@hoptrendy/hopcode-server
gRPC headless server for HopCode agent
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| dependencies | unvetted-dep:@hoptrendy/hopcode-core | AI (dependencies): Internal monorepo dependency from the same org; consistent across versions of this package. | ai | |
| publish-pattern | rapid-publish | AI (publish-pattern): CI/CD-driven monorepo releases; rapid publishes are expected and backed by SLSA provenance. | ai | |
| provenance | slsa-provenance | AI (provenance): Package consistently published via CI/CD with Sigstore attestation; stable signal for this package. | ai |
Versions (showing 51 of 69)
| Version | Deps | Published |
|---|---|---|
| 0.30.6 | 3 / 3 | |
| 0.30.5 | 3 / 3 | |
| 0.30.4 | 3 / 3 | |
| 0.30.3 | 3 / 3 | |
| 0.30.2 | 3 / 3 | |
| 0.30.1 | 3 / 3 | |
| 0.30.0 | 3 / 3 | |
| 0.29.0 | 3 / 3 | |
| 0.28.0 | 3 / 3 | |
| 0.27.10 | 3 / 3 | |
| 0.27.9 | 3 / 3 | |
| 0.27.8 | 3 / 3 | |
| 0.27.7 | 3 / 3 | |
| 0.27.5 | 3 / 3 | |
| 0.27.1 | 3 / 3 | |
| 0.27.0 | 3 / 3 | |
| 0.26.5 | 3 / 3 | |
| 0.26.4 | 3 / 3 | |
| 0.26.2 | 3 / 3 | |
| 0.26.0 | 3 / 3 | |
| 0.25.2 | 3 / 3 | |
| 0.25.1 | 3 / 3 | |
| 0.24.6 | 3 / 3 | |
| 0.24.5 | 3 / 3 | |
| 0.24.4 | 3 / 3 | |
| 0.24.2 | 3 / 3 | |
| 0.24.0 | 3 / 3 | |
| 0.23.0 | 3 / 3 | |
| 0.21.3 | 3 / 3 | |
| 0.21.2 | 3 / 3 | |
| 0.21.1 | 3 / 3 | |
| 0.21.0 | 3 / 3 | |
| 0.20.0 | 3 / 3 | |
| 0.19.9 | 3 / 3 | |
| 0.19.7 | 3 / 3 | |
| 0.19.6 | 3 / 3 | |
| 0.19.5 | 3 / 3 | |
| 0.19.4 | 3 / 3 | |
| 0.19.3 | 3 / 3 | |
| 0.19.2 | 3 / 3 | |
| 0.19.1 | 3 / 3 | |
| 0.19.0 | 3 / 3 | |
| 0.18.9 | 3 / 3 | |
| 0.18.8 | 3 / 3 | |
| 0.18.6 | 3 / 3 | |
| 0.18.5 | 3 / 3 | |
| 0.18.4 | 3 / 3 | |
| 0.18.3 | 3 / 3 | |
| 0.18.2 | 3 / 3 | |
| 0.18.1 | 3 / 3 | |
| 0.18.0 | 3 / 3 |
v0.30.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.30.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.30.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.30.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.30.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.24.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.23.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.19.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.18.9
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.18.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.