← Home

@powerlines/plugin-date

A package containing a Powerlines plugin for injecting static .env configuration values to the code so that they're accessible at runtime.

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

stormie-botsullivanpj

Keywords

powerlinesstorm-softwarepowerlines-plugin

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Publisher changed from stormie-bot to GitHub Actions with SLSA provenance attestation — this is a supply chain improvement (CI/CD automation), not a compromise indicator. ai
source-diff obfuscated-file:dist/deepkit/src/capnp.cjs AI (source-diff): Minified rolldown bundle output, not obfuscated malware. Code handles Cap'n Proto serialization for type reflection — legitimate build artifact for this package. ai
source-diff obfuscated-file:dist/alloy/src/create-plugin.cjs AI (source-diff): Minified rolldown bundle output. Code implements plugin creation with @alloy-js code generation — consistent with package purpose. ai
source-diff obfuscated-file:dist/plugin-env/src/components/env.cjs AI (source-diff): Minified rolldown bundle output. Code generates TypeScript env interfaces — legitimate build artifact. ai
source-diff obfuscated-file:dist/plugin-env/src/index.cjs AI (source-diff): Minified rolldown bundle output. Code implements env plugin configuration — legitimate build artifact. ai
source-diff obfuscated-file:dist/plugin-env/src/helpers/persistence.cjs AI (source-diff): Minified rolldown bundle output. Code handles Cap'n Proto serialization for env type persistence — legitimate build artifact. ai
source-diff obfuscated-file:dist/plugin-env/src/helpers/reflect.cjs AI (source-diff): Minified rolldown bundle output. Code creates reflection classes for env/secrets configuration — legitimate build artifact. ai
source-diff obfuscated-file:dist/deepkit/schemas/reflection.cjs AI (source-diff): Minified rolldown bundle output. Code defines Cap'n Proto struct classes for type reflection schemas — legitimate build artifact. ai
source-diff obfuscated-file:dist/deepkit/schemas/reflection2.cjs AI (source-diff): Minified rolldown bundle output. Code defines Cap'n Proto struct classes (updated version) — legitimate build artifact. ai
phantom-deps phantom-dep:@stryke/path AI (phantom-deps): Declared dependency referenced in config files; typical for monorepo build tooling. ai
phantom-deps phantom-dep:@powerlines/plugin-env AI (phantom-deps): Same-org scoped dependency; legitimate for plugin ecosystem integration. ai
phantom-deps phantom-dep:@storm-software/config-tools AI (phantom-deps): Declared dependency referenced in config files; expected for Storm Software monorepo packages. ai
phantom-deps phantom-dep:powerlines AI (phantom-deps): Legitimate dependency for Powerlines plugin; referenced in config and used indirectly through plugin system. ai
dependencies unvetted-dep:powerlines AI (dependencies): Part of the same Storm Software/Powerlines monorepo ecosystem; sibling package not yet greenflagged, not an independent risk. ai
dependencies unvetted-dep:@powerlines/plugin-env AI (dependencies): Sibling package in the same @powerlines monorepo; unvetted only because it hasn't been greenflagged yet, not due to independent risk. ai
dependencies unvetted-dep:@storm-software/config-tools AI (dependencies): Storm Software ecosystem package; consistent organizational identity across all findings, not an independent risk signal. ai
dependencies unvetted-dep:@stryke/path AI (dependencies): Storm Software ecosystem package (@stryke scope); consistent organizational identity, not an independent risk signal. ai

Versions (showing 51 of 362)

View all versions
Version Deps Published
0.12.675 5 / 2
0.12.674 5 / 2
0.12.673 5 / 2
0.12.672 5 / 2
0.12.671 5 / 2
0.12.670 5 / 2
0.12.669 5 / 2
0.12.668 5 / 2
0.12.667 5 / 2
0.12.666 5 / 2
0.12.665 5 / 2
0.12.664 5 / 2
0.12.663 5 / 2
0.12.662 5 / 2
0.12.661 5 / 2
0.12.660 5 / 2
0.12.659 5 / 2
0.12.658 5 / 2
0.12.657 5 / 2
0.12.656 5 / 2
0.12.655 5 / 2
0.12.654 5 / 2
0.12.653 5 / 2
0.12.652 5 / 2
0.12.651 5 / 2
0.12.650 5 / 2
0.12.649 5 / 2
0.12.648 5 / 2
0.12.647 5 / 2
0.12.646 5 / 2
0.12.645 5 / 2
0.12.644 5 / 2
0.12.643 5 / 2
0.12.642 5 / 2
0.12.641 5 / 2
0.12.640 5 / 2
0.12.639 5 / 2
0.12.638 5 / 2
0.12.637 5 / 2
0.12.636 5 / 2
0.12.635 5 / 2
0.12.634 5 / 2
0.12.633 5 / 2
0.12.632 5 / 2
0.12.631 5 / 2
0.12.630 5 / 2
0.12.629 5 / 2
0.12.627 5 / 2
0.12.626 5 / 2
0.12.625 5 / 2
0.12.624 5 / 2

v0.12.675

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.674

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.673

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.672

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.671

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.670

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.669

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.668

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.667

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.666

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.665

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.664

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.663

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.662

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.661

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.660

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.659

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.658

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.657

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.656

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.655

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.654

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.653

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.652

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.651

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.650

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.649

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.648

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.647

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.646

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.645

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.644

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.643

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.642

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.641

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.640

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.639

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.638

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.637

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.636

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.635

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.634

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.633

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.632

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.631

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.630

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.629

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.627

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.626

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.625

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.624

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.