@metamask/earn-controller
Manages state for earning features and coordinates interactions between staking services, SDK integrations, and other controllers to enable users to participate in various earning opportunities
14
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
gitHead linked
Maintainers
kumavisfrederikboldingmetamaskbotgudahttmrtenmcmirenaugtur
Keywords
EthereumMetaMask
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): MetaMask migrated publishing to GitHub Actions CI with SLSA attestation; this is a stable org-wide pattern. | ai | |
| maintainer-change | maintainer-added | AI (maintainer-change): New maintainers are known MetaMask contributors added as part of the org's standard team management. | ai | |
| dependencies | unvetted-dep:@metamask/keyring-api | AI (dependencies): First-party MetaMask dependency; same org as this package. | ai | |
| dependencies | unvetted-dep:@metamask/messenger | AI (dependencies): First-party MetaMask monorepo dependency; same org as this package. | ai | |
| dependencies | unvetted-dep:@metamask/network-controller | AI (dependencies): First-party MetaMask monorepo dependency; same org as this package. | ai | |
| dependencies | unvetted-dep:@metamask/controller-utils | AI (dependencies): First-party MetaMask monorepo dependency; same org as this package. | ai | |
| dependencies | unvetted-dep:@metamask/stake-sdk | AI (dependencies): First-party MetaMask SDK dependency; same org as this package. | ai |
Versions (showing 14 of 14)
| Version | Deps | Published |
|---|---|---|
| 12.2.2 | 10 / 11 | |
| 12.2.1 | 10 / 11 | |
| 12.2.0 | 10 / 11 | |
| 12.1.2 | 10 / 11 | |
| 12.1.1 | 10 / 11 | |
| 12.1.0 | 10 / 11 | |
| 12.0.0 | 10 / 11 | |
| 11.2.1 | 10 / 11 | |
| 11.2.0 | 10 / 11 | |
| 11.1.2 | 10 / 10 | |
| 11.1.1 | 10 / 10 | |
| 11.1.0 | 10 / 10 | |
| 11.0.0 | 8 / 12 | |
| 10.0.0 | 8 / 12 |
v12.2.2
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.