← Home

@n8n/instance-ai

31
Versions
SEE LICENSE IN LICENSE.md
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

n8n-matsuuutomin8njan_n8n_iocornelius.suermann

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff obfuscated-file:dist/tools/orchestration/data-table-agent.prompt.d.ts AI (source-diff): Long lines are AI prompt strings in a .d.ts declaration file, not obfuscated code. Stable false positive for this package. ai
source-diff obfuscated-file:dist/tools/orchestration/eval-setup-agent.prompt.d.ts AI (source-diff): Long line is a TypeScript string literal containing an LLM prompt — fully readable, not obfuscated code. ai
phantom-deps phantom-dep:fast-glob AI (phantom-deps): Referenced in config/build files; stable false positive for this monorepo package. ai
source-diff large-new-source-files AI (source-diff): Active n8n monorepo package; large file additions reflect legitimate feature growth, not injection. ai
npm-metadata url-dep:xlsx AI (npm-metadata): SheetJS CDN distribution is the official install method since npm removal; known pattern. ai
dependencies unvetted-dep:xlsx AI (dependencies): SheetJS distributes via CDN tarball as documented; stable pattern for this library. ai
publish-pattern rapid-publish AI (publish-pattern): Automated CI/CD publishing from n8n monorepo; rapid successive publishes are expected behavior. ai
provenance slsa-provenance AI (provenance): SLSA provenance via Sigstore confirms CI/CD publish from official n8n-io/n8n repo. ai
dependencies unvetted-dep:@ai-sdk/provider-v5 AI (dependencies): Alias for @ai-sdk/[email protected] from Vercel AI SDK; legitimate aliasing pattern. ai
dependencies unvetted-dep:@daytonaio/sdk AI (dependencies): Legitimate Daytona SDK dependency used in n8n's AI/agent tooling; stable for this package. ai
dependencies unvetted-dep:zod-from-json-schema-v3 AI (dependencies): Alias for zod-from-json-schema; standard npm alias pattern for version pinning. ai
npm-metadata no-description AI (npm-metadata): Official n8n scoped package published via CI; missing description is a packaging choice, not a malware signal. ai
phantom-deps phantom-dep:@joplin/turndown-plugin-gfm AI (phantom-deps): Config-referenced optional dep in n8n monorepo package; stable false positive. ai
phantom-deps phantom-dep:@mozilla/readability AI (phantom-deps): Config-referenced optional dep in n8n monorepo package; stable false positive. ai
phantom-deps phantom-dep:pdf-parse AI (phantom-deps): Config-referenced optional dep in n8n monorepo package; stable false positive. ai
phantom-deps phantom-dep:turndown AI (phantom-deps): Config-referenced optional dep in n8n monorepo package; stable false positive. ai
phantom-deps phantom-dep:linkedom AI (phantom-deps): Config-referenced optional dep in n8n monorepo package; stable false positive. ai
phantom-deps phantom-dep:flatted AI (phantom-deps): Config-referenced optional dep in n8n monorepo package; stable false positive. ai
phantom-deps phantom-dep:p-limit AI (phantom-deps): Config-referenced optional dep in n8n monorepo package; stable false positive. ai

Versions (showing 31 of 31)

Version Deps Published
1.8.3 27 / 9
1.8.2 26 / 9
1.8.1 26 / 9
1.8.0 26 / 9
1.7.3 30 / 9
1.7.2 30 / 9
1.7.1 30 / 9
1.7.0 30 / 9
1.6.3 28 / 9
1.6.2 28 / 9
1.6.1 28 / 9
1.6.0 28 / 9
1.5.4 24 / 8
1.5.3 24 / 8
1.5.2 24 / 8
1.5.1 24 / 8
1.5.0 24 / 8
1.4.1 24 / 5
1.4.0 24 / 5
1.3.5 24 / 5
1.3.4 24 / 5
1.3.3 24 / 5
1.3.2 24 / 5
1.3.1 24 / 5
1.3.0 24 / 5
1.2.3 23 / 5
1.2.2 23 / 5
1.2.1 23 / 5
1.2.0 23 / 5
1.1.0 19 / 4
1.0.0 19 / 4

v1.8.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.1

2 findings
HIGH New obfuscated file: dist/tools/orchestration/eval-setup-agent.prompt.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.0

2 findings
HIGH New obfuscated file: dist/tools/orchestration/eval-setup-agent.prompt.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.3

2 findings
HIGH New obfuscated file: dist/tools/orchestration/data-table-agent.prompt.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.5.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.5.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.5.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.5.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.5.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.4.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.4.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.3.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.3.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.3.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.3.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.3.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.