@injectivelabs/wallet-core
Core wallet strategy
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | missing-githead | AI (provenance): CI/CD migration to GitHub Actions explains missing gitHead; SLSA attestation provides stronger provenance guarantee. | ai | |
| provenance | publisher-changed | AI (provenance): Transition to GitHub Actions CI publisher is a legitimate automation pattern for this org; SLSA attestation confirms integrity. | ai | |
| maintainer-change | maintainer-removed | AI (maintainer-change): Maintainer removal consistent with org-level CI/CD consolidation; no other risk signals present. | ai |
Versions (showing 51 of 190)
| Version | Deps | Published |
|---|---|---|
| 1.20.27 | 8 / 0 | |
| 1.20.26 | 8 / 0 | |
| 1.20.25 | 8 / 0 | |
| 1.20.24 | 8 / 0 | |
| 1.20.23 | 8 / 0 | |
| 1.20.21 | 8 / 0 | |
| 1.20.20 | 8 / 0 | |
| 1.20.19 | 8 / 0 | |
| 1.20.18 | 8 / 0 | |
| 1.20.17 | 8 / 0 | |
| 1.20.16 | 8 / 0 | |
| 1.20.15 | 8 / 0 | |
| 1.20.14 | 8 / 0 | |
| 1.20.13 | 8 / 0 | |
| 1.20.12 | 8 / 0 | |
| 1.20.11 | 8 / 0 | |
| 1.20.10 | 8 / 0 | |
| 1.20.9 | 8 / 0 | |
| 1.20.8 | 8 / 0 | |
| 1.20.7 | 8 / 0 | |
| 1.20.6 | 8 / 0 | |
| 1.20.5 | 8 / 0 | |
| 1.20.4 | 8 / 0 | |
| 1.20.3 | 8 / 0 | |
| 1.20.2 | 8 / 0 | |
| 1.20.1 | 8 / 0 | |
| 1.19.29 | 8 / 0 | |
| 1.19.28 | 8 / 0 | |
| 1.19.27 | 8 / 0 | |
| 1.19.26 | 8 / 0 | |
| 1.19.25 | 8 / 0 | |
| 1.19.24 | 8 / 0 | |
| 1.19.23 | 8 / 0 | |
| 1.19.22 | 8 / 0 | |
| 1.19.21 | 8 / 0 | |
| 1.19.20 | 8 / 0 | |
| 1.19.19 | 8 / 0 | |
| 1.19.18 | 8 / 0 | |
| 1.19.17 | 8 / 0 | |
| 1.19.16 | 8 / 0 | |
| 1.19.15 | 8 / 0 | |
| 1.19.14 | 8 / 0 | |
| 1.19.13 | 8 / 0 | |
| 1.19.12 | 8 / 0 | |
| 1.19.11 | 8 / 0 | |
| 1.19.10 | 8 / 0 | |
| 1.19.9 | 8 / 0 | |
| 1.19.8 | 8 / 0 | |
| 1.19.7 | 8 / 0 | |
| 1.19.6 | 8 / 0 | |
| 1.19.5 | 8 / 0 |
v1.20.27
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.26
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.25
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.24
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.23
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.21
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.20
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.19
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.