@powerlines/plugin-openapi
A Powerlines plugin to generate project code from OpenAPI specifications.
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): Transition from stormie-bot to GitHub Actions is a legitimate CI/CD modernization, confirmed by SLSA provenance attestation. Generalizes to future versions for this package. | ai | |
| phantom-deps | phantom-dep:@stryke/type-checks | AI (phantom-deps): Declared dependency used indirectly; common pattern in plugin/config-driven architectures. | ai | |
| phantom-deps | phantom-dep:powerlines | AI (phantom-deps): Declared dependency used indirectly; common pattern in plugin/config-driven architectures. | ai | |
| phantom-deps | phantom-dep:@stryke/path | AI (phantom-deps): Declared dependency used indirectly; common pattern in plugin/config-driven architectures. | ai | |
| phantom-deps | phantom-dep:@stryke/types | AI (phantom-deps): Declared dependency used indirectly; common pattern in plugin/config-driven architectures. | ai | |
| phantom-deps | phantom-dep:openapi-typescript | AI (phantom-deps): Declared dependency used indirectly; common pattern in plugin/config-driven architectures. | ai | |
| phantom-deps | phantom-dep:defu | AI (phantom-deps): Declared dependency used indirectly; common pattern in plugin/config-driven architectures. | ai | |
| phantom-deps | phantom-dep:jiti | AI (phantom-deps): Declared dependency used indirectly; common pattern in plugin/config-driven architectures. | ai | |
| dependencies | unvetted-dep:@stryke/types | AI (dependencies): @stryke/types is a Storm Software utility library from the same org; no security concern. | ai | |
| dependencies | unvetted-dep:@stryke/type-checks | AI (dependencies): @stryke/type-checks is a Storm Software utility library from the same org; no security concern. | ai | |
| dependencies | unvetted-dep:@stryke/path | AI (dependencies): @stryke/path is a Storm Software utility library from the same org; no security concern. | ai | |
| dependencies | unvetted-dep:powerlines | AI (dependencies): powerlines is the core package of the same Storm Software ecosystem; unvetted status reflects review queue lag, not a security concern for this publisher. | ai |
Versions (showing 51 of 569)
| Version | Deps | Published |
|---|---|---|
| 0.2.593 | 7 / 2 | |
| 0.2.592 | 7 / 2 | |
| 0.2.591 | 7 / 2 | |
| 0.2.590 | 7 / 2 | |
| 0.2.589 | 7 / 2 | |
| 0.2.588 | 7 / 2 | |
| 0.2.587 | 7 / 2 | |
| 0.2.586 | 7 / 2 | |
| 0.2.585 | 7 / 2 | |
| 0.2.584 | 7 / 2 | |
| 0.2.583 | 7 / 2 | |
| 0.2.582 | 7 / 2 | |
| 0.2.581 | 7 / 2 | |
| 0.2.580 | 7 / 2 | |
| 0.2.579 | 7 / 2 | |
| 0.2.578 | 7 / 2 | |
| 0.2.577 | 7 / 2 | |
| 0.2.576 | 7 / 2 | |
| 0.2.575 | 7 / 2 | |
| 0.2.574 | 7 / 2 | |
| 0.2.573 | 7 / 2 | |
| 0.2.572 | 7 / 2 | |
| 0.2.571 | 7 / 2 | |
| 0.2.570 | 7 / 2 | |
| 0.2.569 | 7 / 2 | |
| 0.2.568 | 7 / 2 | |
| 0.2.567 | 7 / 2 | |
| 0.2.566 | 7 / 2 | |
| 0.2.565 | 7 / 2 | |
| 0.2.564 | 7 / 2 | |
| 0.2.563 | 7 / 2 | |
| 0.2.562 | 7 / 2 | |
| 0.2.561 | 7 / 2 | |
| 0.2.560 | 7 / 2 | |
| 0.2.559 | 7 / 2 | |
| 0.2.558 | 7 / 2 | |
| 0.2.557 | 7 / 2 | |
| 0.2.556 | 7 / 2 | |
| 0.2.555 | 7 / 2 | |
| 0.2.554 | 7 / 2 | |
| 0.2.553 | 7 / 2 | |
| 0.2.552 | 7 / 2 | |
| 0.2.551 | 7 / 2 | |
| 0.2.550 | 7 / 2 | |
| 0.2.549 | 7 / 2 | |
| 0.2.547 | 7 / 2 | |
| 0.2.546 | 7 / 2 | |
| 0.2.545 | 7 / 2 | |
| 0.2.544 | 7 / 2 | |
| 0.2.543 | 7 / 2 | |
| 0.2.542 | 7 / 2 |
v0.2.593
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.592
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.591
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.590
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.589
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.588
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.587
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.586
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.585
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.584
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.583
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.582
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.581
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.580
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.579
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.578
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.577
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.576
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.575
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.574
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.573
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.572
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.571
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.570
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.569
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.568
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.567
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.566
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.565
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.564
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.563
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.562
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.561
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.560
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.559
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.558
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.557
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.556
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.555
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.554
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.553
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.552
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.551
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.550
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.549
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.547
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.546
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.545
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.544
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.543
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.542
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.