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.47

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.46

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.45

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.44

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.43

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.42

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.41

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.40

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v10.4.39

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.