← Home

@marimo-team/frontend

15
Versions
Apache-2.0
License
Yes
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

akshaykamscolnick

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff obfuscated-file:dist/assets/add-cell-with-ai-3_AIzd22.js AI (source-diff): Standard Vite minified bundle output; samples show normal React/ES module code. ai
source-diff obfuscated-file:dist/assets/chat-ui-CysJeVE6.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/chat-panel-Dl4jq1Dp.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/chat-display-DFUo2Riv.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/CellStatus-CNNGwOIK.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cells-EJo3u4za.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cell-link-CcAqXeeg.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cell-editor-CuHdpTsy.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cache-panel-8E_Y5OSb.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/c4Diagram-YG6GDRKO-mvY8KdgG.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/blockDiagram-VD42YOAC-BSbV1P7v.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/azure-C2phEgLq.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/asterisk-CO_c0gwL.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/asn1-Bl4vlAxN.js AI (source-diff): Standard Vite minified bundle output; ASN.1 syntax highlighter. ai
source-diff obfuscated-file:dist/assets/app-config-button-BxCSZCVS.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/ai-model-dropdown-DWOGmhDj.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/agent-panel-CdOqi3vb.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/add-connection-dialog-ux7eCDRM.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/app-config-button-CCs8Jepz.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/alert-dialog-BqFLkbUc.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/ai-model-dropdown-CjhUqXgj.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/agent-panel-zPhlhkYL.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/add-connection-dialog-CzxRpS5F.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/add-cell-with-ai-BbZkMqv2.js AI (source-diff): Standard Vite minified bundle output; readable ES module structure confirms legitimate build artifact. ai
source-diff obfuscated-file:dist/assets/chat-display-DetTBnqK.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/CellStatus-DGBvmSvq.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cells-Dnu4nDoy.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cell-link-PQYiMZw1.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cell-editor-ODyJXDT8.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cache-panel-VL13fWgF.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/c4Diagram-YG6GDRKO-D0FgqleO.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/button-BbCh-29a.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/blockDiagram-VD42YOAC-CzfQ0Exj.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/azure-DBVzcmvx.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/asterisk-DmqsRS7E.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/asn1-DWJdxrMP.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/architectureDiagram-VXUJARFQ-BsWISGgz.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/arc-npelKso9.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/blockDiagram-VD42YOAC-BypAXGhs.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/azure-ZuB1zQ8Q.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/add-cell-with-ai-qEfAzC8R.js AI (source-diff): Standard Vite minified bundle; readable import chains confirm legitimate frontend code. ai
source-diff obfuscated-file:dist/assets/add-connection-dialog-HCShSlr3.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/agent-panel-CoBHxHpJ.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/ai-model-dropdown-CYx9ZfdS.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/app-config-button-DC5UlXZA.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/arc-ONRhTAm2.js AI (source-diff): Standard Vite minified bundle (d3-arc geometry code). ai
source-diff obfuscated-file:dist/assets/architectureDiagram-VXUJARFQ-Bkuya2Lz.js AI (source-diff): Standard Vite minified bundle (Mermaid diagram). ai
source-diff obfuscated-file:dist/assets/asn1-DA-fXXsk.js AI (source-diff): Standard Vite minified bundle (ASN.1 parser). ai
source-diff obfuscated-file:dist/assets/asterisk-Cy-53Fu-.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/c4Diagram-YG6GDRKO-C8Q7ceaK.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/cache-panel-BHTrsFvx.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/cell-editor-BMjfXh0J.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/cell-link-BA7Demf0.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/cells-CJlo_hG2.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/CellStatus-BTL_sgUY.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/chat-display-DbztpRD4.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/chat-panel-H-xFzATI.js AI (source-diff): Standard Vite minified bundle. ai
source-diff obfuscated-file:dist/assets/chat-ui-CFqAy2ck.js AI (source-diff): Standard Vite minified bundle. ai
source-diff large-new-source-files AI (source-diff): Large frontend bundle with many split chunks is expected for this package's build process. ai
source-diff obfuscated-file:dist/assets/architectureDiagram-VXUJARFQ-AnnUUivr.js AI (source-diff): Standard Vite minified bundle output for this frontend package. ai
source-diff obfuscated-file:dist/assets/arc-3DY1fURi.js AI (source-diff): Standard Vite minified bundle output for this frontend package. ai
source-diff obfuscated-file:dist/assets/app-config-button-BT2Do4RJ.js AI (source-diff): Standard Vite minified bundle output for this frontend package. ai
source-diff obfuscated-file:dist/assets/alert-dialog-C2mTH3GM.js AI (source-diff): Standard Vite minified bundle output for this frontend package. ai
