← Home

@opentelemetry/exporter-metrics-otlp-proto

OpenTelemetry Collector Metrics Exporter allows user to send collected metrics to the OpenTelemetry Collector using protobuf over HTTP

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

dyladanpichlermarcoverbalancenpmjs-accounttrentmmartinkuba

Keywords

opentelemetrynodejsprotobuftracingprofilingmetricsstats

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
dependencies unvetted-dep:protobufjs AI (dependencies): protobufjs is a legitimate, widely-used protobuf library; its use is expected and appropriate for an OTLP proto exporter package. ai
phantom-deps phantom-dep:protobufjs AI (phantom-deps): protobufjs is a declared runtime dependency used for proto serialization; phantom-dep flag is a false positive for this package's build/runtime pattern. ai
phantom-deps phantom-dep:@grpc/proto-loader AI (phantom-deps): @grpc/proto-loader is a declared runtime dependency appropriate for proto loading; phantom-dep flag is a false positive for this package's usage pattern. ai
provenance publisher-changed AI (provenance): Transition from individual maintainer (dyladan) to GitHub Actions CI/CD publishing, confirmed by SLSA provenance. Standard monorepo automation for OpenTelemetry. ai
phantom-deps phantom-dep:@opentelemetry/sdk-metrics AI (phantom-deps): Same-org dependency, common in OpenTelemetry monorepo; likely re-exported or used transitively. ai
phantom-deps phantom-dep:@opentelemetry/core AI (phantom-deps): Same-org dependency, common in OpenTelemetry monorepo; likely re-exported or used transitively. ai
phantom-deps phantom-dep:@opentelemetry/resources AI (phantom-deps): Same-org dependency, common in OpenTelemetry monorepo; likely re-exported or used transitively. ai

Versions (showing 51 of 69)

View all versions
Version Deps Published
0.221.0 3 / 23
0.220.0 6 / 22
0.219.0 6 / 22
0.218.0 6 / 22
0.217.0 6 / 22
0.216.0 6 / 22
0.215.0 6 / 22
0.214.0 6 / 22
0.213.0 6 / 22
0.212.0 6 / 22
0.211.0 6 / 22
0.210.0 6 / 22
0.209.0 6 / 22
0.208.0 6 / 22
0.207.0 6 / 22
0.206.0 6 / 22
0.205.0 6 / 23
0.204.0 6 / 23
0.203.0 6 / 24
0.202.0 6 / 24
0.201.1 6 / 11
0.201.0 6 / 11
0.200.0 6 / 11
0.57.2 6 / 11
0.57.1 6 / 11
0.57.0 6 / 11
0.56.0 6 / 11
0.55.0 6 / 11
0.54.2 6 / 11
0.54.1 6 / 11
0.54.0 6 / 11
0.53.0 6 / 12
0.52.1 6 / 13
0.52.0 6 / 13
0.51.1 7 / 14
0.51.0 7 / 14
0.50.0 7 / 14
0.49.1 7 / 14
0.49.0 7 / 14
0.48.0 7 / 14
0.47.0 7 / 15
0.46.0 7 / 15
0.45.1 7 / 15
0.45.0 7 / 15
0.44.0 7 / 15
0.43.0 7 / 15
0.42.0 7 / 15
0.41.2 7 / 15
0.41.1 7 / 15
0.41.0 8 / 15
0.40.0 7 / 13

v0.221.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.220.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.