@mui/utils
Utility functions for React components.
51
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
No source commit
Maintainers
diegoandaibrijeshb42michaldudakmnajdovasiriwatknpmj12albertaarongarciahatomiksoliviertassinarisilviuaavramjanpotoms
Keywords
reactreact-componentmuiutils
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| dependencies | unvetted-dep:@types/react-is | AI (dependencies): @types/react-is is a standard DefinitelyTyped type definition package; its inclusion as a dependency in a TypeScript utility library is expected and benign across all versions. | ai | |
| phantom-deps | phantom-dep:@types/react-is | AI (phantom-deps): Type-only @types/* packages are conventionally declared as deps without direct imports; consumed by TypeScript at compile time. Stable false positive for this package. | ai | |
| maintainer-change | maintainer-removed | AI (maintainer-change): Removal of mbrookes and mui-release-bot aligns with MUI's transition to GitHub Actions provenance-based publishing. | ai | |
| provenance | publisher-changed | AI (provenance): Publisher changed from human (siriwatknp) to GitHub Actions CI/CD with SLSA provenance — expected for MUI's automated release pipeline. | ai | |
| maintainer-change | maintainer-added | AI (maintainer-change): janpotoms is a known MUI core team member; legitimate maintainer list update. | ai | |
| dependencies | unvetted-dep:@types/prop-types | AI (dependencies): @types/prop-types is a standard TypeScript definitions package; unvetted status is expected for type definitions and poses no security risk. | ai | |
| phantom-deps | phantom-dep:@types/prop-types | AI (phantom-deps): Type definitions are framework-scoped and loaded by convention; phantom dependency status is expected and benign. | ai |
Versions (showing 51 of 133)
| Version | Deps | Published |
|---|---|---|
| 9.2.0 | 6 / 0 | |
| 9.1.1 | 6 / 0 | |
| 9.1.0 | 6 / 0 | |
| 9.0.1 | 6 / 0 | |
| 9.0.0 | 6 / 0 | |
| 7.3.11 | 6 / 0 | |
| 7.3.10 | 6 / 0 | |
| 7.3.9 | 6 / 0 | |
| 7.3.8 | 6 / 0 | |
| 7.3.7 | 6 / 0 | |
| 7.3.6 | 6 / 0 | |
| 7.3.5 | 6 / 0 | |
| 7.3.3 | 6 / 0 | |
| 7.3.2 | 6 / 0 | |
| 7.3.1 | 6 / 0 | |
| 7.3.0 | 6 / 0 | |
| 7.2.0 | 6 / 0 | |
| 7.1.1 | 6 / 0 | |
| 7.1.0 | 6 / 0 | |
| 7.0.2 | 6 / 0 | |
| 7.0.1 | 6 / 0 | |
| 7.0.0 | 6 / 0 | |
| 6.4.9 | 6 / 0 | |
| 6.4.8 | 6 / 0 | |
| 6.4.6 | 6 / 0 | |
| 6.4.3 | 6 / 0 | |
| 6.4.2 | 6 / 0 | |
| 6.4.1 | 6 / 0 | |
| 6.4.0 | 6 / 0 | |
| 6.3.1 | 6 / 0 | |
| 6.3.0 | 6 / 0 | |
| 6.2.1 | 6 / 0 | |
| 6.2.0 | 6 / 0 | |
| 6.1.10 | 6 / 0 | |
| 6.1.9 | 6 / 0 | |
| 6.1.8 | 6 / 0 | |
| 6.1.7 | 6 / 0 | |
| 6.1.6 | 6 / 0 | |
| 6.1.5 | 6 / 0 | |
| 6.1.4 | 6 / 0 | |
| 6.1.3 | 6 / 0 | |
| 6.1.2 | 6 / 0 | |
| 6.1.1 | 6 / 0 | |
| 6.1.0 | 6 / 0 | |
| 6.0.2 | 6 / 0 | |
| 6.0.1 | 6 / 0 | |
| 6.0.0 | 6 / 0 | |
| 5.17.1 | 6 / 0 | |
| 5.16.14 | 6 / 0 | |
| 5.16.13 | 6 / 0 | |
| 5.16.12 | 6 / 0 |
v9.2.0
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.