← Home

@skaldapp/monaco-sfc

A Monaco Editor language server for Vue Single File Components (SFC) providing syntax highlighting, IntelliSense, error detection, and more

51
Versions
AGPL-3.0-only
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

skaldapp

Keywords

vuemonaco-editorsfcsingle-file-componentsvue-language-servereditorsyntax-highlightingintellisensetypescriptjavascriptvolarlanguage-service

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
license copyleft-license:AGPL-3.0-only AI (license): AGPL-3.0 is disclosed and appropriate for this open-source Vue tooling. ai
dependencies unvetted-dep:@volar/jsdelivr AI (dependencies): Legitimate Volar ecosystem package for CDN-based language server file loading. ai
dependencies unvetted-dep:@nuxtlabs/monarch-mdc AI (dependencies): NuxtLabs-maintained Monaco syntax highlighting package; fits package purpose. ai
dependencies unvetted-dep:@vue/typescript-plugin AI (dependencies): Official Vue TypeScript plugin; expected dependency for Vue SFC language server. ai
phantom-deps phantom-dep:vscode-uri AI (phantom-deps): Referenced in config files; stable false positive for this LSP package. ai
phantom-deps phantom-dep:@volar/jsdelivr AI (phantom-deps): Referenced in config files for CDN-based file system; stable false positive. ai
phantom-deps phantom-dep:@vue/language-core AI (phantom-deps): Framework-scoped Volar package loaded by convention, not direct import. ai
phantom-deps phantom-dep:volar-service-typescript AI (phantom-deps): Config-loaded Volar service; stable false positive for this LSP package. ai
phantom-deps phantom-dep:vscode-languageserver-protocol AI (phantom-deps): LSP protocol types used via config; stable false positive for this package. ai
phantom-deps phantom-dep:@remote-dom/polyfill AI (phantom-deps): Referenced in config files; stable false positive for this package. ai
phantom-deps phantom-dep:@vue/language-service AI (phantom-deps): Framework-scoped Volar package loaded by convention, not direct import. ai
phantom-deps phantom-dep:@vue/typescript-plugin AI (phantom-deps): Framework-scoped plugin loaded by convention in Volar-based tooling. ai
phantom-deps phantom-dep:typescript AI (phantom-deps): TypeScript is a peer/config dependency for this language-server package. ai

Versions (showing 51 of 68)

View all versions
Version Deps Published
1.1.56 12 / 8
1.1.55 12 / 8
1.1.54 12 / 8
1.1.53 12 / 8
1.1.52 12 / 8
1.1.51 12 / 8
1.1.50 12 / 8
1.1.49 12 / 8
1.1.48 12 / 8
1.1.47 12 / 8
1.1.46 12 / 8
1.1.45 12 / 8
1.1.44 12 / 8
1.1.43 12 / 8
1.1.42 12 / 8
1.1.41 12 / 8
1.1.40 12 / 8
1.1.39 12 / 8
1.1.38 12 / 8
1.1.37 12 / 8
1.1.36 12 / 8
1.1.35 12 / 8
1.1.34 12 / 8
1.1.33 12 / 8
1.1.32 12 / 8
1.1.31 12 / 8
1.1.30 12 / 8
1.1.29 12 / 8
1.1.28 12 / 8
1.1.27 12 / 8
1.1.26 12 / 8
1.1.25 12 / 8
1.1.24 12 / 8
1.1.23 12 / 8
1.1.22 12 / 8
1.1.21 12 / 8
1.1.20 12 / 8
1.1.19 12 / 8
1.1.18 12 / 8
1.1.17 12 / 8
1.1.16 12 / 8
1.1.15 12 / 8
1.1.14 12 / 8
1.1.13 12 / 8
1.1.12 12 / 8
1.1.11 12 / 8
1.1.10 12 / 8
1.1.9 12 / 8
1.1.8 12 / 8
1.1.7 12 / 8
1.1.6 12 / 8

v1.1.56

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.55

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.54

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.53

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.52

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.33

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.32

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.31

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.30

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.29

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.28

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.27

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.26

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.25

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.24

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.23

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.22

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.21

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.20

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.14

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.13

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.11

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.1.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.