source-diff obfuscated-file:dist/assets/ai-model-dropdown-Dyxi3_nW.js AI (source-diff): Standard Vite minified bundle output for this frontend package. ai
source-diff obfuscated-file:dist/assets/agent-panel-BvL9Lu9c.js AI (source-diff): Standard Vite minified bundle output for this frontend package. ai
source-diff obfuscated-file:dist/assets/add-connection-dialog-BGZvJkor.js AI (source-diff): Standard Vite minified bundle output for this frontend package. ai
source-diff obfuscated-file:dist/assets/add-cell-with-ai-_Y6SqxBB.js AI (source-diff): Standard Vite minified bundle output; readable ES module imports visible in sample. ai
source-diff net-exec-file:dist/assets/layout-Bp1vAdBy.js AI (source-diff): Legitimate frontend layout component; network+dynamic-import pattern is normal for Vite-bundled React apps. ai
source-diff net-exec-file:dist/assets/ConnectedDataExplorerComponent-k8s9vETJ.js AI (source-diff): Legitimate frontend component making API calls with dynamic imports; consistent with notebook data explorer UI. ai
source-diff obfuscated-file:dist/assets/edit-page-Ct5Ke1wi.js AI (source-diff): Standard Vite minified frontend bundle. ai
source-diff obfuscated-file:dist/assets/cells-DAxz8J5R.js AI (source-diff): Standard Vite minified frontend bundle for marimo notebook UI. ai
source-diff obfuscated-file:dist/assets/add-cell-with-ai-D5JeNTNV.js AI (source-diff): Standard Vite minified frontend bundle; readable module names and React patterns confirm legitimate build output. ai
phantom-deps phantom-dep:cssnano AI (phantom-deps): PostCSS build tool referenced in config; stable false positive. ai
phantom-deps phantom-dep:@lezer/lr AI (phantom-deps): Config-referenced dep; stable false positive. ai
phantom-deps phantom-dep:js-cookie AI (phantom-deps): Config-referenced dep; stable false positive. ai
phantom-deps phantom-dep:vega-parser AI (phantom-deps): Config-referenced dep; stable false positive. ai
phantom-deps phantom-dep:@codemirror/theme-one-dark AI (phantom-deps): Config-referenced dep; stable false positive. ai
phantom-deps phantom-dep:@tailwindcss/typography AI (phantom-deps): Tailwind plugin referenced in config; stable false positive. ai
phantom-deps phantom-dep:@tailwindcss/postcss AI (phantom-deps): PostCSS plugin referenced in config; stable false positive. ai
phantom-deps phantom-dep:tailwindcss-animate AI (phantom-deps): Tailwind plugin referenced in config; stable false positive. ai
phantom-deps phantom-dep:loro-codemirror AI (phantom-deps): Config-referenced dep; stable false positive. ai
phantom-deps phantom-dep:vscode-jsonrpc AI (phantom-deps): Config-referenced dep; stable false positive. ai
phantom-deps phantom-dep:react-markdown AI (phantom-deps): Config-referenced dep; stable false positive. ai
phantom-deps phantom-dep:remark-gfm AI (phantom-deps): Config-referenced dep; stable false positive. ai
phantom-deps phantom-dep:@types/jsdom AI (phantom-deps): Framework-scoped type package; stable false positive. ai
phantom-deps phantom-dep:htm AI (phantom-deps): Config-referenced build dep; phantom-dep false positive for this package. ai
phantom-deps phantom-dep:@types/humanize-duration AI (phantom-deps): Framework-scoped type package; stable false positive. ai
phantom-deps phantom-dep:@types/react-grid-layout AI (phantom-deps): Framework-scoped type package; stable false positive. ai
phantom-deps phantom-dep:@types/js-cookie AI (phantom-deps): Framework-scoped type package; stable false positive. ai
source-diff obfuscated-file:dist/assets/chat-panel-C6V6gxrr.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/add-cell-with-ai-DfniMbLM.js AI (source-diff): Standard Vite minified bundle output; not obfuscation. ai
source-diff obfuscated-file:dist/assets/command-palette-CUYBVGPU.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/command-CBCkexpx.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/column-preview-rDM8Q-wn.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/chat-ui-BLiRBYhk.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/config-DczIUz0b.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/add-connection-dialog-8ChtH4mo.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/agent-panel-jsnbrvBR.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/ai-model-dropdown-BFTnsrTP.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/app-config-button-c_2rVezv.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/architectureDiagram-VXUJARFQ-JNogHSZh.js AI (source-diff): Standard Vite minified bundle output (mermaid diagram). ai
source-diff obfuscated-file:dist/assets/blockDiagram-VD42YOAC-Dy-_c6-H.js AI (source-diff): Standard Vite minified bundle output (mermaid diagram). ai
source-diff obfuscated-file:dist/assets/c4Diagram-YG6GDRKO-DHRUX7S-.js AI (source-diff): Standard Vite minified bundle output (mermaid diagram). ai
source-diff obfuscated-file:dist/assets/cache-panel-B_zs00Q_.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cell-editor-WSoKgacR.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cell-link-BRdZl0OJ.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/cells-CcBfzJ1Z.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/CellStatus-DKMrz26-.js AI (source-diff): Standard Vite minified bundle output. ai
source-diff obfuscated-file:dist/assets/chat-display-NiFkPnNN.js AI (source-diff): Standard Vite minified bundle output. ai
semgrep semgrep:api-obfuscation-reflect AI (semgrep): Reflect.get used in a test proxy for hotkey validation; not obfuscation. ai
install-scripts install-script:preinstall AI (install-scripts): npx only-allow pnpm is a standard package manager enforcement pattern, not malicious. ai
semgrep semgrep:shady-links-raw-ip AI (semgrep): Raw IPs appear only in test files validating URL handling logic. ai
semgrep semgrep:etc-passwd-access AI (semgrep): Appears only in a test file checking URL sanitization; not production credential harvesting. ai

