← Home

@hed-hog/catalog

O módulo `@hed-hog/catalog` é responsável pela gestão do catálogo de produtos, marcas, sites, categorias e atributos relacionados. Ele oferece funcionalidades para criação, atualização, listagem, exclusão e comparação de produtos, além de gerenciar a estr

35
Versions
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures No source commit

Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.

Maintainers

gabrielhcodejoaohcrangel

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
bogus-package bogus-package AI (bogus-package): Consistent sparse metadata pattern across the @hed-hog monorepo; not indicative of spam or malice. ai
phantom-deps phantom-dep:@nestjs/jwt AI (phantom-deps): NestJS peer deps declared at package level but resolved via monorepo; stable false positive for this org. ai
phantom-deps phantom-dep:@nestjs/core AI (phantom-deps): NestJS peer deps declared at package level but resolved via monorepo; stable false positive for this org. ai
phantom-deps phantom-dep:@nestjs/config AI (phantom-deps): NestJS peer deps declared at package level but resolved via monorepo; stable false positive for this org. ai
phantom-deps phantom-dep:@nestjs/mapped-types AI (phantom-deps): NestJS peer deps declared at package level but resolved via monorepo; stable false positive for this org. ai
phantom-deps phantom-dep:@hed-hog/core AI (phantom-deps): Same-org sibling dep; phantom detection is a false positive for this monorepo structure. ai
phantom-deps phantom-dep:@hed-hog/tag AI (phantom-deps): Same-org sibling dep; phantom detection is a false positive for this monorepo structure. ai
phantom-deps phantom-dep:@hed-hog/content AI (phantom-deps): Same-org sibling dep; phantom detection is a false positive for this monorepo structure. ai
phantom-deps phantom-dep:@hed-hog/category AI (phantom-deps): Same-org sibling dep; phantom detection is a false positive for this monorepo structure. ai

Versions (showing 35 of 35)

Version Deps Published
0.0.347 13 / 0
0.0.333 13 / 0
0.0.332 13 / 0
0.0.331 13 / 0
0.0.330 13 / 0
0.0.329 13 / 0
0.0.328 13 / 0
0.0.327 13 / 0
0.0.326 13 / 0
0.0.325 13 / 0
0.0.312 13 / 0
0.0.311 13 / 0
0.0.310 13 / 0
0.0.309 13 / 0
0.0.306 13 / 0
0.0.305 13 / 0
0.0.304 13 / 0
0.0.303 13 / 0
0.0.302 13 / 0
0.0.301 13 / 0
0.0.300 13 / 0
0.0.299 13 / 0
0.0.298 13 / 0
0.0.297 13 / 0
0.0.296 13 / 0
0.0.295 13 / 0
0.0.294 13 / 0
0.0.293 13 / 0
0.0.292 13 / 0
0.0.291 13 / 0
0.0.286 13 / 0
0.0.285 13 / 0
0.0.279 13 / 0
0.0.278 13 / 0
0.0.276 13 / 0

v0.0.347

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.333

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.332

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.331

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.330

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.329

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.328

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.327

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.326

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.325

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.312

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.311

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.310

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.309

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.306

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.305

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.304

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.303

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.302

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.301

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.300

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.299

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.298

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.297

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.296

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.295

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.294

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.293

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.292

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.291

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.286

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.285

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.279

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.278

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v0.0.276

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.