← Home

@memberjunction/codegen-lib

Library used by the CodeGen executable to generate code for the MemberJunction platform. Contains a reusable object model that can be called by any other server-side application/library.

96
Versions
ISC
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

craig.adam.bcethan-bcjordanfanapourms-bccaeleb.balanesiianzygmuntanag123hiltongrpranavrao-bcsdesai-bcjosue-garcia-bcrkihm-bc

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
dependencies unvetted-dep:@memberjunction/external-data-source-sqlserver AI (dependencies): First-party same-org package, version-pinned to monorepo release. ai
dependencies unvetted-dep:@memberjunction/external-data-source-oracle AI (dependencies): First-party same-org package, version-pinned to monorepo release. ai
dependencies unvetted-dep:@memberjunction/external-data-source-mongodb AI (dependencies): First-party same-org package, version-pinned to monorepo release. ai
dependencies unvetted-dep:@memberjunction/external-data-source-postgres AI (dependencies): First-party same-org package, version-pinned to monorepo release. ai
dependencies unvetted-dep:@memberjunction/external-data-source-snowflake AI (dependencies): First-party same-org package, version-pinned to monorepo release. ai
dependencies unvetted-dep:@memberjunction/external-data-sources AI (dependencies): First-party same-org package, version-pinned to monorepo release. ai
dependencies unvetted-dep:@memberjunction/external-data-source-mysql AI (dependencies): First-party same-org package, version-pinned to monorepo release. ai
dependencies unvetted-dep:@memberjunction/cli-core AI (dependencies): Same-org sibling package published in lockstep at matching version; not an independent third-party dep. ai
phantom-deps phantom-dep:@memberjunction/ai-provider-bundle AI (phantom-deps): Same-org monorepo sibling; phantom-dep false positive for re-export or transitive usage patterns. ai
phantom-deps phantom-dep:@memberjunction/core-entities-server AI (phantom-deps): Same-org monorepo sibling; phantom-dep false positive for re-export or transitive usage patterns. ai
phantom-deps phantom-dep:@memberjunction/ai AI (phantom-deps): Same-org monorepo sibling; phantom-dep false positive for re-export or transitive usage patterns. ai

Versions (showing 96 of 96)

Version Deps Published
5.49.0 37 / 3
5.48.0 37 / 3
5.47.0 37 / 3
5.46.0 37 / 3
5.45.1 37 / 3
5.45.0 37 / 3
5.44.0 30 / 3
5.43.0 30 / 3
5.42.0 30 / 3
5.41.0 28 / 3
5.40.2 28 / 3
5.40.1 28 / 3
5.40.0 28 / 3
5.39.0 28 / 3
5.38.0 28 / 3
5.37.0 28 / 3
5.36.0 28 / 3
5.35.0 28 / 3
5.34.1 28 / 3
5.34.0 28 / 3
5.33.0 28 / 3
5.32.0 27 / 3
5.31.0 27 / 3
5.30.1 27 / 3
5.30.0 27 / 3
5.29.0 27 / 3
5.28.0 27 / 3
5.27.1 27 / 3
5.27.0 27 / 3
5.26.0 27 / 3
5.25.0 27 / 3
5.24.0 27 / 3
5.23.0 27 / 3
5.22.0 27 / 3
5.21.0 27 / 3
5.20.0 27 / 3
5.19.0 27 / 3
5.18.0 27 / 3
5.17.0 27 / 3
5.16.0 27 / 3
5.15.0 27 / 3
5.14.0 27 / 3
5.13.0 26 / 3
5.12.0 26 / 3
5.11.0 26 / 3
5.10.1 26 / 3
5.10.0 26 / 3
5.9.0 26 / 3
5.8.0 26 / 3
5.7.0 26 / 3
5.6.0 26 / 3
5.5.0 26 / 3
5.4.1 23 / 3
5.4.0 23 / 3
5.3.1 23 / 3
5.3.0 23 / 3
5.2.0 23 / 3
5.1.0 23 / 3
5.0.0 23 / 3
4.4.0 23 / 3
4.3.1 23 / 3
4.3.0 23 / 3
4.2.0 23 / 5
4.1.0 23 / 5
4.0.0 23 / 2
3.4.0 22 / 2
3.3.0 21 / 2
3.2.0 21 / 2
3.1.1 21 / 2
3.1.0 21 / 2
3.0.0 21 / 2
2.133.0 20 / 2
2.132.0 20 / 2
2.131.0 20 / 2
2.130.1 20 / 2
2.130.0 20 / 2
2.129.0 20 / 2
2.128.0 20 / 2
2.127.0 20 / 2
2.126.1 20 / 2
2.126.0 20 / 2
2.125.0 20 / 2
2.124.0 20 / 2
2.123.1 20 / 2
2.123.0 20 / 2
2.122.2 20 / 2
2.122.1 17 / 2
2.122.0 17 / 2
2.121.0 17 / 2
2.120.0 17 / 2
2.119.0 17 / 2
2.118.0 17 / 2
2.117.0 17 / 2
2.116.0 17 / 2
2.115.0 17 / 2
2.114.0 17 / 2

v5.49.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.48.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.47.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.46.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.45.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.45.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.44.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.0.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v4.0.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.