Versions (showing 15 of 15)

Version Deps Published
0.23.8 142 / 42
0.23.7 142 / 42
0.23.6 142 / 42
0.23.5 142 / 42
0.23.4 142 / 42
0.23.3 142 / 42
0.23.2 142 / 42
0.23.1 140 / 42
0.23.0 140 / 42
0.22.5 140 / 42
0.22.4 140 / 42
0.22.3 140 / 42
0.22.2 140 / 42
0.22.1 140 / 42
0.22.0 163 / 52

v0.23.8

23 findings
HIGH New obfuscated file: dist/assets/add-cell-with-ai-BbZkMqv2.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/add-connection-dialog-CzxRpS5F.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/agent-panel-zPhlhkYL.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ai-model-dropdown-CjhUqXgj.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/alert-dialog-BqFLkbUc.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/app-config-button-CCs8Jepz.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/arc-npelKso9.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/architectureDiagram-VXUJARFQ-BsWISGgz.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asn1-DWJdxrMP.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asterisk-DmqsRS7E.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/azure-DBVzcmvx.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/blockDiagram-VD42YOAC-CzfQ0Exj.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/button-BbCh-29a.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/c4Diagram-YG6GDRKO-D0FgqleO.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cache-panel-VL13fWgF.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-editor-ODyJXDT8.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-link-PQYiMZw1.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cells-Dnu4nDoy.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/CellStatus-DGBvmSvq.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-display-DetTBnqK.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-panel-CEgw_vg0.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-ui-D-Y7p_cT.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.23.7

