@nestia/core
Super-fast validation decorators of NestJS
22
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
No source commit
Maintainers
samchon
Keywords
nestjsnestiatypiavalidatordecoratorclass-validatorclass-transformer
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| semgrep | semgrep:dynamic-require | AI (semgrep): Dynamic require in load_controller.js is intentional — loads user-specified NestJS controller files at runtime. | ai | |
| typosquat | typosquat.levenshtein:cors | AI (typosquat): @nestia/core is a scoped NestJS package with 583 versions; no relation to the 'cors' package. | ai | |
| phantom-deps | phantom-dep:@typia/utils | AI (phantom-deps): Declared as dependency for transitive use; stable false positive for this package. | ai | |
| phantom-deps | phantom-dep:reflect-metadata | AI (phantom-deps): Known implicit NestJS/TypeScript decorator runtime dependency; stable false positive. | ai |
Versions (showing 22 of 22)
| Version | Deps | Published |
|---|---|---|
| 12.1.0 | 12 / 12 | |
| 12.0.0 | 12 / 12 | |
| 11.3.4 | 14 / 18 | |
| 11.3.3 | 14 / 18 | |
| 11.3.2 | 14 / 18 | |
| 11.3.1 | 14 / 18 | |
| 11.3.0 | 14 / 18 | |
| 11.2.1 | 14 / 17 | |
| 11.2.0 | 14 / 17 | |
| 11.1.0 | 14 / 17 | |
| 11.0.2 | 14 / 17 | |
| 11.0.1 | 14 / 17 | |
| 11.0.0 | 14 / 17 | |
| 10.0.2 | 14 / 20 | |
| 10.0.1 | 14 / 20 | |
| 10.0.0 | 14 / 20 | |
| 9.1.1 | 14 / 20 | |
| 9.1.0 | 14 / 20 | |
| 9.0.3 | 14 / 20 | |
| 9.0.2 | 14 / 20 | |
| 9.0.1 | 14 / 20 | |
| 9.0.0 | 14 / 20 |
v12.1.0
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v12.0.0
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.