@nubase/frontend
React components and utilities for nubase
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| publish-pattern | new-deps-added | AI (publish-pattern): All additions are established, widely-used UI/data libraries fitting the package's purpose. | ai | |
| dependencies | unvetted-dep:monaco-spellchecker | AI (dependencies): Legitimate spellcheck lib matching monaco-editor usage in this component library. | ai | |
| phantom-deps | phantom-dep:lodash-es | AI (phantom-deps): Utility library; tree-shaken imports may not appear as direct top-level imports. | ai | |
| phantom-deps | phantom-dep:react-monaco-editor | AI (phantom-deps): Monaco React wrapper; indirect import pattern expected. | ai | |
| phantom-deps | phantom-dep:typo-js | AI (phantom-deps): Spellcheck library used via monaco-spellchecker integration; indirect import pattern expected. | ai | |
| phantom-deps | phantom-dep:monaco-spellchecker | AI (phantom-deps): Monaco editor plugin; indirect import pattern expected in bundled library. | ai | |
| phantom-deps | phantom-dep:@biomejs/biome | AI (phantom-deps): Linter/formatter; used via CLI in scripts, not imported in source. | ai | |
| phantom-deps | phantom-dep:@tailwindcss/cli | AI (phantom-deps): Build-time CLI tool; not a runtime import. | ai | |
| phantom-deps | phantom-dep:react-hotkeys-hook | AI (phantom-deps): Likely imported indirectly through re-exports; false positive for component library. | ai | |
| phantom-deps | phantom-dep:@tailwindcss/postcss | AI (phantom-deps): Build-time PostCSS plugin; not a runtime import. | ai | |
| phantom-deps | phantom-dep:@tanstack/react-table | AI (phantom-deps): Likely re-exported or used in component internals; false positive for component library. | ai | |
| phantom-deps | phantom-dep:@radix-ui/react-dialog | AI (phantom-deps): UI primitive likely re-exported; false positive for component library. | ai | |
| phantom-deps | phantom-dep:@radix-ui/react-tooltip | AI (phantom-deps): UI primitive likely re-exported; false positive for component library. | ai | |
| phantom-deps | phantom-dep:@radix-ui/react-separator | AI (phantom-deps): UI primitive likely re-exported; false positive for component library. | ai | |
| phantom-deps | phantom-dep:@tanstack/react-router-devtools | AI (phantom-deps): Dev tooling dependency; false positive for component library. | ai | |
| phantom-deps | phantom-dep:tailwindcss | AI (phantom-deps): Build-time CSS tooling; referenced in config files only. | ai | |
| phantom-deps | phantom-dep:postcss | AI (phantom-deps): Build-time CSS tooling; referenced in config files only, not a runtime import. | ai |
Versions (showing 34 of 34)
| Version | Deps | Published |
|---|---|---|
| 0.1.38 | 39 / 22 | |
| 0.1.37 | 39 / 22 | |
| 0.1.35 | 37 / 22 | |
| 0.1.34 | 37 / 22 | |
| 0.1.33 | 37 / 22 | |
| 0.1.32 | 37 / 22 | |
| 0.1.31 | 37 / 22 | |
| 0.1.29 | 37 / 22 | |
| 0.1.28 | 37 / 22 | |
| 0.1.27 | 37 / 22 | |
| 0.1.26 | 37 / 22 | |
| 0.1.25 | 37 / 22 | |
| 0.1.24 | 36 / 22 | |
| 0.1.23 | 36 / 22 | |
| 0.1.22 | 36 / 22 | |
| 0.1.21 | 36 / 22 | |
| 0.1.20 | 36 / 22 | |
| 0.1.19 | 35 / 22 | |
| 0.1.18 | 35 / 22 | |
| 0.1.17 | 35 / 22 | |
| 0.1.16 | 35 / 22 | |
| 0.1.15 | 35 / 22 | |
| 0.1.14 | 35 / 22 | |
| 0.1.13 | 35 / 22 | |
| 0.1.12 | 35 / 22 | |
| 0.1.11 | 35 / 22 | |
| 0.1.9 | 35 / 22 | |
| 0.1.8 | 35 / 22 | |
| 0.1.7 | 35 / 22 | |
| 0.1.6 | 35 / 22 | |
| 0.1.5 | 35 / 22 | |
| 0.1.4 | 34 / 22 | |
| 0.1.2 | 23 / 20 | |
| 0.1.1 | 23 / 20 |
v0.1.38
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.35
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.34
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.33
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.32
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.31
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.29
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.28
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.27
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.26
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.24
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.23
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.20
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.17
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.15
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.13
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.12
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.11
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.8
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.7
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.4
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.1.2
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.