← Home

@powerlines/plugin-pulumi

A Powerlines plugin to deploy infrastructure using Pulumi.

100
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

stormie-botsullivanpj

Keywords

pulumipowerlinesstorm-softwarepowerlines-plugin

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Publisher changed from stormie-bot to GitHub Actions, consistent with migration to CI/CD-based publishing with SLSA provenance attestation. Package has 399 versions and established organizational identity. ai
source-diff obfuscated-file:dist/index.mjs AI (source-diff): dist/index.mjs is standard bundler-minified output (Rollup/Vite/tsup). Long lines are a build artifact, not obfuscation. Code is semantically readable and consistent with the package's stated purpose. ai
phantom-deps phantom-dep:defu AI (phantom-deps): defu is bundled into dist output; phantom-dep false positive for bundled packages where subpath imports are resolved at build time. ai
phantom-deps phantom-dep:powerlines AI (phantom-deps): powerlines is a peer/config dependency referenced in build config, not directly imported in source. Stable false positive for this bundled package. ai
phantom-deps phantom-dep:@stryke/string-format AI (phantom-deps): @stryke/string-format is bundled into dist output; phantom-dep false positive for bundled packages. ai
phantom-deps phantom-dep:@stryke/fs AI (phantom-deps): Legitimately declared dependency used indirectly; phantom-dep false positive in monorepo/build context. ai
phantom-deps phantom-dep:typescript AI (phantom-deps): Build-time dependency referenced in tsconfig; phantom-dep false positive for build tools. ai
phantom-deps phantom-dep:@stryke/path AI (phantom-deps): Legitimately declared dependency used indirectly; phantom-dep false positive in monorepo/build context. ai
phantom-deps phantom-dep:@stryke/helpers AI (phantom-deps): Legitimately declared dependency used indirectly; phantom-dep false positive in monorepo/build context. ai
phantom-deps phantom-dep:@stryke/type-checks AI (phantom-deps): Legitimately declared dependency used indirectly; phantom-dep false positive in monorepo/build context. ai

Versions (showing 100 of 591)

Version Deps Published
0.6.268 10 / 2
0.6.267 10 / 2
0.6.266 10 / 2
0.6.265 10 / 2
0.6.264 10 / 2
0.6.263 10 / 2
0.6.262 10 / 2
0.6.261 10 / 2
0.6.260 10 / 2
0.6.259 10 / 2
0.6.258 10 / 2
0.6.257 10 / 2
0.6.256 10 / 2
0.6.255 10 / 2
0.6.254 10 / 2
0.6.253 10 / 2
0.6.252 10 / 2
0.6.251 10 / 2
0.6.249 10 / 2
0.6.248 10 / 2
0.6.247 10 / 2
0.6.246 10 / 2
0.6.245 10 / 2
0.6.244 10 / 2
0.6.243 10 / 2
0.6.242 10 / 2
0.6.241 10 / 2
0.6.240 10 / 2
0.6.239 10 / 2
0.6.238 10 / 2
0.6.237 10 / 2
0.6.236 10 / 2
0.6.235 10 / 2
0.6.234 10 / 2
0.6.233 10 / 2
0.6.232 10 / 2
0.6.231 10 / 2
0.6.230 10 / 2
0.6.229 10 / 2
0.6.228 10 / 2
0.6.227 10 / 2
0.6.226 10 / 2
0.6.225 10 / 2
0.6.224 10 / 2
0.6.223 10 / 2
0.6.222 10 / 2
0.6.221 10 / 2
0.6.220 10 / 2
0.6.219 10 / 2
0.6.218 10 / 2
0.6.217 10 / 2
0.6.216 10 / 2
0.6.215 10 / 2
0.6.214 10 / 2
0.6.213 10 / 2
0.6.212 10 / 2
0.6.211 10 / 2
0.6.210 10 / 2
0.6.209 10 / 2
0.6.208 10 / 2
0.6.207 10 / 2
0.6.206 10 / 2
0.6.205 10 / 2
0.6.204 10 / 2
0.6.203 10 / 2
0.6.202 10 / 2
0.6.201 10 / 2
0.6.200 10 / 2
0.6.199 10 / 2
0.6.198 10 / 2
0.6.197 10 / 2
0.6.196 10 / 2
0.6.195 10 / 2
0.6.194 10 / 2
0.6.193 10 / 2
0.6.192 10 / 2
0.6.191 10 / 2
0.6.190 10 / 2
0.6.189 10 / 2
0.6.188 10 / 2
0.6.187 10 / 2
0.6.186 10 / 2
0.6.185 10 / 2
0.6.183 10 / 2
0.6.182 10 / 2
0.6.181 10 / 2
0.6.180 10 / 2
0.6.179 10 / 2
0.6.178 10 / 2
0.6.177 10 / 2
0.6.176 10 / 2
0.6.175 10 / 2
0.6.174 10 / 2
0.6.173 10 / 2
0.6.172 10 / 2
0.6.171 10 / 2
0.6.170 10 / 2
0.6.169 10 / 2
0.6.168 10 / 2
0.6.167 10 / 2
Showing 100 of 591 Next page →

v0.6.268

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.267

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.266

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.265

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.264

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.263

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.262

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.261

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.260

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.259

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.258

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.257

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.256

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.255

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.254

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.253

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.252

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.251

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.249

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.248

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.247

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.246

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.245

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.244

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.243

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.242

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.6.241

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.