← Home

@imtbl/cryptofiat

Crypto to Fiat SDK powered by Coingecko

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

tcurtin88alex-immutableimmutable-npm

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Transition to GitHub Actions CI publisher with SLSA attestation; consistent with org-wide CI/CD migration for @imtbl/* packages. ai
maintainer-change maintainer-removed AI (maintainer-change): platform-sa removal mirrors the GitHub Actions publisher adoption; part of the same CI/CD migration pattern. ai

Versions (showing 51 of 73)

View all versions
Version Deps Published
2.22.0 2 / 16
2.21.0 2 / 16
2.20.2 2 / 16
2.20.1 2 / 16
2.20.0 2 / 16
2.19.0 2 / 16
2.18.0 2 / 16
2.17.1 2 / 16
2.17.0 2 / 16
2.16.0 2 / 16
2.15.0 2 / 16
2.14.3 2 / 16
2.14.0 2 / 16
2.13.0 2 / 16
2.12.7 2 / 16
2.12.6 2 / 16
2.12.5 2 / 16
2.12.4 2 / 16
2.12.3 2 / 16
2.12.2 2 / 16
2.12.1 2 / 16
2.12.0 2 / 16
2.11.0 2 / 16
2.10.6 2 / 16
2.10.5 2 / 16
2.10.4 2 / 16
2.10.3 2 / 16
2.10.2 2 / 16
2.10.1 2 / 16
2.10.0 2 / 16
2.8.0 2 / 16
2.7.4 2 / 16
2.7.3 2 / 16
2.7.2 2 / 16
2.7.0 2 / 16
2.6.0 2 / 16
2.4.14 2 / 16
2.4.13 2 / 16
2.4.11 2 / 16
2.4.10 2 / 16
2.4.9 2 / 16
2.4.8 2 / 16
2.4.7 2 / 16
2.4.6 2 / 16
2.4.5 2 / 16
2.4.4 2 / 16
2.4.3 2 / 16
2.4.2 2 / 16
2.4.1 2 / 16
2.4.0 2 / 16
2.3.3 2 / 16

v2.22.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.21.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.20.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.