@powerlines/nx
A Nx plugin to support Powerlines development in Nx monorepos.
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): stormie-bot is the established bot publisher for storm-software org packages with strong track record; transition from GH Actions is expected CI automation change. | ai | |
| phantom-deps | phantom-dep:@storm-software/build-tools | AI (phantom-deps): @storm-software/build-tools is used in config files for this build tooling package; not directly imported in source but legitimately referenced. Stable false positive for this package. | ai | |
| typosquat | typosquat.levenshtein:knex | AI (typosquat): @powerlines/nx is a scoped Nx plugin package, not a typosquat of 'knex'. The name is meaningful and intentional. | ai | |
| typosquat | typosquat.levenshtein:pg | AI (typosquat): @powerlines/nx is a scoped Nx plugin package, not a typosquat of 'pg'. The name is meaningful and intentional. | ai | |
| typosquat | typosquat.levenshtein:next | AI (typosquat): @powerlines/nx is a scoped Nx plugin package, not a typosquat of 'next'. The name is meaningful and intentional. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Package is a legitimate Nx plugin with SLSA provenance, 432 versions, and 1.1k weekly downloads. Cosmetic README/keyword issues are not security concerns. | ai | |
| typosquat | typosquat.levenshtein:qs | AI (typosquat): @powerlines/nx is a scoped Nx plugin package, not a typosquat of 'qs'. The name is meaningful and intentional. | ai | |
| typosquat | typosquat.levenshtein:nuxt | AI (typosquat): @powerlines/nx is a scoped Nx plugin package, not a typosquat of 'nuxt'. The name is meaningful and intentional. | ai |
Versions (showing 51 of 590)
| Version | Deps | Published |
|---|---|---|
| 0.13.166 | 15 / 10 | |
| 0.13.165 | 15 / 10 | |
| 0.13.164 | 15 / 10 | |
| 0.13.163 | 15 / 10 | |
| 0.13.162 | 15 / 10 | |
| 0.13.161 | 15 / 10 | |
| 0.13.160 | 15 / 10 | |
| 0.13.159 | 15 / 10 | |
| 0.13.158 | 15 / 10 | |
| 0.13.157 | 15 / 10 | |
| 0.13.156 | 15 / 10 | |
| 0.13.155 | 15 / 10 | |
| 0.13.154 | 15 / 10 | |
| 0.13.153 | 15 / 10 | |
| 0.13.152 | 15 / 10 | |
| 0.13.151 | 15 / 10 | |
| 0.13.150 | 15 / 10 | |
| 0.13.149 | 15 / 10 | |
| 0.13.148 | 15 / 10 | |
| 0.13.147 | 15 / 10 | |
| 0.13.146 | 15 / 10 | |
| 0.13.145 | 15 / 10 | |
| 0.13.144 | 15 / 10 | |
| 0.13.143 | 15 / 10 | |
| 0.13.142 | 15 / 10 | |
| 0.13.141 | 15 / 10 | |
| 0.13.140 | 15 / 10 | |
| 0.13.139 | 15 / 10 | |
| 0.13.138 | 15 / 10 | |
| 0.13.137 | 15 / 10 | |
| 0.13.136 | 15 / 10 | |
| 0.13.135 | 15 / 10 | |
| 0.13.134 | 15 / 10 | |
| 0.13.133 | 15 / 10 | |
| 0.13.132 | 15 / 10 | |
| 0.13.131 | 15 / 10 | |
| 0.13.130 | 15 / 10 | |
| 0.13.129 | 15 / 10 | |
| 0.13.128 | 15 / 10 | |
| 0.13.127 | 15 / 10 | |
| 0.13.126 | 15 / 10 | |
| 0.13.125 | 15 / 10 | |
| 0.13.124 | 15 / 10 | |
| 0.13.123 | 15 / 9 | |
| 0.13.122 | 15 / 9 | |
| 0.13.121 | 15 / 9 | |
| 0.13.119 | 15 / 9 | |
| 0.13.118 | 15 / 9 | |
| 0.13.117 | 15 / 9 | |
| 0.13.116 | 15 / 9 | |
| 0.13.115 | 15 / 9 |
v0.13.166
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.165
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.164
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.163
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.162
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.161
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.160
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.159
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.158
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.157
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.156
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.155
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.154
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.153
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.152
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.151
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.150
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.149
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.148
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.147
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.146
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.145
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.144
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.143
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.142
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.141
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.140
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.139
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.138
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.137
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.136
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.135
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.134
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.133
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.132
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.131
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.130
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.129
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.128
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.127
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.126
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.125
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.124
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.123
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.122
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.121
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.119
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.118
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.117
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.116
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.13.115
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.