← Home

@procore/data-table

Complex data grid built on top of ag-grid, with DST components and styles.

6
Versions
SEE LICENSE IN LICENSE
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures gitHead linked

Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.

Maintainers

dancingshelljustinmwattsantonyayoubrysmithprocorerobbiegprocorejadamsssjeremy.bouzigardjgentesfaraz.haniftimdohertyajaykumar-procoreb.bookoutjalyngchadryderhtaelrefaiepcnjames.lawsonvinayakaprabhudavidshurejames.clearyjl4everandersonbispoprocoredev-account-adminbrockpcorrowan.ibrahimsseanwangramysaid2vinaya-procorelalovar-procorebhargavrndihor.diachenko_procorefarismmkgideon-procoredannyporrelloalanprocorechance.eakin.procorestevenliprocorejavio-procorekani-procoreenyagadanny.oumessanjahdavid-christensen-procoreshradha.khardwinson.chueyvettesoulzhou888jnhoang1nickprocoreneil.mckeemanpam-whisenhuntjgee67youssefamermike-arndt-procorebob.laskowskicagmzmariah_delaneylukenispelfabriciobdbikash.sahoobbreyel921kimhin267andy.mayerphil.custerelijah.procorejuliana.hernandezjudy-lu-pcprocore-it-supportandrewburke-pcjkleintechrachel.arkebauerprocore-npm-botgrafffffffyoyis3000james.dabbs-procorelaurenbrandsteinprocorescottbieser-procoreamir-iskanderzach.mckenzie.procoreamyprocoreshayonj_procoreheplayskeysmike.souththomasoboyledischordederek-carter-procoredlgassercfprocoreevan.waitsjeremy-marcusjmejia-fslersgonzalotimofeeestephan-procorealeclarsenprocoresarah.freitasyihai.zweifeljay-rajanjacky-leiapcarroll_procoreprocore_halzymehrdad-panahandehpeter.jinuddhavjoglekarbrookyboy009denzylbalramchangprocoreallenanle.procoredevin.cunningham.procoreari-procorenoor.alihgouhierprocorecyrille.baibrad.uranidmccraw-procorepatrick.lardinabhijit.patwardhanmatt.harris0223alan.bresanijesse.olsendtorres-procoredineshkumar.jayakjason-kayeyadhu.prakashleandro-procandrew.wheelersherylnapigkitlydiaharakahliholmessateesh-kadiyala-procoreepalinprocoredennis.heckmanjamie-dugan-procoreviktoriia_azarovskadaniel.ferreira-contractorwillpankonienladavargasteven.hinkletxin1chris.berberetokarevritchleekarina.mendez-contractorworldofsatyakigreg.sparkskyle.williamskuldeepsingh4556jeremy.lundbrocktillotsonprocorestajicsryanfuentesprocoretyler.wasden.procorefabiomelo513cody_schindler_procoreamit.gurav-contractoryoasyo25kalyani.gosavihectorthieleandersontr15vishal-procoreomar.wagdyyogevfine1charan_procorescorgiat-procorembartlett413attachiahmed.ghorabvaromiralyelashram_procoreilya.dryha-contractorevan.cerwonka.procorevsobol-cdmitri_wmkellikearnsrichard.bunnchaitra-m-15conner-procoremishaelowoyemipeterknifaleh.haurylenia-contractormiguel.garcia-procorecodyrobertsprocorea.elbadaweilnspatz914melch-procoremustafa-abdelrahmanatoaimajasaswiniadarsh.gautamamin.jaipurimax.helmetags_kudrykhyogmankyle.liudavidkangprostevenkang3cbathgatevictorbendeck-pcsarah.herediamoaz-ashrafaly-el-kerdanyprocore-oss-userabhishekkumar123stephanie.breretonsaurasumprocoremona.khairbekelewando-procorejyang-procoretedyangdeiabjgreene_procoreasamaykenny.foisyganesh.raghupathyrajatmenhdirattayzhou2024dlameter-procoredecha-sansonkylepietzconnie-feng-procoreroger-procorematheusprocorefernandocamilottisimona.iancujacksonleach-procoreg2mitchelltatsiana.cliftonphunguyen-pcorpmfrawleybrian.smith1scottsternneil1023srichaitanya.peddintijake-pitkinerikthoresonlhuang325abhijit-procorerodayna.ehabfairchildmustafa-u-abdelrahmanaberkowitzpwhisenhunt-procoremariia.solodovniknigeld-procoresamad.viranibohdan-horai-procoremathenes_procorevinoth.kuppusamyzayteralan.facchini-contractorcassianomatos-procoreamitk030sflang-procoretracy.ottodaniel-pierre-procoreglidenorashish.sharma2024gaurav.sharma.procoreandres-mendez-procoreroobo-romeskikylemartinez-procoresean.spearman.procoregturkadzejeffgiaquintoezrasimeloffbill-wagnerkellen.stewartrodrigo.dejuanasaranahal2andrew.isaacagamaleldinmostafaeltazymagdyyxxandreszorrilla-procoremohitsharma97tejeshwarswati.jadhavsquidbeakssmishra06subham.panigrahideepak.kumartsvaibhav6521bagnaram-procoremahesh-s96mohamed.adelzveli-procorenubs-procorerana.eltayarmahmoud-sharsharsyamphanindraveroniaosamaimanselimhelmy162-procorepclemonssamuelvelez8383vinitdeshkar-procoremariam_mazenmina-elnagardaniel_andrewsmohanad-aymanarsenii.derkach-procorestepanvanzuriakprocorend-procoremarwansalem-prcyoussefothmanandrii.datsenko-contractor

