@napi-rs/snappy-linux-arm-gnueabihf
Fastest Snappy compression library in Node.js
16
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
gitHead linked
Maintainers
broooooklynforehalo
Keywords
snappysnapcompressioncompressnapi-rsNAPIN-APIRustNode-APInode-addonnode-addon-api
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): napi-rs/snappy uses GitHub Actions CI/CD for automated publishing; transition from human account to GitHub Actions is the expected and documented release pattern for this ecosystem. | ai | |
| publish-pattern | dormant-publish | AI (publish-pattern): Platform-specific binary packages in the napi-rs ecosystem can have long gaps between releases; SLSA provenance attestation confirms legitimate CI/CD origin. | ai | |
| npm-metadata | bundled-binaries | AI (npm-metadata): This is a napi-rs platform-specific package; the .node binary is its sole purpose. SLSA provenance attestation confirms CI/CD build integrity. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Platform-specific binary sub-packages in napi-rs ecosystem intentionally have no deps and minimal README — this is the standard pattern for all @napi-rs/* platform packages. | ai |