@promptbook/utils
Promptbook: Create persistent AI agents that turn your company's scattered knowledge into action
51
Versions
CC-BY-4.0
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
gitHead linked
Maintainers
hejny
Keywords
aiai-agentsai-application-frameworkai-assistantai-automationai-developmentai-frameworkai-opsai-orchestrationai-pipelineai-platformai-scriptingai-sdkai-workflowapi-integrationautomation-frameworkbook-languagebrowserchatbotcontent-generationconversational-aicross-platformcross-providerdeveloper-toolsembeddingsfunction-callinggenerative-aihelpershuman-readablejavascriptknowledge-baselanguage-modellarge-language-modelsllmllmopsmachine-learningmarkdown-dslmlopsmodel-agnosticmulti-modelmultimodalnatural-languagenatural-language-processingnlpnodejsorchestrationpipelineplain-englishpostprocessingpreprocessingpromptprompt-chainingprompt-engineeringprompt-managementprompt-templateragreasoningtask-automationtemplatetext-generationtext-processingtoolstypescriptunified-interfaceutilitiesvendor-agnosticworkflowworkflow-engine
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| semgrep | semgrep:api-obfuscation-reflect | AI (semgrep): Reflect.get used inside a standard Proxy get trap — idiomatic JS, not obfuscation. Stable for this package. | ai | |
| semgrep | semgrep:eval-usage | AI (semgrep): eval() is used for prompt/script template execution in a retry loop — expected behavior for a prompt template engine. Not a supply-chain risk in this context. | ai | |
| semgrep | semgrep:new-function-constructor | AI (semgrep): new Function() is used for the standard $isRunningInBrowser browser-detection idiom. Benign and stable pattern for this package. | ai |
Versions (showing 51 of 187)
| Version | Deps | Published |
|---|---|---|
| 0.112.0 | 3 / 0 | |
| 0.110.0 | 4 / 0 | |
| 0.105.0 | 4 / 0 | |
| 0.104.0 | 4 / 0 | |
| 0.103.0 | 4 / 0 | |
| 0.102.0 | 3 / 0 | |
| 0.101.0 | 3 / 0 | |
| 0.100.2 | 3 / 0 | |
| 0.100.1 | 3 / 0 | |
| 0.100.0 | 3 / 0 | |
| 0.98.0 | 3 / 0 | |
| 0.95.0 | 3 / 0 | |
| 0.94.0 | 3 / 0 | |
| 0.93.0 | 3 / 0 | |
| 0.92.0 | 3 / 0 | |
| 0.89.0 | 3 / 0 | |
| 0.88.0 | 3 / 0 | |
| 0.86.31 | 2 / 0 | |
| 0.86.30 | 2 / 0 | |
| 0.86.22 | 2 / 0 | |
| 0.86.10 | 2 / 0 | |
| 0.86.8 | 2 / 0 | |
| 0.86.6 | 2 / 0 | |
| 0.86.5 | 2 / 0 | |
| 0.85.0 | 2 / 0 | |
| 0.84.0 | 2 / 0 | |
| 0.83.0 | 2 / 0 | |
| 0.82.0 | 2 / 0 | |
| 0.81.0 | 2 / 0 | |
| 0.80.0 | 2 / 0 | |
| 0.79.0 | 1 / 0 | |
| 0.78.4 | 1 / 0 | |
| 0.78.3 | 1 / 0 | |
| 0.78.2 | 1 / 0 | |
| 0.77.1 | 1 / 0 | |
| 0.77.0 | 1 / 0 | |
| 0.76.0 | 1 / 0 | |
| 0.75.10 | 1 / 0 | |
| 0.75.9 | 1 / 0 | |
| 0.75.6 | 1 / 0 | |
| 0.75.5 | 1 / 0 | |
| 0.75.4 | 1 / 0 | |
| 0.75.3 | 1 / 0 | |
| 0.75.2 | 1 / 0 | |
| 0.75.1 | 1 / 0 | |
| 0.74.0 | 1 / 0 | |
| 0.73.0 | 1 / 0 | |
| 0.72.0 | 1 / 0 | |
| 0.69.6 | 1 / 0 | |
| 0.69.5 | 1 / 0 | |
| 0.69.3 | 1 / 0 |
v0.112.0
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v0.103.0
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.