← Home

@repomix/strip-comments

8
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

yamadashy

Keywords

ada commentsapl commentsapplescript commentsblock commentblockblock-commentc commentsc++ commentscpp commentscode commentcommentcommentscsharp commentscss commentscssgo commentsgolang commentshashbang commentshaskell commentshtml commentsjava commentsjavascript commentsjavascriptjsless commentsless csslessless.jslessjsline commentline commentslineline-commentline-commentslua commentsmatlab commentsocaml commentspascal commentsperl commentsphp commentspython commentsremoveruby commentssass commentssassshebang commentssql commentsstripswift commentstypscript commentsxml comments

Versions (showing 8 of 8)

Version Deps Published
2.4.2 0 / 3
2.4.1 0 / 3
2.4.0 0 / 3
2.3.0 0 / 3
2.2.0 0 / 3
2.1.0 0 / 3
2.0.2 0 / 3
2.0.1 0 / 3

v2.4.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.4.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.4.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.3.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.2.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.0.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v2.0.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.