← Home

@paypal/checkout-components

PayPal Checkout components, for integrating checkout products.

100
Versions
Apache-2.0
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures gitHead linked

Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.

Maintainers

sdk-integrations-npmsiokedpaypal-sdksbraintreejfurmanravishekhar00gregjopamnicptelizabethmvnbierdemanremotevisionrygilbert_paypalbesierrarosman21wsbrunsonyanisimov_paypalavathaluringseguindustijonessunnypatelcsjcsjcsjbywoodppeelenizsupremarimbrian-paypalcnallamgabrielg-paypalaugreer8

Keywords

cross-domaincross domaincomponentscomponentkrakenjskraken

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
dependencies unvetted-dep:@paypal/accelerated-checkout-loader AI (dependencies): First-party PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@krakenjs/zoid AI (dependencies): First-party KrakenJS/PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@krakenjs/belter AI (dependencies): First-party KrakenJS/PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@paypal/sdk-logos AI (dependencies): First-party PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@krakenjs/post-robot AI (dependencies): First-party KrakenJS/PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@krakenjs/beaver-logger AI (dependencies): First-party KrakenJS/PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@krakenjs/jsx-pragmatic AI (dependencies): First-party KrakenJS/PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@krakenjs/zalgo-promise AI (dependencies): First-party KrakenJS/PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@paypal/common-components AI (dependencies): First-party PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@paypal/funding-components AI (dependencies): First-party PayPal ecosystem dep; stable across all versions of this package. ai
dependencies unvetted-dep:@krakenjs/cross-domain-utils AI (dependencies): First-party KrakenJS/PayPal ecosystem dep; stable across all versions of this package. ai
provenance no-provenance AI (provenance): Established PayPal package; lack of Sigstore provenance is consistent across all prior versions. ai

Versions (showing 100 of 207)

Version Deps Published
5.0.425 13 / 36
5.0.424 13 / 36
5.0.423 13 / 36
5.0.422 13 / 36
5.0.421 13 / 36
5.0.420 13 / 36
5.0.416 13 / 36
5.0.415 13 / 36
5.0.414 13 / 36
5.0.413 13 / 36
5.0.412 13 / 36
5.0.411 13 / 36
5.0.409 13 / 36
5.0.408 13 / 36
5.0.407 13 / 36
5.0.406 13 / 36
5.0.405 13 / 36
5.0.404 13 / 36
5.0.403 13 / 36
5.0.402 13 / 36
5.0.401 13 / 36
5.0.400 13 / 36
5.0.399 13 / 36
5.0.397 13 / 36
5.0.396 13 / 36
5.0.395 13 / 36
5.0.394 13 / 36
5.0.393 13 / 36
5.0.392 13 / 36
5.0.391 13 / 36
5.0.390 13 / 36
5.0.389 13 / 36
5.0.388 13 / 36
5.0.387 13 / 36
5.0.386 13 / 36
5.0.385 13 / 36
5.0.384 13 / 36
5.0.383 13 / 36
5.0.382 13 / 36
5.0.381 13 / 36
5.0.380 13 / 36
5.0.379 13 / 36
5.0.378 13 / 36
5.0.377 13 / 36
5.0.376 13 / 36
5.0.375 13 / 36
5.0.374 13 / 36
5.0.373 13 / 36
5.0.372 13 / 36
5.0.371 13 / 36
5.0.370 13 / 36
5.0.369 13 / 36
5.0.368 13 / 36
5.0.367 13 / 36
5.0.366 13 / 36
5.0.365 13 / 36
5.0.364 13 / 36
5.0.363 13 / 36
5.0.362 13 / 36
5.0.361 13 / 36
5.0.360 13 / 36
5.0.359 13 / 36
5.0.358 13 / 36
5.0.357 13 / 36
5.0.356 13 / 36
5.0.355 13 / 36
5.0.354 13 / 36
5.0.353 13 / 36
5.0.352 13 / 36
5.0.351 13 / 36
5.0.350 13 / 36
5.0.349 13 / 36
5.0.348 13 / 36
5.0.347 13 / 36
5.0.346 13 / 36
5.0.345 13 / 36
5.0.344 13 / 36
5.0.343 13 / 34
5.0.342 13 / 34
5.0.341 13 / 34
5.0.340 13 / 34
5.0.339 13 / 34
5.0.338 13 / 34
5.0.337 13 / 34
5.0.336 13 / 34
5.0.335 13 / 34
5.0.334 13 / 34
5.0.333 13 / 34
5.0.332 13 / 34
5.0.331 13 / 34
5.0.330 13 / 34
5.0.329 13 / 34
5.0.328 13 / 34
5.0.327 13 / 34
5.0.326 13 / 34
5.0.325 13 / 34
5.0.324 13 / 34
5.0.323 13 / 34
5.0.322 13 / 34
5.0.321 13 / 34
Showing 100 of 207 Next page →

v5.0.425

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v5.0.424

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v5.0.423

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v5.0.422

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v5.0.360

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.359

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.358

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.357

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.356

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.355

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.354

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.353

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.352

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.351

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.350

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.349

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.348

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.347

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.346

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.345

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.344

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.343

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.342

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.341

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.340

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.339

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.338

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.337

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.336

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.335

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.334

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.333

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.332

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.331

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.330

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.329

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.328

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.327

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.326

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.325

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.324

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.323

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.322

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v5.0.321

1 finding
INFO No provenance attestation provenance

[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.