← Home

@osdk/generator

91
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

sauravsanjpalantirericandersonericjeney-palantir

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:fetch-retry AI (phantom-deps): fetch-retry is a declared runtime dep in package.json; phantom-dep is a false positive for this package. ai

Versions (showing 91 of 91)

Version Deps Published
2.51.0 8 / 7
2.50.0 8 / 7
2.49.0 8 / 7
2.48.0 8 / 7
2.47.0 8 / 7
2.46.0 8 / 7
2.45.0 8 / 7
2.44.0 8 / 7
2.43.0 8 / 7
2.42.0 8 / 7
2.41.0 8 / 7
2.40.0 8 / 7
2.39.0 8 / 7
2.38.0 8 / 7
2.37.0 8 / 7
2.36.0 8 / 7
2.35.0 8 / 7
2.34.0 8 / 7
2.33.0 8 / 7
2.32.0 8 / 7
2.31.0 8 / 7
2.30.0 8 / 7
2.29.0 8 / 7
2.28.0 8 / 7
2.27.0 8 / 7
2.26.0 8 / 7
2.25.0 8 / 7
2.24.0 8 / 7
2.23.0 8 / 7
2.22.0 8 / 7
2.21.0 8 / 7
2.20.0 8 / 7
2.19.0 8 / 7
2.17.0 8 / 7
2.16.0 8 / 7
2.15.0 8 / 7
2.14.0 8 / 7
2.13.0 8 / 7
2.12.0 8 / 7
2.8.0 8 / 7
2.7.8 8 / 7
2.7.7 8 / 7
2.7.6 8 / 7
2.7.5 8 / 7
2.7.4 8 / 7
2.7.3 8 / 7
2.7.2 8 / 7
2.7.1 8 / 7
2.7.0 8 / 7
2.6.3 8 / 7
2.6.2 8 / 7
2.6.1 8 / 7
2.6.0 8 / 7
2.5.7 8 / 7
2.5.6 8 / 7
2.5.5 8 / 7
2.5.4 8 / 7
2.5.3 8 / 7
2.5.2 8 / 7
2.5.1 8 / 7
2.5.0 8 / 7
2.4.2 8 / 7
2.4.1 8 / 7
2.4.0 8 / 7
2.3.4 8 / 7
2.3.3 8 / 7
2.3.2 8 / 7
2.3.1 8 / 7
2.3.0 8 / 7
2.2.1 8 / 7
2.2.0 8 / 7
2.1.5 7 / 8
2.1.4 7 / 8
2.1.3 7 / 8
2.1.2 7 / 8
2.1.1 7 / 8
2.1.0 7 / 8
2.0.13 7 / 9
2.0.12 7 / 9
2.0.11 7 / 8
2.0.10 7 / 8
2.0.9 7 / 8
2.0.8 7 / 8
2.0.7 7 / 8
2.0.6 7 / 8
2.0.5 7 / 8
2.0.4 7 / 8
2.0.3 7 / 8
2.0.2 7 / 8
2.0.1 7 / 8
2.0.0 7 / 8

v2.51.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.50.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.49.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.48.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.47.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.46.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.45.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.44.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.43.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.42.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.41.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.1.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.1.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.1.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.1.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.1.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.13

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.12

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.11

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.10

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.9

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.8

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.7

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.6

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.5

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v2.0.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.