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
maintainer-change maintainer-added AI (maintainer-change): Procore org package with automated bot publisher; internal maintainer additions are routine for this package. ai
dependencies unvetted-dep:@procore/toast-alert AI (dependencies): Same-org @procore scoped package; consistent with Procore monorepo dependency pattern. ai
dependencies unvetted-dep:@procore/labs-datetime-select AI (dependencies): Same-org @procore scoped package; consistent with Procore monorepo dependency pattern. ai
dependencies unvetted-dep:@procore/labs-group-by-select AI (dependencies): Same-org @procore scoped package; consistent with Procore monorepo dependency pattern. ai
phantom-deps phantom-dep:decimal.js AI (phantom-deps): Listed in package.json dependencies; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:lodash.isequal AI (phantom-deps): Listed in package.json dependencies; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:lodash.debounce AI (phantom-deps): Listed in package.json dependencies; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:@procore/error-pages AI (phantom-deps): Same-org dep; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:@procore/toast-alert AI (phantom-deps): Same-org dep; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:ulid AI (phantom-deps): Listed in package.json dependencies; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:@procore/web-sdk-storage AI (phantom-deps): Same-org dep; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:@procore/cdn-translations AI (phantom-deps): Same-org dep; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:@procore/labs-datetime-select AI (phantom-deps): Same-org dep; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:@procore/labs-group-by-select AI (phantom-deps): Same-org dep; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:react-resize-detector AI (phantom-deps): Listed in package.json dependencies; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:ramda AI (phantom-deps): Listed in package.json dependencies; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:date-fns AI (phantom-deps): Listed in package.json dependencies; phantom-dep heuristic false positive for this monorepo package. ai
phantom-deps phantom-dep:classnames AI (phantom-deps): Listed in package.json dependencies; phantom-dep heuristic false positive for this monorepo package. ai

Versions (showing 6 of 6)

Version Deps Published
14.46.4 14 / 78
14.46.3 14 / 78
14.46.1 14 / 78
14.46.0 14 / 78
14.45.0 14 / 78
14.44.0 14 / 78

v14.46.4

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v14.46.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v14.46.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v14.45.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v14.44.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.