← Home

@kong-ui-public/entities-shared

Shared components for Kong entities.

34
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

konginc

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff obfuscated-file:dist/_plugin-vue_export-helper-DcXbY5JL.cjs AI (source-diff): Standard Vite/Vue minified CJS build artifact; content is readable Kong entity code, not obfuscated malware. ai
publish-pattern rapid-publish AI (publish-pattern): 2040 versions published via automated CI; rapid successive publishes are normal for this package. ai
source-diff obfuscated-file:dist/_plugin-vue_export-helper-CPHEKtsJ.cjs AI (source-diff): Standard Vite/Vue minified build artifact; content is recognizable Kong UI component code, not obfuscation. ai
source-diff obfuscated-file:dist/_plugin-vue_export-helper-CwM56vX0.cjs AI (source-diff): Standard Vite/Vue minified build artifact; content is clearly Kong UI component logic, not malicious code. ai
source-diff obfuscated-file:dist/_plugin-vue_export-helper-BxQ7nON4.cjs AI (source-diff): Standard Vite/Vue minified CJS build output; content is readable Kong entity code, not malicious obfuscation. ai
source-diff obfuscated-file:dist/_plugin-vue_export-helper-B5cQfgfE.cjs AI (source-diff): Standard Vite/Vue minified CJS build artifact; content is clearly legitimate Kong UI component code. ai
source-diff obfuscated-file:dist/_plugin-vue_export-helper-B2WhlBkH.cjs AI (source-diff): Standard Vite/Rollup minified build artifact; not obfuscated malware. ai
source-diff obfuscated-file:dist/_plugin-vue_export-helper-B3S5Tx0x.cjs AI (source-diff): Standard Vite/Rollup minified build output for a Vue UI component library; not obfuscation. ai
source-diff obfuscated-file:dist/_plugin-vue_export-helper-BVLVXTg1.cjs AI (source-diff): Standard Vite/Rollup minified CJS bundle output; content is normal Vue component code, not obfuscation. ai
phantom-deps phantom-dep:@kong-ui-public/core AI (phantom-deps): Same-org monorepo package; bundled into dist rather than directly imported at source level. ai
phantom-deps phantom-dep:compare-versions AI (phantom-deps): Monorepo build artifact; dependency is used transitively in bundled output. ai

Versions (showing 34 of 144)

Version Deps Published
3.29.0 2 / 7
3.28.0 2 / 7
3.27.10 2 / 7
3.27.9 2 / 7
3.27.8 2 / 7
3.27.7 2 / 7
3.27.6 2 / 7
3.27.5 2 / 7
3.27.4 2 / 7
3.27.3 2 / 7
3.27.2 2 / 7
3.27.1 2 / 7
3.27.0 2 / 7
3.26.4 2 / 7
3.26.3 2 / 7
3.26.2 2 / 7
3.26.1 2 / 7
3.26.0 2 / 7
3.25.4 2 / 7
3.25.3 2 / 7
3.25.2 2 / 7
3.25.1 2 / 7
3.25.0 2 / 7
3.24.1 2 / 7
3.24.0 2 / 7
3.23.0 2 / 7
3.22.9 2 / 7
3.22.8 2 / 7
3.22.7 2 / 7
3.22.6 2 / 7
3.22.5 2 / 7
3.22.4 2 / 7
3.22.3 2 / 7
3.22.2 2 / 7

v3.29.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.28.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.27.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.27.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.27.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.27.7

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.27.6

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.27.5

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.27.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.27.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.27.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.27.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.27.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.26.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.26.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.26.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.26.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.26.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.25.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.25.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.25.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.25.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.25.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.24.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.24.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.23.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.22.9

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.22.8

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.22.7

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.22.6

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.22.5

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.22.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.22.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v3.22.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.