@salesforce/lds-durable-storage
LDS Durable Storage
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| bogus-package | bogus-package | AI (bogus-package): Internal Salesforce monorepo package; missing metadata and inflated semver are expected patterns for this publisher's scoped packages. | ai |
Versions (showing 34 of 34)
| Version | Deps | Published |
|---|---|---|
| 1.450.0 | 1 / 0 | |
| 1.449.0 | 1 / 0 | |
| 1.448.0 | 1 / 0 | |
| 1.447.1 | 1 / 0 | |
| 1.447.0 | 1 / 0 | |
| 1.446.0 | 1 / 0 | |
| 1.445.0 | 1 / 0 | |
| 1.444.0 | 1 / 0 | |
| 1.443.0 | 1 / 0 | |
| 1.442.0 | 1 / 0 | |
| 1.441.0 | 1 / 0 | |
| 1.440.0 | 1 / 0 | |
| 1.439.0 | 1 / 0 | |
| 1.438.1 | 1 / 0 | |
| 1.438.0 | 1 / 0 | |
| 1.437.0 | 1 / 0 | |
| 1.436.0 | 1 / 0 | |
| 1.435.1 | 1 / 0 | |
| 1.435.0 | 1 / 0 | |
| 1.434.0 | 1 / 0 | |
| 1.433.0 | 1 / 0 | |
| 1.432.0 | 1 / 0 | |
| 1.431.0 | 1 / 0 | |
| 1.430.0 | 1 / 0 | |
| 1.429.0 | 1 / 0 | |
| 1.428.0 | 1 / 0 | |
| 1.427.0 | 1 / 0 | |
| 1.426.1 | 1 / 0 | |
| 1.425.0 | 0 / 0 | |
| 1.424.0 | 0 / 0 | |
| 1.423.0 | 0 / 0 | |
| 1.422.0 | 0 / 0 | |
| 1.421.1 | 0 / 0 | |
| 1.421.0 | 0 / 0 |
v1.450.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.449.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.448.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.447.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.447.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.