@keplr-wallet/mobx-utils
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| typosquat | typosquat.pattern:mobx | AI (typosquat): Intentional mobx utility wrapper in the @keplr-wallet scoped namespace; not a typosquat. | ai |
Versions (showing 15 of 115)
| Version | Deps | Published |
|---|---|---|
| 0.12.245 | 1 / 0 | |
| 0.12.244 | 1 / 0 | |
| 0.12.243 | 1 / 0 | |
| 0.12.242 | 1 / 0 | |
| 0.12.241 | 1 / 0 | |
| 0.12.240 | 1 / 0 | |
| 0.12.239 | 1 / 0 | |
| 0.12.238 | 1 / 0 | |
| 0.12.237 | 1 / 0 | |
| 0.12.236 | 1 / 0 | |
| 0.12.235 | 1 / 0 | |
| 0.12.234 | 1 / 0 | |
| 0.12.233 | 1 / 0 | |
| 0.12.232 | 1 / 0 | |
| 0.12.231 | 1 / 0 |
v0.12.245
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.244
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.243
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.242
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.241
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.240
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.239
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.238
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.237
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.236
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.235
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.234
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.233
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.232
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.12.231
2 findingsPackage name '@keplr-wallet/mobx-utils' matches a known typosquatting pattern (hyphen swap, prefix/suffix) of 'mobx'.
Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.