23 findings
HIGH New obfuscated file: dist/assets/add-cell-with-ai-BbZkMqv2.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/add-connection-dialog-CzxRpS5F.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/agent-panel-zPhlhkYL.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ai-model-dropdown-CjhUqXgj.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/alert-dialog-BqFLkbUc.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/app-config-button-CCs8Jepz.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/arc-npelKso9.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/architectureDiagram-VXUJARFQ-BsWISGgz.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asn1-DWJdxrMP.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asterisk-DmqsRS7E.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/azure-DBVzcmvx.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/blockDiagram-VD42YOAC-CzfQ0Exj.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/button-BbCh-29a.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/c4Diagram-YG6GDRKO-D0FgqleO.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cache-panel-VL13fWgF.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-editor-ODyJXDT8.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-link-PQYiMZw1.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cells-Dnu4nDoy.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/CellStatus-DGBvmSvq.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-display-DetTBnqK.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-panel-CEgw_vg0.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-ui-D-Y7p_cT.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.23.6

38 findings
HIGH New obfuscated file: dist/assets/add-cell-with-ai-D5JeNTNV.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/add-connection-dialog-_nMyst1l.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/agent-panel-CBj2Q42_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ai-model-dropdown-B-9yxYM4.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/app-config-button-BOc_z0uX.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-editor-C1BpIU12.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-link-CC2MiW7a.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cells-DAxz8J5R.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/CellStatus-CO_unhk0.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-display-BiUNr6dU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-panel-BHsaaTzR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-ui-CTYG4pnL.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/column-preview-DBPye87P.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/command-palette-C3fn0qCr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/config-CPqw1wUv.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ConnectedDataExplorerComponent-k8s9vETJ.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New file with network + code execution: dist/assets/ConnectedDataExplorerComponent-k8s9vETJ.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

HIGH New obfuscated file: dist/assets/dependency-graph-panel-DOHj-hNc.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/download-CXTuIv7r.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/edit-page-Ct5Ke1wi.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/file-explorer-panel-D1O0vw5C.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/floating-outline-DHE0ukvC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/form-DRJZl2zK.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/glide-data-editor-DqqLCmqF.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/home-page-BM_BZnw7.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/hooks-CUEvgvEQ.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/html-to-image-v-_444d3.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/index-BMxMikGP.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/JsonOutput-ugBhs7bt.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/layout-Bp1vAdBy.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New file with network + code execution: dist/assets/layout-Bp1vAdBy.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

HIGH New obfuscated file: dist/assets/logs-panel-BWCDk8Zy.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/MarimoErrorOutput-1q6qtvxi.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/mermaid-BfdNvRSd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/name-cell-input-DoYtA-nF.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/packages-panel-CHVjLKJK.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/panels-GT2UyjFN.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.23.5

23 findings
HIGH New obfuscated file: dist/assets/add-cell-with-ai-DfniMbLM.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/add-connection-dialog-8ChtH4mo.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/agent-panel-jsnbrvBR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ai-model-dropdown-BFTnsrTP.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/app-config-button-c_2rVezv.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/architectureDiagram-VXUJARFQ-JNogHSZh.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/blockDiagram-VD42YOAC-Dy-_c6-H.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/c4Diagram-YG6GDRKO-DHRUX7S-.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cache-panel-B_zs00Q_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-editor-WSoKgacR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-link-BRdZl0OJ.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cells-CcBfzJ1Z.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/CellStatus-DKMrz26-.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-display-NiFkPnNN.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-panel-C6V6gxrr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-ui-BLiRBYhk.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/column-preview-rDM8Q-wn.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/command-CBCkexpx.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/command-palette-CUYBVGPU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/config-DczIUz0b.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ConnectedDataExplorerComponent-DNoHDaQW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New file with network + code execution: dist/assets/ConnectedDataExplorerComponent-DNoHDaQW.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.23.3

