@fortawesome/angular-fontawesome
Angular Fontawesome, an Angular library
32
Versions
MIT
License
No
Install Scripts
Missing
Provenance
Supply chain provenance
Status for the latest visible version.
No SLSA provenance
npm registry signatures
gitHead linked
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
devoto13jrjohnsonrobmadolesupercodepoetfortawesome-adminmwilkersonjasonlundienlordofbacon
Keywords
angularfontawesomefontawesomeiconsvg
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| source-diff | obfuscated-file:esm2022/stack/stack.component.mjs | AI (source-diff): Standard Angular ESM2022 compiled output with inline base64 sourcemaps; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2022/layers/layers.component.mjs | AI (source-diff): Standard Angular compiler output with inline base64 sourcemaps; fully readable component code. | ai | |
| source-diff | obfuscated-file:esm2022/layers/layers-text.component.mjs | AI (source-diff): Standard Angular compiler output with inline base64 sourcemaps; fully readable component code. | ai | |
| source-diff | obfuscated-file:esm2022/layers/layers-counter.component.mjs | AI (source-diff): Standard Angular compiler output with inline base64 sourcemaps; fully readable component code. | ai | |
| source-diff | obfuscated-file:esm2022/icon/icon.component.mjs | AI (source-diff): Standard Angular compiler output with inline base64 sourcemaps; fully readable component code. | ai | |
| source-diff | obfuscated-file:esm2022/icon-library.mjs | AI (source-diff): Standard Angular compiler output with inline base64 sourcemaps; fully readable service code. | ai | |
| source-diff | obfuscated-file:esm2022/shared/utils/classlist.util.mjs | AI (source-diff): Standard Angular compiler output with inline base64 sourcemaps causing long lines; fully readable code. | ai | |
| source-diff | obfuscated-file:esm2022/icon/duotone-icon.component.mjs | AI (source-diff): Standard Angular compiler output with inline base64 sourcemaps; fully readable component code. | ai | |
| source-diff | obfuscated-file:esm2020/shared/utils/classlist.util.mjs | AI (source-diff): Standard Angular esm2020 compiler output with inline base64 sourcemaps causing long lines. Not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2020/layers/layers-text.component.mjs | AI (source-diff): Angular compiler output with inline source maps; long lines are from ɵɵngDeclare* metadata, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2020/layers/layers.component.mjs | AI (source-diff): Angular compiler output with inline source maps; long lines are from ɵɵngDeclare* metadata, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2020/icon/duotone-icon.component.mjs | AI (source-diff): Angular compiler output with inline source maps; long lines are from ɵɵngDeclare* metadata, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2020/icon-library.mjs | AI (source-diff): Angular compiler output with inline source maps; long lines are from ɵɵngDeclare* metadata, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2020/icon/icon.component.mjs | AI (source-diff): Angular compiler output with inline source maps; long lines are from ɵɵngDeclare* metadata, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2020/layers/layers-counter.component.mjs | AI (source-diff): Angular compiler output with inline source maps; long lines are from ɵɵngDeclare* metadata, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm5/config.js | AI (source-diff): Standard Angular library build output with inline source maps; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm5/stack/stack.component.js | AI (source-diff): Standard Angular AOT/tsickle build output; long lines are an artifact of ng-packagr, not obfuscation. | ai | |
| source-diff | large-new-source-files | AI (source-diff): New features (duotone icons, icon library) across Angular's multiple module formats; expected growth. | ai | |
| source-diff | obfuscated-file:esm5/icon-library.js | AI (source-diff): Standard Angular AOT/tsickle build output; long lines are an artifact of ng-packagr, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm5/icon/duotone-icon.component.js | AI (source-diff): Standard Angular AOT/tsickle build output; long lines are an artifact of ng-packagr, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2015/stack/stack.component.js | AI (source-diff): Standard Angular ESM2015 compiled output with inline source maps; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2015/icon/duotone-icon.component.js | AI (source-diff): Standard Angular ESM2015 compiled output with inline source maps; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2015/config.js | AI (source-diff): Standard Angular ESM2015 compiled output with inline source maps; not obfuscated. | ai | |
| maintainer-change | maintainer-added | AI (maintainer-change): devoto13 and jrjohnson are known FortAwesome contributors; legitimate team change. | ai | |
| source-diff | obfuscated-file:esm2015/icon-library.js | AI (source-diff): Standard Angular ESM2015 compiled output with inline source maps; not obfuscated. | ai | |
| provenance | publisher-changed | AI (provenance): Both robmadole and mwilkerson are listed contributors on the FortAwesome team; legitimate maintainer transition within the org. | ai | |
| provenance | no-provenance | AI (provenance): Package predates Sigstore provenance; no provenance is expected for 2018-era publishes from this org. | ai | |
| phantom-deps | phantom-dep:tslib | AI (phantom-deps): tslib is a standard TypeScript runtime helper; its use as an implicit dependency is normal for Angular libraries compiled with the Angular compiler. | ai | |
| dependencies | unvetted-dep:@fortawesome/fontawesome-svg-core | AI (dependencies): This is the official Font Awesome SVG core library from the same FortAwesome org — a legitimate and expected dependency of this Angular wrapper. | ai |
Versions (showing 32 of 32)
| Version | Deps | Published |
|---|---|---|
| 5.1.0 | 2 / 0 | |
| 5.0.0 | 2 / 0 | |
| 4.0.0 | 2 / 0 | |
| 3.0.0 | 2 / 0 | |
| 2.0.1 | 2 / 0 | |
| 2.0.0 | 2 / 0 | |
| 1.0.0 | 2 / 0 | |
| 0.15.0 | 2 / 0 | |
| 0.14.1 | 1 / 0 | |
| 0.14.0 | 1 / 0 | |
| 0.13.0 | 1 / 0 | |
| 0.12.1 | 1 / 0 | |
| 0.12.0 | 1 / 0 | |
| 0.11.1 | 1 / 0 | |
| 0.11.0 | 1 / 0 | |
| 0.10.2 | 1 / 0 | |
| 0.10.1 | 1 / 0 | |
| 0.10.0 | 1 / 0 | |
| 0.9.0 | 1 / 0 | |
| 0.8.2 | 1 / 0 | |
| 0.8.1 | 1 / 0 | |
| 0.8.0 | 1 / 0 | |
| 0.7.0 | 1 / 0 | |
| 0.6.1 | 0 / 0 | |
| 0.6.0 | 0 / 0 | |
| 0.5.0 | 1 / 33 | |
| 0.4.0 | 1 / 0 | |
| 0.3.0 | 1 / 0 | |
| 0.2.1 | 1 / 0 | |
| 0.2.0 | 1 / 0 | |
| 0.1.1 | 1 / 0 | |
| 0.1.0 | 1 / 0 |
v5.1.0
1 finding
INFO
No provenance attestation
provenance
[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.