← Home

@powerlines/plugin-stylelint

A package containing a Powerlines plugin for running Stylelint on the codebase.

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

stormie-botsullivanpj

Keywords

stylelintpowerlinesstorm-softwarepowerlines-plugin

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Publisher changed from stormie-bot to GitHub Actions, consistent with a CI/CD pipeline migration. SLSA provenance attestation confirms integrity of the publishing pipeline. ai
phantom-deps phantom-dep:defu AI (phantom-deps): Declared dependency referenced in config; expected for plugin packages that configure tools rather than directly import them. ai
phantom-deps phantom-dep:stylelint AI (phantom-deps): Declared dependency referenced in config; expected for stylelint plugin package. ai
phantom-deps phantom-dep:@stryke/fs AI (phantom-deps): Declared dependency referenced in config; expected for plugin packages that configure tools rather than directly import them. ai
phantom-deps phantom-dep:powerlines AI (phantom-deps): Declared dependency referenced in config; expected for Powerlines plugin package. ai
phantom-deps phantom-dep:@stryke/path AI (phantom-deps): Declared dependency referenced in config; expected for plugin packages that configure tools rather than directly import them. ai
dependencies unvetted-dep:@stryke/fs AI (dependencies): @stryke/fs is a Storm Software internal utility package from the same monorepo/org; expected dependency for this ecosystem. ai
dependencies unvetted-dep:@stryke/path AI (dependencies): @stryke/path is a Storm Software internal utility package from the same monorepo/org; expected dependency for this ecosystem. ai
dependencies unvetted-dep:powerlines AI (dependencies): powerlines is the core package of this monorepo; expected dependency for a powerlines plugin. ai
dependencies unvetted-dep:@storm-software/config-tools AI (dependencies): @storm-software/config-tools is a Storm Software internal package; expected dependency for this ecosystem. ai
phantom-deps phantom-dep:@storm-software/config-tools AI (phantom-deps): Declared as a dependency and referenced in config files; phantom-dep finding reflects a code organization pattern in the Storm Software ecosystem, not a security risk. ai

Versions (showing 51 of 602)

View all versions
Version Deps Published
0.1.627 6 / 2
0.1.626 6 / 2
0.1.625 6 / 2
0.1.624 6 / 2
0.1.623 6 / 2
0.1.622 6 / 2
0.1.621 6 / 2
0.1.620 6 / 2
0.1.619 6 / 2
0.1.618 6 / 2
0.1.617 6 / 2
0.1.616 6 / 2
0.1.615 6 / 2
0.1.614 6 / 2
0.1.612 6 / 2
0.1.611 6 / 2
0.1.610 6 / 2
0.1.609 6 / 2
0.1.608 6 / 2
0.1.607 6 / 2
0.1.606 6 / 2
0.1.605 6 / 2
0.1.604 6 / 2
0.1.603 6 / 2
0.1.602 6 / 2
0.1.601 6 / 2
0.1.600 6 / 2
0.1.599 6 / 2
0.1.598 6 / 2
0.1.597 6 / 2
0.1.596 6 / 2
0.1.595 6 / 2
0.1.594 6 / 2
0.1.593 6 / 2
0.1.592 6 / 2
0.1.591 6 / 2
0.1.590 6 / 2
0.1.589 6 / 2
0.1.588 6 / 2
0.1.587 6 / 2
0.1.586 6 / 2
0.1.585 6 / 2
0.1.584 6 / 2
0.1.583 6 / 2
0.1.582 6 / 2
0.1.581 6 / 2
0.1.580 6 / 2
0.1.579 6 / 2
0.1.578 6 / 2
0.1.577 6 / 2
0.1.576 6 / 2

v0.1.627

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.626

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.625

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.624

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.623

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.622

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.621

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.620

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.619

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.618

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.617

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.616

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.615

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.614

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.612

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.611

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.610

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.609

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.608

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.607

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.606

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.1.605

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.