@powerlines/plugin-jest
A package containing the Jest testing plugin for Powerlines.
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| source-diff | obfuscated-file:dist/index.mjs | AI (source-diff): dist/index.mjs is standard minified bundle output from a build tool; code is semantically transparent with no malicious patterns. False positive for this package. | ai | |
| source-diff | obfuscated-file:dist/index.cjs | AI (source-diff): dist/index.cjs is a standard minified CJS bundle produced by Storm Software's build toolchain; long lines are expected and not obfuscation. Stable false positive for this package. | ai | |
| source-diff | large-new-source-files | AI (source-diff): Version diff shows no material changes to deps/scripts/large files; new files consistent with expanding type exports in a growing plugin package. | ai | |
| provenance | publisher-changed | AI (provenance): Publisher changed from stormie-bot to GitHub Actions as part of a CI/CD migration. SLSA provenance attestation confirms builds are produced by the declared workflow, making this a legitimate transition. | ai | |
| phantom-deps | phantom-dep:jest | AI (phantom-deps): Jest plugin naturally declares jest as dependency but loads it via plugin system; stable for this package. | ai | |
| phantom-deps | phantom-dep:chalk | AI (phantom-deps): Utility dependency used indirectly through plugin architecture; stable for this package. | ai | |
| phantom-deps | phantom-dep:jest-util | AI (phantom-deps): Jest framework package loaded by convention; stable for this package. | ai | |
| phantom-deps | phantom-dep:@stryke/path | AI (phantom-deps): Utility dependency used indirectly through plugin architecture; stable for this package. | ai | |
| phantom-deps | phantom-dep:jest-config | AI (phantom-deps): Jest internal dependency; loaded by convention in Jest plugins. | ai | |
| phantom-deps | phantom-dep:powerlines | AI (phantom-deps): Core dependency for Powerlines plugin; referenced in config as expected. | ai | |
| phantom-deps | phantom-dep:@stryke/fs | AI (phantom-deps): Legitimate dependency for filesystem operations in Jest plugin; normal pattern. | ai | |
| phantom-deps | phantom-dep:jest-resolve | AI (phantom-deps): Jest internal dependency; loaded by convention in Jest plugins. | ai | |
| phantom-deps | phantom-dep:@jest/reporters | AI (phantom-deps): Framework-scoped Jest package; loaded by convention as noted by analyzer. | ai | |
| phantom-deps | phantom-dep:@jest/test-result | AI (phantom-deps): Framework-scoped Jest package; loaded by convention as noted by analyzer. | ai | |
| phantom-deps | phantom-dep:defu | AI (phantom-deps): Legitimate dependency for a Jest plugin; referenced in config files as expected. | ai |
Versions (showing 51 of 572)
| Version | Deps | Published |
|---|---|---|
| 0.1.596 | 15 / 3 | |
| 0.1.595 | 15 / 3 | |
| 0.1.594 | 15 / 3 | |
| 0.1.593 | 15 / 3 | |
| 0.1.592 | 15 / 3 | |
| 0.1.591 | 15 / 3 | |
| 0.1.590 | 15 / 3 | |
| 0.1.589 | 15 / 3 | |
| 0.1.588 | 15 / 3 | |
| 0.1.587 | 15 / 3 | |
| 0.1.586 | 15 / 3 | |
| 0.1.585 | 15 / 3 | |
| 0.1.584 | 15 / 3 | |
| 0.1.583 | 15 / 3 | |
| 0.1.582 | 15 / 3 | |
| 0.1.581 | 15 / 3 | |
| 0.1.580 | 15 / 3 | |
| 0.1.579 | 15 / 3 | |
| 0.1.578 | 15 / 3 | |
| 0.1.577 | 15 / 3 | |
| 0.1.576 | 15 / 3 | |
| 0.1.575 | 15 / 3 | |
| 0.1.574 | 15 / 3 | |
| 0.1.573 | 15 / 3 | |
| 0.1.572 | 15 / 3 | |
| 0.1.571 | 15 / 3 | |
| 0.1.570 | 15 / 3 | |
| 0.1.569 | 15 / 3 | |
| 0.1.568 | 15 / 3 | |
| 0.1.567 | 15 / 3 | |
| 0.1.566 | 15 / 3 | |
| 0.1.565 | 15 / 3 | |
| 0.1.564 | 15 / 3 | |
| 0.1.563 | 15 / 3 | |
| 0.1.562 | 15 / 3 | |
| 0.1.561 | 15 / 3 | |
| 0.1.560 | 15 / 3 | |
| 0.1.559 | 15 / 3 | |
| 0.1.558 | 15 / 3 | |
| 0.1.557 | 15 / 3 | |
| 0.1.556 | 15 / 3 | |
| 0.1.555 | 15 / 3 | |
| 0.1.554 | 15 / 3 | |
| 0.1.553 | 15 / 3 | |
| 0.1.552 | 15 / 3 | |
| 0.1.550 | 15 / 3 | |
| 0.1.549 | 15 / 3 | |
| 0.1.548 | 15 / 3 | |
| 0.1.547 | 15 / 3 | |
| 0.1.546 | 15 / 3 | |
| 0.1.545 | 15 / 3 |
v0.1.596
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.595
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.594
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.593
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.592
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.591
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.590
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.589
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.588
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.587
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.586
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.585
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.584
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.583
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.582
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.581
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.580
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.579
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.578
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.577
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.576
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.575
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.574
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.573
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.572
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.571
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.570
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.569
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.568
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.567
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.566
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.565
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.564
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.563
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.562
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.561
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.560
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.559
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.558
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.557
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.556
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.555
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.554
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.553
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.552
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.550
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.549
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.548
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.547
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.546
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.1.545
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.