← Home

@sap-ux/ui5-application-inquirer

Prompts module that can prompt users for inputs required for UI5 application writing

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

tqueckkranthie.sapsap_extncrepossap-ospo-admindevinea

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
dependencies unvetted-dep:@sap-ux/ui5-info AI (dependencies): Same SAP UX tooling namespace; stable sibling dependency across versions of this package. ai

Versions (showing 51 of 304)

View all versions
Version Deps Published
1.0.28 8 / 8
1.0.26 8 / 8
1.0.25 8 / 8
1.0.24 8 / 8
1.0.23 8 / 8
1.0.22 8 / 8
0.17.23 8 / 7
0.17.22 8 / 7
0.17.21 8 / 7
0.17.20 8 / 7
0.17.19 8 / 7
0.17.18 8 / 7
0.17.17 8 / 7
0.17.8 8 / 7
0.16.45 8 / 7
0.16.44 8 / 7
0.16.43 8 / 7
0.16.42 8 / 7
0.16.41 8 / 7
0.16.40 8 / 7
0.16.39 8 / 7
0.16.38 8 / 7
0.16.37 8 / 7
0.16.36 8 / 7
0.16.34 8 / 7
0.16.32 8 / 7
0.16.31 8 / 7
0.16.30 8 / 7
0.16.29 8 / 7
0.16.27 8 / 7
0.16.26 8 / 7
0.16.25 8 / 7
0.16.24 8 / 7
0.16.23 8 / 7
0.16.22 8 / 7
0.16.21 8 / 7
0.16.20 8 / 7
0.16.19 8 / 7
0.16.18 8 / 7
0.16.17 8 / 7
0.16.16 8 / 7
0.16.15 8 / 7
0.16.14 8 / 7
0.16.13 8 / 7
0.16.12 8 / 7
0.16.10 8 / 7
0.16.9 8 / 7
0.16.8 8 / 7
0.16.7 8 / 7
0.16.6 8 / 7
0.16.5 8 / 7

v1.0.28

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.26

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.25

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.24

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.23

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.22

2 findings
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

INFO Publisher changed: devinea → GitHub Actions (on 2026-07-14, now via trusted publisher with provenance) provenance

This version was published by a different npm account (GitHub Actions) than the most recent previously approved version (devinea) on 2026-07-14, but it carries Sigstore provenance attestation. This means the package moved to a trusted publisher (CI/CD with OIDC, e.g. GitHub Actions) — a supply-chain integrity improvement, not a compromise, since a stolen npm token cannot forge provenance bound to the source repository. Recorded as INFO for audit trail.