← Home

@particle-academy/react-echarts

React component library wrapping Apache ECharts with typed components for every chart type

8
Versions
MIT
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

wishborn

Keywords

reactechartschartsvisualizationcomponents

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Transition from human publisher to GitHub Actions CI with SLSA attestation is a standard supply-chain improvement, not a takeover. ai
publish-pattern new-deps-added AI (publish-pattern): echarts is the core library this package wraps; its addition as a runtime dep is expected and benign. ai
provenance no-provenance AI (provenance): Only 12% of npm packages have provenance; not a disqualifier for this package. ai
dependencies unvetted-dep:echarts-gl AI (dependencies): echarts-gl is the official 3D extension for Apache ECharts; its use here is expected and legitimate. ai

Versions (showing 8 of 8)

Version Deps Published
1.1.3 2 / 6
1.1.2 2 / 6
1.1.1 2 / 6
1.1.0 2 / 6
1.0.3 1 / 7
1.0.2 1 / 7
1.0.1 0 / 7
1.0.0 0 / 7