@socialgouv/kali-data-types
[![License][img-license]][link-license] [![NPM Version][img-npm]][link-npm] [![Code Coverage][img-coverage]][link-coverage]
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): Transition to GitHub Actions CI publisher is confirmed by SLSA/Sigstore attestation; stable for this package going forward. | ai | |
| semgrep | semgrep:dynamic-require | AI (semgrep): Pattern loads local JSON data files by agreement ID; not arbitrary module loading. Stable for this package. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Data-types library for French labor law data; link-heavy README and no keywords are expected for this type of package. | ai |
Versions (showing 51 of 490)
| Version | Deps | Published |
|---|---|---|
| 3.484.0 | 0 / 24 | |
| 3.483.0 | 0 / 24 | |
| 3.482.0 | 0 / 24 | |
| 3.481.0 | 0 / 24 | |
| 3.480.0 | 0 / 24 | |
| 3.479.0 | 0 / 24 | |
| 3.478.0 | 0 / 24 | |
| 3.477.0 | 0 / 24 | |
| 3.476.0 | 0 / 24 | |
| 3.475.0 | 0 / 24 | |
| 3.474.1 | 0 / 24 | |
| 3.474.0 | 0 / 24 | |
| 3.473.0 | 0 / 24 | |
| 3.472.0 | 0 / 24 | |
| 3.471.0 | 0 / 24 | |
| 3.470.0 | 0 / 24 | |
| 3.469.0 | 0 / 24 | |
| 3.468.0 | 0 / 24 | |
| 3.467.0 | 0 / 24 | |
| 3.466.0 | 0 / 24 | |
| 3.465.0 | 0 / 24 | |
| 3.464.0 | 0 / 24 | |
| 3.463.0 | 0 / 24 | |
| 3.462.0 | 0 / 24 | |
| 3.461.0 | 0 / 24 | |
| 3.459.0 | 0 / 24 | |
| 3.458.0 | 0 / 24 | |
| 3.457.0 | 0 / 24 | |
| 3.456.0 | 0 / 24 | |
| 3.455.0 | 0 / 24 | |
| 3.454.0 | 0 / 24 | |
| 3.453.0 | 0 / 24 | |
| 3.452.0 | 0 / 24 | |
| 3.451.0 | 0 / 24 | |
| 3.450.0 | 0 / 24 | |
| 3.449.0 | 0 / 24 | |
| 3.448.0 | 0 / 24 | |
| 3.447.0 | 0 / 24 | |
| 3.446.0 | 0 / 24 | |
| 3.445.0 | 0 / 24 | |
| 3.444.0 | 0 / 24 | |
| 3.443.0 | 0 / 24 | |
| 3.442.0 | 0 / 24 | |
| 3.441.0 | 0 / 24 | |
| 3.440.0 | 0 / 24 | |
| 3.439.0 | 0 / 24 | |
| 3.438.0 | 0 / 24 | |
| 3.437.0 | 0 / 24 | |
| 3.436.0 | 0 / 24 | |
| 3.435.0 | 0 / 24 | |
| 3.434.0 | 0 / 24 |
v3.484.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.483.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.482.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.481.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.480.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.479.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.478.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.477.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.476.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.475.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.474.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.474.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.473.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.472.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.471.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.470.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.469.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.