← Home

@powerlines/plugin-plugin

A package containing a Powerlines plugin to assist in developing other Powerlines plugins.

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

stormie-botsullivanpj

Keywords

powerlinesstorm-softwarepowerlines-plugin

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:@stryke/json AI (phantom-deps): Config-file usage pattern; stable false positive for this build-tooling package. ai
phantom-deps phantom-dep:@alloy-js/rollup-plugin AI (phantom-deps): Config-file usage pattern; stable false positive for this build-tooling package. ai
dependencies unvetted-dep:esbuild-plugin-babel AI (dependencies): esbuild-plugin-babel is a standard build tool plugin; no malicious indicators and used consistently across this publisher's packages. ai
phantom-deps phantom-dep:unplugin AI (phantom-deps): unplugin is a build plugin framework referenced in config files; not directly imported in source is expected for this type of package. ai
phantom-deps phantom-dep:@stryke/fs AI (phantom-deps): Part of the Storm Software @stryke/* ecosystem; referenced in config files rather than direct imports is normal for this package type. ai
phantom-deps phantom-dep:@stryke/path AI (phantom-deps): Part of the Storm Software @stryke/* ecosystem; config-file reference pattern is expected. ai
phantom-deps phantom-dep:jiti AI (phantom-deps): jiti is declared as a runtime dep and used in config files; phantom-dep pattern is expected for this build-tool plugin package. ai
phantom-deps phantom-dep:esbuild-plugin-babel AI (phantom-deps): Declared dep used in config files; expected pattern for this build-tool plugin package. ai
phantom-deps phantom-dep:@stryke/types AI (phantom-deps): Part of Storm Software's own ecosystem; declared dep used in config files, not a security concern. ai
phantom-deps phantom-dep:@alloy-js/json AI (phantom-deps): Declared dep used in config files; expected pattern for this plugin package. ai
phantom-deps phantom-dep:@alloy-js/markdown AI (phantom-deps): Declared dep used in config files; expected pattern for this plugin package. ai
phantom-deps phantom-dep:@stryke/type-checks AI (phantom-deps): Part of Storm Software's own ecosystem; declared dep used in config files, not a security concern. ai
phantom-deps phantom-dep:@alloy-js/typescript AI (phantom-deps): Declared dep used in config files; expected pattern for this plugin package. ai

Versions (showing 51 of 622)

View all versions
Version Deps Published
0.12.578 4 / 1
0.12.577 4 / 1
0.12.576 4 / 1
0.12.575 4 / 1
0.12.574 4 / 1
0.12.573 4 / 1
0.12.572 4 / 1
0.12.571 4 / 1
0.12.570 4 / 1
0.12.569 4 / 1
0.12.568 4 / 1
0.12.567 4 / 1
0.12.566 4 / 1
0.12.565 4 / 1
0.12.564 4 / 1
0.12.563 4 / 1
0.12.562 4 / 1
0.12.561 4 / 1
0.12.559 4 / 1
0.12.558 4 / 1
0.12.557 4 / 1
0.12.556 4 / 1
0.12.555 4 / 1
0.12.554 4 / 1
0.12.553 4 / 1
0.12.552 4 / 1
0.12.551 4 / 1
0.12.550 4 / 1
0.12.549 4 / 1
0.12.548 4 / 1
0.12.547 4 / 1
0.12.546 4 / 1
0.12.545 4 / 1
0.12.544 4 / 1
0.12.543 4 / 1
0.12.542 4 / 1
0.12.541 4 / 1
0.12.540 4 / 1
0.12.539 4 / 1
0.12.538 4 / 1
0.12.537 4 / 1
0.12.536 4 / 1
0.12.535 4 / 1
0.12.534 4 / 1
0.12.533 4 / 1
0.12.532 4 / 1
0.12.531 4 / 1
0.12.530 4 / 1
0.12.529 4 / 1
0.12.528 4 / 1
0.12.527 4 / 1

v0.12.578

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.577

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.576

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.575

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.574

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.573

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.572

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.571

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.570

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.569

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.568

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.567

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.566

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.565

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.564

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.563

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.562

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.561

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.559

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.558

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.557

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.556

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.555

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.554

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.553

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.552

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.