@flarehr/superhero-salpac-profile-admin
Flare Superhero Profile Admin
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:preact | AI (phantom-deps): Bundled Preact app; deps consumed via Vite build, not direct imports. Stable FP for this package. | ai | |
| phantom-deps | phantom-dep:jwt-decode | AI (phantom-deps): Runtime dep bundled via Vite; phantom-dep heuristic is a stable FP for this package. | ai | |
| phantom-deps | phantom-dep:@emotion/css | AI (phantom-deps): Emotion CSS bundled via Vite/twin.macro; stable FP for this package. | ai | |
| phantom-deps | phantom-dep:react-router | AI (phantom-deps): Bundled via Vite; stable FP for this package. | ai | |
| phantom-deps | phantom-dep:@emotion/cache | AI (phantom-deps): Emotion dep bundled via Vite; stable FP for this package. | ai | |
| phantom-deps | phantom-dep:@emotion/react | AI (phantom-deps): Emotion dep bundled via Vite; stable FP for this package. | ai | |
| phantom-deps | phantom-dep:@emotion/styled | AI (phantom-deps): Emotion dep bundled via Vite; stable FP for this package. | ai | |
| phantom-deps | phantom-dep:@heroicons/react | AI (phantom-deps): Bundled via Vite; stable FP for this package. | ai | |
| phantom-deps | phantom-dep:@headlessui/react | AI (phantom-deps): Bundled via Vite; stable FP for this package. | ai | |
| phantom-deps | phantom-dep:@tanstack/react-query | AI (phantom-deps): Bundled via Vite; stable FP for this package. | ai | |
| phantom-deps | phantom-dep:preact-custom-element | AI (phantom-deps): Bundled via Vite; stable FP for this package. | ai |
Versions (showing 51 of 422)
| Version | Deps | Published |
|---|---|---|
| 1.0.1282 | 11 / 26 | |
| 1.0.1281 | 11 / 26 | |
| 1.0.1280 | 11 / 26 | |
| 1.0.1279 | 11 / 26 | |
| 1.0.1278 | 11 / 26 | |
| 1.0.1277 | 11 / 26 | |
| 1.0.1276 | 11 / 26 | |
| 1.0.1275 | 11 / 26 | |
| 1.0.1274 | 11 / 26 | |
| 1.0.1273 | 11 / 26 | |
| 1.0.1272 | 11 / 26 | |
| 1.0.1271 | 11 / 26 | |
| 1.0.1270 | 11 / 26 | |
| 1.0.1269 | 11 / 26 | |
| 1.0.1268 | 11 / 26 | |
| 1.0.1267 | 11 / 26 | |
| 1.0.1266 | 11 / 26 | |
| 1.0.1265 | 11 / 26 | |
| 1.0.1264 | 11 / 26 | |
| 1.0.1263 | 11 / 26 | |
| 1.0.1262 | 11 / 26 | |
| 1.0.1261 | 11 / 26 | |
| 1.0.1260 | 11 / 26 | |
| 1.0.1258 | 11 / 26 | |
| 1.0.1257 | 11 / 26 | |
| 1.0.1256 | 11 / 26 | |
| 1.0.1255 | 11 / 26 | |
| 1.0.1254 | 11 / 26 | |
| 1.0.1253 | 11 / 26 | |
| 1.0.1252 | 11 / 26 | |
| 1.0.1251 | 11 / 26 | |
| 1.0.1250 | 11 / 26 | |
| 1.0.1249 | 11 / 26 | |
| 1.0.1248 | 11 / 26 | |
| 1.0.1247 | 11 / 26 | |
| 1.0.1246 | 11 / 26 | |
| 1.0.1245 | 11 / 26 | |
| 1.0.1244 | 11 / 26 | |
| 1.0.1243 | 11 / 26 | |
| 1.0.1242 | 11 / 26 | |
| 1.0.1241 | 11 / 26 | |
| 1.0.1240 | 11 / 26 | |
| 1.0.1239 | 11 / 26 | |
| 1.0.1238 | 11 / 26 | |
| 1.0.1237 | 11 / 26 | |
| 1.0.1236 | 11 / 26 | |
| 1.0.1235 | 11 / 26 | |
| 1.0.1234 | 11 / 26 | |
| 1.0.1233 | 11 / 26 | |
| 1.0.1232 | 11 / 26 | |
| 1.0.1231 | 11 / 26 |
v1.0.1282
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1281
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1280
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1279
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1278
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1277
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1276
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1275
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1274
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1273
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1272
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1271
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1270
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1269
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1268
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1267
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1266
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1265
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1264
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1263
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1262
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1261
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1260
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1258
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1257
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1256
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1255
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1254
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1253
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1252
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1251
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1250
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1249
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1248
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1247
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1246
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1245
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1244
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1243
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1242
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1241
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1240
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1239
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1238
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1237
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1236
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1235
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1233
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1232
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1231
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.