← Home

@sap-ux/generator-adp

Adaptation project allows you to create an app variant for an existing SAP Fiori elements-based or SAPUI5 freestyle application, without changing the original application.

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

tqueckkranthie.sapsap_extncrepossap-ospo-admindevinea

Keywords

yeoman-generator

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:@sap-ux/store AI (phantom-deps): Same-org sibling dep; phantom-dep heuristic fires on monorepo packages that re-export rather than directly import. ai
phantom-deps phantom-dep:@sap-devx/feature-toggle-node AI (phantom-deps): Config-file reference pattern in SAP monorepo; stable false positive for this package. ai

Versions (showing 51 of 112)

View all versions
Version Deps Published
1.0.40 18 / 14
1.0.39 18 / 14
1.0.38 18 / 14
1.0.37 18 / 14
1.0.36 18 / 14
1.0.35 18 / 14
1.0.34 18 / 14
1.0.33 18 / 14
1.0.32 18 / 14
0.9.70 18 / 13
0.9.69 18 / 13
0.9.68 18 / 13
0.9.67 18 / 13
0.9.65 18 / 13
0.9.64 18 / 13
0.9.63 18 / 13
0.9.62 18 / 13
0.9.61 18 / 13
0.9.60 18 / 13
0.9.59 18 / 13
0.9.58 18 / 13
0.9.57 18 / 13
0.9.56 18 / 13
0.9.55 18 / 13
0.9.54 18 / 13
0.9.53 18 / 13
0.9.52 18 / 13
0.9.51 18 / 13
0.9.50 18 / 13
0.9.49 18 / 13
0.9.48 18 / 13
0.9.47 18 / 13
0.9.46 18 / 13
0.9.45 18 / 13
0.9.44 18 / 13
0.9.43 18 / 13
0.9.42 18 / 13
0.9.41 18 / 13
0.9.40 18 / 13
0.9.39 18 / 13
0.9.38 18 / 13
0.9.37 18 / 13
0.9.36 18 / 13
0.9.35 18 / 13
0.9.34 18 / 13
0.9.33 18 / 13
0.9.32 18 / 13
0.9.31 18 / 13
0.9.30 18 / 13
0.9.29 18 / 13
0.9.28 18 / 13

v1.0.40

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.39

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.38

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.37

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.36

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.35

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.34

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.33

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.32

2 findings
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

INFO Publisher changed: devinea → GitHub Actions (on 2026-07-14, now via trusted publisher with provenance) provenance

This version was published by a different npm account (GitHub Actions) than the most recent previously approved version (devinea) on 2026-07-14, but it carries Sigstore provenance attestation. This means the package moved to a trusted publisher (CI/CD with OIDC, e.g. GitHub Actions) — a supply-chain integrity improvement, not a compromise, since a stolen npm token cannot forge provenance bound to the source repository. Recorded as INFO for audit trail.