← Home

@reach/component-component

Declarative React Component Definitions

34
Versions
MIT
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures gitHead linked

Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.

Maintainers

ryanflorencemjacksonchancestricklandblainekasten

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
npm-metadata suspicious-initial-version AI (npm-metadata): @reach/* monorepo intentionally uses 0.0.0 versioning across all packages; this is a well-established pattern for this publisher, not a malicious signal. ai
email-domain unclaimed-email:ryanflorence AI (email-domain): The author field uses '@ryanflorence' as a social handle, not a real email address. This is a consistent pattern across all @reach packages by Ryan Florence and is not a real unclaimed domain risk. ai
bogus-package bogus-package AI (bogus-package): Part of the @reach UI monorepo; sparse metadata (no repo URL, no keywords, minimal README) is a consistent pattern across all @reach scoped packages, not an indicator of spam. ai
provenance publisher-changed AI (provenance): chancestrickland (Chance Strickland) is the documented successor maintainer of the @reach/* monorepo from React Training/mjackson. This is a legitimate, well-known project handoff. ai
provenance missing-githead AI (provenance): Missing gitHead is consistent with the CI/CD environment change during the maintainer transition; no malicious signal for this package. ai

Versions (showing 34 of 34)

Version Deps Published
0.17.0 1 / 2
0.16.0 1 / 2
0.15.3 1 / 2
0.15.0 1 / 2
0.14.0 1 / 2
0.13.1 1 / 2
0.13.0 1 / 0
0.12.0 1 / 0
0.11.1 1 / 0
0.11.0 1 / 0
0.10.4 1 / 0
0.10.1 1 / 0
0.10.0 1 / 7
0.9.0 1 / 7
0.8.6 1 / 7
0.8.2 1 / 7
0.8.0 1 / 7
0.7.4 1 / 7
0.7.3 1 / 7
0.7.2 1 / 7
0.7.1 1 / 7
0.7.0 1 / 0
0.6.2 1 / 0
0.6.1 1 / 2
0.5.0 1 / 2
0.4.0 1 / 2
0.3.0 1 / 2
0.1.3 0 / 3
0.1.2 0 / 3
0.1.1 0 / 3
0.1.0 0 / 3
0.0.2 0 / 3
0.0.1 0 / 3
0.0.0 0 / 3