← Home

@platformatic/telemetry

OpenTelemetry integration for Platformatic

93
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

mzugmivan-tymoshenkomarcopiraccinileorossishogun_pandamatteo.collinaqardlucamaraschi

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:@opentelemetry/sdk-node AI (phantom-deps): @opentelemetry/sdk-node is explicitly declared as a runtime dependency in package.json; phantom-dep is a false positive here. ai

Versions (showing 93 of 93)

Version Deps Published
3.64.0 17 / 9
3.63.0 17 / 9
3.62.5 17 / 9
3.62.4 17 / 9
3.62.3 17 / 9
3.62.2 17 / 9
3.62.1 17 / 9
3.62.0 17 / 9
3.61.1 17 / 9
3.61.0 17 / 9
3.60.0 17 / 9
3.59.0 17 / 9
3.58.1 17 / 9
3.58.0 17 / 9
3.57.0 17 / 9
3.56.0 16 / 9
3.55.0 15 / 9
3.54.0 15 / 9
3.53.0 15 / 9
3.52.4 15 / 9
3.52.3 15 / 9
3.52.2 15 / 9
3.52.1 15 / 9
3.52.0 15 / 9
3.51.0 15 / 9
3.50.0 15 / 9
3.49.1 15 / 9
3.49.0 15 / 9
3.48.0 15 / 9
3.47.0 15 / 9
3.46.0 15 / 9
3.45.0 15 / 9
3.44.0 15 / 9
3.43.0 15 / 9
3.42.0 15 / 9
3.41.0 15 / 9
3.40.0 15 / 9
3.39.0 15 / 9
3.38.1 15 / 9
3.38.0 15 / 9
3.37.0 15 / 9
3.36.0 15 / 9
3.35.1 15 / 9
3.35.0 15 / 9
3.34.1 15 / 9
3.33.0 15 / 9
3.32.0 15 / 9
3.31.0 15 / 9
3.30.0 15 / 9
3.29.1 15 / 9
3.29.0 15 / 9
3.28.2 15 / 9
3.28.1 15 / 9
3.28.0 15 / 9
3.27.0 15 / 9
3.26.0 15 / 9
3.25.0 15 / 9
3.24.0 15 / 9
3.23.0 15 / 9
3.22.0 15 / 9
3.21.0 15 / 9
3.20.0 15 / 9
3.19.0 15 / 9
3.18.0 15 / 9
3.17.0 15 / 9
3.16.0 15 / 9
3.15.0 15 / 9
3.14.0 15 / 9
3.13.1 15 / 9
3.13.0 15 / 9
3.12.0 15 / 9
3.11.0 15 / 9
3.10.0 15 / 9
3.9.0 15 / 9
3.8.0 15 / 9
3.7.1 15 / 9
3.7.0 15 / 9
3.6.0 15 / 9
3.5.1 15 / 9
3.5.0 15 / 9
3.4.1 12 / 5
3.4.0 15 / 9
3.3.0 15 / 9
3.2.1 15 / 9
3.2.0 15 / 9
3.1.0 15 / 9
3.0.6 15 / 9
3.0.5 15 / 9
3.0.4 15 / 9
3.0.3 15 / 9
3.0.2 15 / 9
3.0.1 15 / 9
3.0.0 15 / 9

v3.64.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.63.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.62.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.62.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.62.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.62.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.62.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.62.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.61.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.61.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.60.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.59.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.58.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.58.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.4.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.