@jpp-toolkit/cli
CLI tool for JS/TS project development workflows.
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| typosquat | typosquat.levenshtein:joi | AI (typosquat): Scoped package @jpp-toolkit/cli; Levenshtein match to 'joi' is a false positive with no brand impersonation intent. | ai | |
| phantom-deps | phantom-dep:@oclif/plugin-help | AI (phantom-deps): oclif plugins are loaded via oclif config, not direct imports; phantom-dep is a stable false positive for this package. | ai | |
| phantom-deps | phantom-dep:@jpp-toolkit/plugin-lint | AI (phantom-deps): oclif plugin loaded via config, not direct import; stable false positive. | ai | |
| phantom-deps | phantom-dep:@jpp-toolkit/plugin-clean | AI (phantom-deps): oclif plugin loaded via config, not direct import; stable false positive. | ai | |
| phantom-deps | phantom-dep:@jpp-toolkit/plugin-build-lib | AI (phantom-deps): oclif plugin loaded via config, not direct import; stable false positive. | ai | |
| phantom-deps | phantom-dep:@jpp-toolkit/plugin-changesets | AI (phantom-deps): oclif plugin loaded via config, not direct import; stable false positive. | ai | |
| phantom-deps | phantom-dep:@jpp-toolkit/plugin-build-fivem | AI (phantom-deps): oclif plugin loaded via config, not direct import; stable false positive. | ai | |
| phantom-deps | phantom-dep:@jpp-toolkit/plugin-build-react | AI (phantom-deps): oclif plugin loaded via config, not direct import; stable false positive. | ai | |
| phantom-deps | phantom-dep:@jpp-toolkit/plugin-check-updates | AI (phantom-deps): oclif plugin loaded via config, not direct import; stable false positive. | ai |
Versions (showing 51 of 205)
| Version | Deps | Published |
|---|---|---|
| 0.0.217 | 9 / 2 | |
| 0.0.216 | 9 / 2 | |
| 0.0.215 | 9 / 2 | |
| 0.0.214 | 9 / 2 | |
| 0.0.213 | 9 / 2 | |
| 0.0.212 | 9 / 2 | |
| 0.0.211 | 9 / 2 | |
| 0.0.210 | 9 / 2 | |
| 0.0.209 | 9 / 2 | |
| 0.0.208 | 9 / 2 | |
| 0.0.207 | 9 / 2 | |
| 0.0.206 | 9 / 2 | |
| 0.0.205 | 9 / 2 | |
| 0.0.204 | 9 / 2 | |
| 0.0.203 | 9 / 2 | |
| 0.0.202 | 9 / 2 | |
| 0.0.201 | 9 / 2 | |
| 0.0.200 | 9 / 2 | |
| 0.0.199 | 9 / 2 | |
| 0.0.198 | 9 / 2 | |
| 0.0.197 | 9 / 2 | |
| 0.0.196 | 9 / 2 | |
| 0.0.195 | 9 / 2 | |
| 0.0.194 | 9 / 2 | |
| 0.0.193 | 9 / 2 | |
| 0.0.192 | 9 / 2 | |
| 0.0.191 | 9 / 2 | |
| 0.0.190 | 9 / 2 | |
| 0.0.189 | 9 / 2 | |
| 0.0.188 | 9 / 2 | |
| 0.0.187 | 9 / 2 | |
| 0.0.186 | 9 / 2 | |
| 0.0.185 | 9 / 2 | |
| 0.0.184 | 9 / 2 | |
| 0.0.183 | 9 / 2 | |
| 0.0.182 | 9 / 2 | |
| 0.0.181 | 9 / 2 | |
| 0.0.180 | 9 / 2 | |
| 0.0.179 | 9 / 2 | |
| 0.0.178 | 9 / 2 | |
| 0.0.177 | 9 / 2 | |
| 0.0.176 | 9 / 2 | |
| 0.0.175 | 9 / 2 | |
| 0.0.174 | 9 / 2 | |
| 0.0.173 | 9 / 2 | |
| 0.0.172 | 9 / 2 | |
| 0.0.171 | 9 / 2 | |
| 0.0.170 | 9 / 2 | |
| 0.0.169 | 9 / 2 | |
| 0.0.168 | 9 / 2 | |
| 0.0.167 | 9 / 2 |
v0.0.217
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.216
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.215
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.214
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.213
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.212
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.211
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.210
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.209
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.208
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.207
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.206
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.205
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.204
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.203
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.202
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.201
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.200
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.199
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.198
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.197
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.196
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.195
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.194
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.193
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.192
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.191
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.190
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.189
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.188
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.187
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.186
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.185
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.184
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.183
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.182
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.181
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.180
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.179
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.178
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.175
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.174
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.173
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.172
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.170
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.0.169
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.