@itentialopensource/adapter-opengear_lighthouse
This adapter integrates with system described as: lighthouseRestApi.
8
Versions
Apache-2.0
License
Yes
Install Scripts
Missing
Provenance
Supply chain provenance
Status for the latest visible version.
No SLSA provenance
npm registry signatures
gitHead linked
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
jared.obrienjohnpolanskyzack.strulovitchitential-ciandyknaebelishitaprakash
Keywords
ItentialItential PlatformAutomationIntegrationAdapteropengear_lighthousePre-ReleaseControllerOrchestraton
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| dependencies | unvetted-dep:mocha-param | AI (dependencies): mocha-param is a test-only helper used across all Itential adapter packages; stable false positive for this package family. | ai | |
| provenance | no-provenance | AI (provenance): Itential publishes from GitLab CI without Sigstore attestation; consistent across all versions of this package. | ai | |
| semgrep | semgrep:child-process-import | AI (semgrep): child_process used in adapterBase.js for health checks and connectivity utilities; standard for this adapter framework. | ai | |
| phantom-deps | phantom-dep:ping | AI (phantom-deps): ping is used in connectivity/troubleshoot scripts referenced in config; stable false positive for this package. | ai | |
| install-scripts | install-script:preinstall | AI (install-scripts): Itential adapter framework uses node utils/setup.js preinstall consistently across all adapter packages; not malicious. | ai | |
| phantom-deps | phantom-dep:mocha-param | AI (phantom-deps): mocha-param used in test scripts via CLI config; stable false positive for this adapter package. | ai | |
| phantom-deps | phantom-dep:prompts | AI (phantom-deps): prompts used in setup/migration utilities; referenced in config files as expected. | ai | |
| semgrep | semgrep:dynamic-require | AI (semgrep): Dynamic require in adapterBase.js is a stable pattern for loading adapter components in the Itential framework. | ai |