← Home

@sap-ux/create

SAP Fiori tools module to add or remove features

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

tqueckkranthie.sapsap_extncrepossap-ospo-admindevinea

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance no-provenance AI (provenance): Large SAP open-source monorepo; provenance not currently enabled; stable pattern across all versions. ai
provenance publisher-changed AI (provenance): SAP org migrated publishing to GitHub Actions CI/CD with SLSA attestation; stable transition for this monorepo package. ai
publish-pattern new-deps-added AI (publish-pattern): dotenv and @sap-ux/store are legitimate packages consistent with SAP tooling scope. ai
phantom-deps phantom-dep:@sap/cf-tools AI (phantom-deps): SAP org package; referenced in config files, not direct import. Stable false positive for this package. ai
phantom-deps phantom-dep:@sap-ux/btp-utils AI (phantom-deps): Same SAP org scope; phantom-dep heuristic fires on indirect usage patterns common in this monorepo. ai
phantom-deps phantom-dep:@sap-ux/nodejs-utils AI (phantom-deps): Same SAP org scope; stable false positive for this monorepo package. ai

Versions (showing 51 of 918)

View all versions
Version Deps Published
1.1.0 27 / 8
1.0.61 25 / 8
1.0.60 25 / 8
1.0.59 25 / 8
1.0.58 25 / 8
1.0.56 25 / 8
1.0.55 25 / 8
1.0.54 25 / 8
1.0.53 25 / 8
1.0.52 25 / 8
1.0.51 25 / 8
1.0.50 25 / 8
1.0.49 25 / 8
1.0.48 25 / 8
1.0.47 25 / 8
1.0.46 25 / 8
1.0.45 25 / 8
1.0.44 25 / 8
1.0.43 25 / 8
1.0.42 25 / 8
1.0.41 25 / 8
1.0.40 25 / 8
1.0.39 25 / 8
1.0.38 25 / 8
1.0.36 25 / 8
1.0.35 25 / 8
1.0.34 25 / 8
1.0.33 25 / 8
1.0.32 25 / 8
1.0.31 25 / 8
1.0.30 25 / 8
1.0.29 25 / 8
1.0.28 25 / 8
1.0.27 25 / 8
1.0.25 25 / 8
1.0.24 25 / 8
1.0.22 25 / 8
1.0.21 25 / 8
1.0.20 25 / 8
1.0.19 25 / 8
1.0.18 25 / 8
1.0.17 25 / 8
1.0.16 25 / 8
1.0.15 25 / 8
1.0.14 25 / 8
1.0.13 25 / 8
1.0.12 25 / 8
1.0.11 25 / 8
1.0.10 25 / 8
1.0.9 25 / 8
1.0.7 25 / 8

v1.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.61

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.60

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.59

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.58

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.56

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.55

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.54

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.53

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.52

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.51

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.50

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.49

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.48

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.47

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.46

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.45

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.44

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.43

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.42

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.41

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.40

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.