← Home

@sap-ux/telemetry

Library for sending usage telemetry data

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

tqueckkranthie.sapsap_extncrepossap-ospo-admindevinea

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:@sap/ux-specification AI (phantom-deps): Likely type-only or conditionally used SAP internal dep; no malicious behavior. ai
phantom-deps phantom-dep:@sap-ux/ui5-config AI (phantom-deps): Same-org dependency, likely used indirectly; benign. ai
provenance publisher-changed AI (provenance): devinea is an established SAP publisher (1393 approved, 0 rejected); consistent with org-level account rotation. ai
dependencies unvetted-dep:@sap-ux/btp-utils AI (dependencies): Same SAP open-ux-tools monorepo sibling; stable false positive for this package. ai
dependencies unvetted-dep:@sap-ux/ui5-config AI (dependencies): Same SAP open-ux-tools monorepo sibling; stable false positive for this package. ai
dependencies unvetted-dep:@sap-ux/nodejs-utils AI (dependencies): Same SAP open-ux-tools monorepo sibling; stable false positive for this package. ai

Versions (showing 51 of 255)

View all versions
Version Deps Published
1.0.21 10 / 5
1.0.20 10 / 5
1.0.19 10 / 5
1.0.18 10 / 5
1.0.17 10 / 5
1.0.16 10 / 5
1.0.15 10 / 5
1.0.14 10 / 5
1.0.13 10 / 5
1.0.12 10 / 5
1.0.11 10 / 5
1.0.10 10 / 5
1.0.9 10 / 5
1.0.8 10 / 5
1.0.7 10 / 5
1.0.6 10 / 5
1.0.5 10 / 5
1.0.3 10 / 5
1.0.2 10 / 5
1.0.1 10 / 5
1.0.0 10 / 5
0.7.5 10 / 4
0.7.3 10 / 4
0.7.2 10 / 4
0.7.1 10 / 4
0.7.0 10 / 4
0.6.105 10 / 4
0.6.104 10 / 4
0.6.103 10 / 4
0.6.102 10 / 4
0.6.101 10 / 4
0.6.100 10 / 4
0.6.99 10 / 4
0.6.98 10 / 4
0.6.97 10 / 4
0.6.96 10 / 4
0.6.95 10 / 4
0.6.94 10 / 4
0.6.93 10 / 4
0.6.92 10 / 4
0.6.91 10 / 4
0.6.90 10 / 4
0.6.89 10 / 4
0.6.88 10 / 4
0.6.87 10 / 4
0.6.86 10 / 4
0.6.85 10 / 4
0.6.84 10 / 4
0.6.83 10 / 4
0.6.82 10 / 4
0.6.81 10 / 4

v1.0.21

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.20

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.14

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.13

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.