@injectivelabs/wallet-trezor
Trezor wallet strategy for use with @injectivelabs/wallet-core.
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | missing-githead | AI (provenance): Package now publishes via GitHub Actions CI with SLSA attestation; gitHead absence is expected in this new publish flow. | ai | |
| provenance | publisher-changed | AI (provenance): Transition to GitHub Actions CI publisher is consistent with SLSA-attested CI/CD pipeline adoption by InjectiveLabs org. | ai | |
| phantom-deps | phantom-dep:@trezor/connect | AI (phantom-deps): @trezor/connect is a declared runtime dep used in config; phantom-dep heuristic fires on config-only references. | ai | |
| dependencies | unvetted-dep:@bangjelkoski/trezor-connect-web | AI (dependencies): Org-internal Trezor Connect fork by InjectiveLabs contributor; stable pattern across versions of this package. | ai |
Versions (showing 51 of 98)
| Version | Deps | Published |
|---|---|---|
| 1.20.27 | 8 / 0 | |
| 1.20.26 | 8 / 0 | |
| 1.20.25 | 8 / 0 | |
| 1.20.24 | 7 / 0 | |
| 1.20.23 | 7 / 0 | |
| 1.20.21 | 7 / 0 | |
| 1.20.20 | 7 / 0 | |
| 1.20.19 | 7 / 0 | |
| 1.20.18 | 7 / 0 | |
| 1.20.17 | 7 / 0 | |
| 1.20.16 | 7 / 0 | |
| 1.20.15 | 7 / 0 | |
| 1.20.14 | 7 / 0 | |
| 1.20.13 | 7 / 0 | |
| 1.20.12 | 7 / 0 | |
| 1.20.11 | 7 / 0 | |
| 1.20.10 | 7 / 0 | |
| 1.20.9 | 7 / 0 | |
| 1.20.8 | 7 / 0 | |
| 1.20.7 | 7 / 0 | |
| 1.20.6 | 7 / 0 | |
| 1.20.5 | 7 / 0 | |
| 1.20.4 | 7 / 0 | |
| 1.20.3 | 7 / 0 | |
| 1.20.2 | 7 / 0 | |
| 1.20.1 | 7 / 0 | |
| 1.19.29 | 7 / 0 | |
| 1.19.28 | 7 / 0 | |
| 1.19.27 | 7 / 0 | |
| 1.19.26 | 7 / 0 | |
| 1.19.25 | 7 / 0 | |
| 1.19.24 | 7 / 0 | |
| 1.19.23 | 7 / 0 | |
| 1.19.22 | 7 / 0 | |
| 1.19.21 | 7 / 0 | |
| 1.19.20 | 7 / 0 | |
| 1.19.19 | 7 / 0 | |
| 1.19.18 | 7 / 0 | |
| 1.19.17 | 7 / 0 | |
| 1.19.16 | 7 / 0 | |
| 1.19.15 | 7 / 0 | |
| 1.19.14 | 7 / 0 | |
| 1.19.13 | 7 / 0 | |
| 1.19.12 | 7 / 0 | |
| 1.19.11 | 7 / 0 | |
| 1.19.10 | 7 / 0 | |
| 1.19.9 | 7 / 0 | |
| 1.19.8 | 7 / 0 | |
| 1.19.7 | 7 / 0 | |
| 1.19.6 | 7 / 0 | |
| 1.19.5 | 7 / 0 |
v1.20.27
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.26
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.25
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.24
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.23
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.21
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.20
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.20.19
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.