@kong-ui-public/entities-plugins
Plugin entity components.
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| source-diff | obfuscated-file:dist/filler/field-walker-Cc7ahQwd.js | AI (source-diff): Minified Vite bundle output, not true obfuscation; consistent with build tooling. | ai | |
| source-diff | obfuscated-file:dist/filler/field-walker-CC__PDLf.js | AI (source-diff): Minified Vite build chunk with readable selectors/imports, not real obfuscation. | ai | |
| source-diff | obfuscated-file:dist/filler/field-walker-DWTkzht2.js | AI (source-diff): Bundled Vite output with readable code, not true obfuscation. | ai | |
| source-diff | obfuscated-file:dist/filler/field-walker-_YAwDcC1.js | AI (source-diff): Vite/esbuild bundled output, not obfuscation; readable code in sample. | ai | |
| publish-pattern | new-deps-added | AI (publish-pattern): dompurify is a well-known HTML sanitization library; appropriate addition for freeform HTML rendering. | ai | |
| source-diff | obfuscated-file:dist/filler/field-walker-BWTqU3dI.js | AI (source-diff): Standard Vite minified bundle output; content is clearly test-selector helpers, not malicious code. | ai | |
| source-diff | obfuscated-file:dist/filler/field-walker-CituFcZB.js | AI (source-diff): Vite build artifact with readable content; filler utilities for Cypress/Playwright test helpers, not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:dist/filler/field-walker-DMJsTz2L.js | AI (source-diff): File is standard Vite-bundled output with readable code; minification is expected for this build pipeline. | ai | |
| publish-pattern | rapid-publish | AI (publish-pattern): High-frequency automated CI releases from Kong monorepo; rapid publishes are normal for this package. | ai | |
| source-diff | obfuscated-file:dist/filler/field-walker-GKhLVBvo.js | AI (source-diff): Vite-minified filler/test-helper bundle; content is readable selector utilities, not obfuscated malware. | ai | |
| source-diff | net-exec-file:dist/Reflect-DRBLqlES.js | AI (source-diff): File is the reflect-metadata polyfill (Apache-2.0, Microsoft); no actual network calls or malicious code execution. | ai | |
| phantom-deps | phantom-dep:focus-trap | AI (phantom-deps): Declared in dependencies; used in build/config; stable false positive. | ai | |
| phantom-deps | phantom-dep:lodash-es | AI (phantom-deps): Declared in dependencies; used in build/config; stable false positive. | ai | |
| phantom-deps | phantom-dep:nanoid | AI (phantom-deps): Declared in dependencies; used in build/config; stable false positive. | ai | |
| source-diff | obfuscated-file:dist/filler/field-walker-CwfGUJrB.js | AI (source-diff): Vite-bundled output with content-hash filename; readable source, no malicious patterns. Normal for this package's build pipeline. | ai | |
| dependencies | unvetted-peer-dep:@kong-ui-public/i18n | AI (dependencies): Internal Kong UI peer dependency; stable pattern across versions. | ai | |
| dependencies | unvetted-dep:@kong-ui-public/entities-plugins-metadata | AI (dependencies): Same Kong org namespace; consistent pattern across all versions of this package. | ai |
Versions (showing 51 of 812)
| Version | Deps | Published |
|---|---|---|
| 9.244.0 | 12 / 27 | |
| 9.243.0 | 12 / 27 | |
| 9.242.0 | 12 / 27 | |
| 9.241.0 | 12 / 27 | |
| 9.240.0 | 12 / 27 | |
| 9.239.1 | 12 / 27 | |
| 9.239.0 | 12 / 27 | |
| 9.238.0 | 12 / 27 | |
| 9.237.0 | 12 / 27 | |
| 9.236.0 | 12 / 27 | |
| 9.235.0 | 12 / 27 | |
| 9.234.0 | 12 / 27 | |
| 9.233.0 | 12 / 27 | |
| 9.232.0 | 12 / 27 | |
| 9.231.0 | 12 / 27 | |
| 9.230.0 | 12 / 27 | |
| 9.229.0 | 12 / 27 | |
| 9.228.0 | 12 / 27 | |
| 9.227.1 | 12 / 27 | |
| 9.227.0 | 12 / 27 | |
| 9.226.0 | 12 / 27 | |
| 9.225.4 | 12 / 27 | |
| 9.225.3 | 12 / 27 | |
| 9.225.2 | 12 / 27 | |
| 9.225.1 | 12 / 27 | |
| 9.225.0 | 12 / 27 | |
| 9.224.7 | 12 / 27 | |
| 9.224.6 | 12 / 27 | |
| 9.224.5 | 12 / 27 | |
| 9.224.4 | 12 / 27 | |
| 9.224.3 | 12 / 27 | |
| 9.224.2 | 12 / 27 | |
| 9.224.1 | 12 / 27 | |
| 9.224.0 | 12 / 27 | |
| 9.223.4 | 12 / 27 | |
| 9.223.3 | 12 / 27 | |
| 9.223.2 | 12 / 27 | |
| 9.223.1 | 12 / 27 | |
| 9.223.0 | 12 / 27 | |
| 9.222.8 | 12 / 27 | |
| 9.222.7 | 12 / 27 | |
| 9.222.6 | 12 / 27 | |
| 9.222.5 | 12 / 27 | |
| 9.222.4 | 12 / 27 | |
| 9.222.3 | 12 / 27 | |
| 9.222.2 | 12 / 27 | |
| 9.222.1 | 12 / 27 | |
| 9.222.0 | 12 / 27 | |
| 9.221.2 | 12 / 27 | |
| 9.221.1 | 12 / 27 | |
| 9.221.0 | 12 / 27 |
v9.244.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.243.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.242.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.241.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.240.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.239.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.239.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.238.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.237.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.236.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.235.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.234.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.233.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.232.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.231.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.230.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.229.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.228.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.227.1
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.227.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.226.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.225.4
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.225.3
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.225.2
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.225.1
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.225.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.224.7
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.224.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.224.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.224.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.224.3
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.224.2
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.224.1
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.224.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.223.4
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.223.3
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.223.2
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.223.1
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.223.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.8
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.7
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.6
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.5
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.4
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.3
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.2
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.1
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.222.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.221.2
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.221.1
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v9.221.0
2 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.