@hanzogui/build
A small, opinionated build script for libraries that target both React Native and React web.
15
Versions
—
License
No
Install Scripts
Missing
Provenance
Supply chain provenance
Status for the latest visible version.
No SLSA provenance
npm registry signatures
gitHead linked
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
artemis-primezeekay
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| typosquat | typosquat.levenshtein:uuid | AI (typosquat): Scoped package @hanzogui/build; name reflects org+purpose, not an impersonation of uuid. | ai | |
| typosquat | typosquat.levenshtein:esbuild | AI (typosquat): Scoped package @hanzogui/build; name reflects org+purpose, not an impersonation of esbuild. | ai | |
| phantom-deps | phantom-dep:execa | AI (phantom-deps): Build tool; execa referenced in config files is a normal pattern for CLI toolchains. | ai | |
| phantom-deps | phantom-dep:esbuild-register | AI (phantom-deps): Build tool; esbuild-register loaded by convention in config files. | ai | |
| phantom-deps | phantom-dep:baseline-browser-mapping | AI (phantom-deps): Referenced in config files; consistent with a bundler/build tool pattern. | ai | |
| phantom-deps | phantom-dep:@babel/preset-typescript | AI (phantom-deps): Framework-scoped Babel preset; loaded by convention, not direct import. | ai | |
| phantom-deps | phantom-dep:@types/fs-extra | AI (phantom-deps): Type-only package; not directly imported by design. | ai |