← Home

@libp2p/daemon-server

API server for libp2p-daemon instances

33
Versions
Apache-2.0 OR MIT
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

daviddiasalanshawachingbrainvascosantosnpm-service-account-libp2pjacobheun

Keywords

libp2p

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Transition from human publisher to GitHub Actions CI/CD with SLSA attestation; expected for libp2p monorepo automation. ai
publish-pattern dormant-publish AI (publish-pattern): Dormancy explained by monorepo CI migration; SLSA attestation confirms legitimate publish pipeline. ai

Versions (showing 33 of 33)

Version Deps Published
9.0.33 16 / 2
9.0.32 16 / 2
9.0.31 16 / 2
9.0.30 16 / 2
9.0.29 16 / 2
9.0.28 16 / 2
9.0.27 16 / 2
9.0.26 16 / 2
9.0.25 16 / 2
9.0.24 16 / 2
9.0.23 16 / 2
9.0.22 16 / 2
9.0.21 16 / 2
9.0.20 16 / 2
9.0.19 16 / 2
9.0.17 16 / 2
9.0.16 16 / 2
9.0.15 16 / 2
9.0.14 16 / 2
9.0.13 16 / 2
9.0.12 16 / 2
9.0.11 16 / 2
9.0.10 16 / 2
9.0.9 16 / 2
9.0.8 16 / 2
9.0.7 16 / 2
9.0.6 16 / 2
9.0.5 16 / 2
9.0.4 16 / 2
9.0.3 16 / 2
9.0.2 16 / 2
9.0.1 16 / 2
9.0.0 16 / 2

v9.0.33

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v9.0.32

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v9.0.31

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.