@napi-rs/snappy-win32-arm64-msvc
Fastest Snappy compression library in Node.js
16
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
gitHead linked
Maintainers
broooooklynforehalo
Keywords
snappysnapcompressioncompressnapi-rsNAPIN-APIRustNode-APInode-addonnode-addon-api
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): napi-rs/snappy uses GitHub Actions CI/CD to publish platform-specific binaries; publisher being 'GitHub Actions' is the expected and documented release pattern for this package family. | ai | |
| publish-pattern | dormant-publish | AI (publish-pattern): Platform-specific binary sub-packages in the napi-rs ecosystem are only republished when the parent package releases; long dormancy between releases is normal and expected. | ai | |
| npm-metadata | bundled-binaries | AI (npm-metadata): This package IS a native binary split package; the .node file is its sole purpose. SLSA provenance attestation confirms supply chain integrity. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Platform-specific napi-rs binary sub-packages legitimately have no deps and minimal READMEs; this is the standard distribution pattern. | ai |