@firestone-hs/simulate-bgs-battle
``` npm install npm run test-board ```
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:@firestone-hs/hs-replay-xml-parser | AI (phantom-deps): Same org scope; dependency is declared and likely bundled into dist rather than directly imported in source. | ai | |
| provenance | no-provenance | AI (provenance): Established package with 700+ versions; no provenance is consistent across all prior releases. | ai |
Versions (showing 100 of 419)
| Version | Deps | Published |
|---|---|---|
| 1.1.724 | 1 / 19 | |
| 1.1.723 | 1 / 19 | |
| 1.1.722 | 1 / 19 | |
| 1.1.721 | 1 / 19 | |
| 1.1.720 | 1 / 19 | |
| 1.1.719 | 1 / 19 | |
| 1.1.718 | 1 / 19 | |
| 1.1.717 | 1 / 19 | |
| 1.1.716 | 1 / 19 | |
| 1.1.715 | 1 / 19 | |
| 1.1.714 | 1 / 19 | |
| 1.1.713 | 1 / 19 | |
| 1.1.712 | 1 / 19 | |
| 1.1.711 | 1 / 19 | |
| 1.1.710 | 1 / 19 | |
| 1.1.709 | 1 / 19 | |
| 1.1.708 | 1 / 19 | |
| 1.1.707 | 1 / 19 | |
| 1.1.706 | 1 / 19 | |
| 1.1.705 | 1 / 19 | |
| 1.1.704 | 1 / 19 | |
| 1.1.703 | 1 / 19 | |
| 1.1.702 | 1 / 19 | |
| 1.1.701 | 1 / 19 | |
| 1.1.700 | 1 / 19 | |
| 1.1.699 | 1 / 19 | |
| 1.1.698 | 1 / 19 | |
| 1.1.697 | 1 / 19 | |
| 1.1.696 | 1 / 19 | |
| 1.1.695 | 1 / 19 | |
| 1.1.694 | 1 / 19 | |
| 1.1.693 | 1 / 19 | |
| 1.1.692 | 1 / 19 | |
| 1.1.691 | 1 / 19 | |
| 1.1.690 | 1 / 19 | |
| 1.1.689 | 1 / 19 | |
| 1.1.688 | 1 / 19 | |
| 1.1.687 | 1 / 19 | |
| 1.1.686 | 1 / 19 | |
| 1.1.685 | 1 / 19 | |
| 1.1.684 | 1 / 19 | |
| 1.1.683 | 1 / 19 | |
| 1.1.682 | 1 / 19 | |
| 1.1.681 | 1 / 19 | |
| 1.1.680 | 1 / 19 | |
| 1.1.679 | 1 / 19 | |
| 1.1.678 | 1 / 19 | |
| 1.1.677 | 1 / 19 | |
| 1.1.676 | 1 / 19 | |
| 1.1.675 | 1 / 19 | |
| 1.1.674 | 1 / 19 | |
| 1.1.673 | 1 / 19 | |
| 1.1.672 | 1 / 19 | |
| 1.1.671 | 1 / 19 | |
| 1.1.670 | 1 / 19 | |
| 1.1.669 | 1 / 19 | |
| 1.1.668 | 1 / 19 | |
| 1.1.667 | 1 / 19 | |
| 1.1.666 | 1 / 19 | |
| 1.1.665 | 1 / 19 | |
| 1.1.664 | 1 / 19 | |
| 1.1.663 | 1 / 19 | |
| 1.1.662 | 1 / 19 | |
| 1.1.661 | 1 / 19 | |
| 1.1.659 | 1 / 19 | |
| 1.1.657 | 1 / 19 | |
| 1.1.656 | 1 / 19 | |
| 1.1.655 | 1 / 19 | |
| 1.1.653 | 1 / 19 | |
| 1.1.652 | 1 / 19 | |
| 1.1.651 | 1 / 19 | |
| 1.1.621 | 1 / 19 | |
| 1.1.620 | 1 / 19 | |
| 1.1.619 | 1 / 19 | |
| 1.1.618 | 1 / 19 | |
| 1.1.617 | 1 / 19 | |
| 1.1.616 | 1 / 19 | |
| 1.1.615 | 1 / 19 | |
| 1.1.614 | 1 / 19 | |
| 1.1.613 | 1 / 19 | |
| 1.1.612 | 1 / 19 | |
| 1.1.610 | 1 / 19 | |
| 1.1.609 | 2 / 19 | |
| 1.1.608 | 2 / 19 | |
| 1.1.607 | 2 / 19 | |
| 1.1.606 | 2 / 19 | |
| 1.1.605 | 2 / 19 | |
| 1.1.604 | 2 / 19 | |
| 1.1.603 | 2 / 19 | |
| 1.1.602 | 2 / 19 | |
| 1.1.601 | 2 / 19 | |
| 1.1.600 | 2 / 19 | |
| 1.1.599 | 2 / 19 | |
| 1.1.598 | 2 / 19 | |
| 1.1.597 | 2 / 19 | |
| 1.1.596 | 2 / 19 | |
| 1.1.595 | 2 / 19 | |
| 1.1.594 | 2 / 19 | |
| 1.1.593 | 2 / 19 | |
| 1.1.591 | 2 / 19 |
v1.1.724
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.723
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.722
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.694
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.693
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.692
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.691
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.690
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.689
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.688
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.687
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.686
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.685
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.684
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.683
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.682
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.681
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.680
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.679
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.678
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.677
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.676
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.675
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.674
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.673
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.672
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.671
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.670
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.669
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.668
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.667
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.666
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.665
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.664
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.663
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.662
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.661
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.659
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.657
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.656
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.655
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.653
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.652
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.651
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.1.609
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.608
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.607
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.606
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.604
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.603
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.601
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.600
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.599
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.598
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.597
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.596
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.594
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.593
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.1.591
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.