21 findings
HIGH New obfuscated file: dist/assets/add-cell-with-ai-qEfAzC8R.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/add-connection-dialog-HCShSlr3.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/agent-panel-CoBHxHpJ.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ai-model-dropdown-CYx9ZfdS.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/app-config-button-DC5UlXZA.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/arc-ONRhTAm2.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/architectureDiagram-VXUJARFQ-Bkuya2Lz.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asn1-DA-fXXsk.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asterisk-Cy-53Fu-.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/azure-ZuB1zQ8Q.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/blockDiagram-VD42YOAC-BypAXGhs.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/c4Diagram-YG6GDRKO-C8Q7ceaK.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cache-panel-BHTrsFvx.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-editor-BMjfXh0J.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-link-BA7Demf0.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cells-CJlo_hG2.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/CellStatus-BTL_sgUY.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-display-DbztpRD4.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-panel-H-xFzATI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-ui-CFqAy2ck.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.23.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.23.1

23 findings
HIGH New obfuscated file: dist/assets/add-cell-with-ai-_Y6SqxBB.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/add-connection-dialog-BGZvJkor.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/agent-panel-BvL9Lu9c.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ai-model-dropdown-Dyxi3_nW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/alert-dialog-C2mTH3GM.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/app-config-button-BT2Do4RJ.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/arc-3DY1fURi.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/architectureDiagram-VXUJARFQ-AnnUUivr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asn1-Bl4vlAxN.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asterisk-CO_c0gwL.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/azure-C2phEgLq.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/blockDiagram-VD42YOAC-BSbV1P7v.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/button-COIw2x9i.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/c4Diagram-YG6GDRKO-mvY8KdgG.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cache-panel-C3V9UubH.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-editor-B40o_zx_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-link-CRkrHl-y.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cells-BqYYXi6G.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/CellStatus-zTcdYfqx.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-display-M_nvYuHH.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-panel-BMOW93uQ.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-ui-DyeimpVh.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.23.0

21 findings
HIGH New obfuscated file: dist/assets/add-cell-with-ai-3_AIzd22.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/add-connection-dialog-ux7eCDRM.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/agent-panel-CdOqi3vb.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ai-model-dropdown-DWOGmhDj.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/app-config-button-BxCSZCVS.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/arc-3DY1fURi.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/architectureDiagram-VXUJARFQ-AnnUUivr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asn1-Bl4vlAxN.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asterisk-CO_c0gwL.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/azure-C2phEgLq.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/blockDiagram-VD42YOAC-BSbV1P7v.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/c4Diagram-YG6GDRKO-mvY8KdgG.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cache-panel-8E_Y5OSb.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-editor-CuHdpTsy.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-link-CcAqXeeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cells-EJo3u4za.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/CellStatus-CNNGwOIK.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-display-DFUo2Riv.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-panel-Dl4jq1Dp.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-ui-CysJeVE6.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.22.5

21 findings
HIGH New obfuscated file: dist/assets/add-cell-with-ai-CLklC7KS.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/add-connection-dialog-ux7eCDRM.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/agent-panel-CiMrqUfl.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/ai-model-dropdown-CRtaHcCu.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/app-config-button-CnX21edo.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/arc-3DY1fURi.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/architectureDiagram-VXUJARFQ-AnnUUivr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asn1-Bl4vlAxN.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/asterisk-CO_c0gwL.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/azure-C2phEgLq.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/blockDiagram-VD42YOAC-BSbV1P7v.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/c4Diagram-YG6GDRKO-mvY8KdgG.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cache-panel-8E_Y5OSb.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-editor-D7IQ3F4W.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cell-link-CcAqXeeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/cells-EJo3u4za.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/CellStatus-CNNGwOIK.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-display-BxDRpNsl.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-panel-dBoLqgjH.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/chat-ui-DdZo1L-v.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.22.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.22.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.22.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.22.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.22.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.