@powerlines/plugin-untyped
A Powerlines plugin to use Untyped for code generation based on user-defined schemas.
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:@stryke/convert | AI (phantom-deps): @stryke/convert is a declared runtime dependency; phantom detection is a false positive for this plugin package where deps may be used indirectly. | ai | |
| provenance | publisher-changed | AI (provenance): Publisher changed from stormie-bot to GitHub Actions as part of a CI/CD automation migration, confirmed by SLSA provenance attestation. This is a legitimate and positive supply chain improvement. | ai | |
| phantom-deps | phantom-dep:@stryke/helpers | AI (phantom-deps): Declared dependency referenced in config; part of @stryke utility suite. | ai | |
| phantom-deps | phantom-dep:@stryke/type-checks | AI (phantom-deps): Declared dependency referenced in config; part of @stryke utility suite. | ai | |
| phantom-deps | phantom-dep:powerlines | AI (phantom-deps): Declared dependency; core framework for this plugin package. | ai | |
| phantom-deps | phantom-dep:@stryke/path | AI (phantom-deps): Declared dependency referenced in config; part of @stryke utility suite. | ai | |
| phantom-deps | phantom-dep:defu | AI (phantom-deps): Declared dependency used in plugin configuration; typical for config-driven packages. | ai | |
| phantom-deps | phantom-dep:@stryke/fs | AI (phantom-deps): Declared dependency referenced in config; part of @stryke utility suite used by plugin. | ai | |
| dependencies | unvetted-dep:powerlines | AI (dependencies): powerlines is the core package of this publisher's own ecosystem; @powerlines/plugin-untyped is explicitly a plugin for it. Dependency is expected and coherent. | ai | |
| dependencies | unvetted-dep:@stryke/convert | AI (dependencies): @stryke/convert is part of the same Storm Software organization's tooling suite, consistent with the publisher's ecosystem. | ai | |
| dependencies | unvetted-dep:@storm-software/untyped | AI (dependencies): @storm-software/untyped is the underlying untyped integration from the same publisher; this plugin wraps it, making the dependency structurally expected. | ai | |
| provenance | slsa-provenance | AI (provenance): Package is consistently published via CI/CD with Sigstore/SLSA attestation; this is a stable property of the Storm Software publishing pipeline. | ai |
Versions (showing 51 of 567)
| Version | Deps | Published |
|---|---|---|
| 0.2.542 | 4 / 2 | |
| 0.2.541 | 4 / 2 | |
| 0.2.540 | 4 / 2 | |
| 0.2.539 | 4 / 2 | |
| 0.2.538 | 4 / 2 | |
| 0.2.537 | 4 / 2 | |
| 0.2.536 | 4 / 2 | |
| 0.2.535 | 4 / 2 | |
| 0.2.534 | 4 / 2 | |
| 0.2.533 | 4 / 2 | |
| 0.2.532 | 4 / 2 | |
| 0.2.531 | 4 / 2 | |
| 0.2.530 | 4 / 2 | |
| 0.2.529 | 4 / 2 | |
| 0.2.528 | 4 / 2 | |
| 0.2.527 | 4 / 2 | |
| 0.2.526 | 4 / 2 | |
| 0.2.525 | 4 / 2 | |
| 0.2.524 | 4 / 2 | |
| 0.2.523 | 4 / 2 | |
| 0.2.522 | 4 / 2 | |
| 0.2.521 | 4 / 2 | |
| 0.2.520 | 4 / 2 | |
| 0.2.519 | 4 / 2 | |
| 0.2.518 | 4 / 2 | |
| 0.2.517 | 4 / 2 | |
| 0.2.516 | 4 / 2 | |
| 0.2.515 | 4 / 2 | |
| 0.2.514 | 4 / 2 | |
| 0.2.513 | 4 / 2 | |
| 0.2.512 | 4 / 2 | |
| 0.2.511 | 4 / 2 | |
| 0.2.510 | 4 / 2 | |
| 0.2.509 | 4 / 2 | |
| 0.2.508 | 4 / 2 | |
| 0.2.507 | 4 / 2 | |
| 0.2.506 | 4 / 2 | |
| 0.2.505 | 4 / 2 | |
| 0.2.504 | 4 / 2 | |
| 0.2.503 | 4 / 2 | |
| 0.2.502 | 4 / 2 | |
| 0.2.501 | 4 / 2 | |
| 0.2.500 | 4 / 2 | |
| 0.2.499 | 4 / 2 | |
| 0.2.498 | 4 / 2 | |
| 0.2.496 | 4 / 2 | |
| 0.2.495 | 4 / 2 | |
| 0.2.494 | 4 / 2 | |
| 0.2.493 | 4 / 2 | |
| 0.2.492 | 4 / 2 | |
| 0.2.491 | 4 / 2 |
v0.2.542
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.541
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.540
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.539
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.538
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.537
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.536
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.535
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.534
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.533
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.532
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.531
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.530
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.529
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.528
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.527
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.526
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.525
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.524
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.523
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.522
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.521
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.520
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.519
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.518
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.517
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.516
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.515
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.514
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.513
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.512
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.511
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.510
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.509
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.508
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.507
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.506
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.505
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.504
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.503
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.502
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.501
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.500
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.499
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.498
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.496
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.495
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.494
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.493
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.492
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.2.491
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.