@socialgouv/kali-data-types
[![License][img-license]][link-license] [![NPM Version][img-npm]][link-npm] [![Code Coverage][img-coverage]][link-coverage]
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): Transition to GitHub Actions CI publisher is confirmed by SLSA/Sigstore attestation; stable for this package going forward. | ai | |
| semgrep | semgrep:dynamic-require | AI (semgrep): Pattern loads local JSON data files by agreement ID; not arbitrary module loading. Stable for this package. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Data-types library for French labor law data; link-heavy README and no keywords are expected for this type of package. | ai |
Versions (showing 100 of 490)
| Version | Deps | Published |
|---|---|---|
| 3.484.0 | 0 / 24 | |
| 3.483.0 | 0 / 24 | |
| 3.482.0 | 0 / 24 | |
| 3.481.0 | 0 / 24 | |
| 3.480.0 | 0 / 24 | |
| 3.479.0 | 0 / 24 | |
| 3.478.0 | 0 / 24 | |
| 3.477.0 | 0 / 24 | |
| 3.476.0 | 0 / 24 | |
| 3.475.0 | 0 / 24 | |
| 3.474.1 | 0 / 24 | |
| 3.474.0 | 0 / 24 | |
| 3.473.0 | 0 / 24 | |
| 3.472.0 | 0 / 24 | |
| 3.471.0 | 0 / 24 | |
| 3.470.0 | 0 / 24 | |
| 3.469.0 | 0 / 24 | |
| 3.468.0 | 0 / 24 | |
| 3.467.0 | 0 / 24 | |
| 3.466.0 | 0 / 24 | |
| 3.465.0 | 0 / 24 | |
| 3.464.0 | 0 / 24 | |
| 3.463.0 | 0 / 24 | |
| 3.462.0 | 0 / 24 | |
| 3.461.0 | 0 / 24 | |
| 3.459.0 | 0 / 24 | |
| 3.458.0 | 0 / 24 | |
| 3.457.0 | 0 / 24 | |
| 3.456.0 | 0 / 24 | |
| 3.455.0 | 0 / 24 | |
| 3.454.0 | 0 / 24 | |
| 3.453.0 | 0 / 24 | |
| 3.452.0 | 0 / 24 | |
| 3.451.0 | 0 / 24 | |
| 3.450.0 | 0 / 24 | |
| 3.449.0 | 0 / 24 | |
| 3.448.0 | 0 / 24 | |
| 3.447.0 | 0 / 24 | |
| 3.446.0 | 0 / 24 | |
| 3.445.0 | 0 / 24 | |
| 3.444.0 | 0 / 24 | |
| 3.443.0 | 0 / 24 | |
| 3.442.0 | 0 / 24 | |
| 3.441.0 | 0 / 24 | |
| 3.440.0 | 0 / 24 | |
| 3.439.0 | 0 / 24 | |
| 3.438.0 | 0 / 24 | |
| 3.437.0 | 0 / 24 | |
| 3.436.0 | 0 / 24 | |
| 3.435.0 | 0 / 24 | |
| 3.434.0 | 0 / 24 | |
| 3.433.0 | 0 / 24 | |
| 3.432.0 | 0 / 24 | |
| 3.431.0 | 0 / 24 | |
| 3.430.0 | 0 / 24 | |
| 3.429.0 | 0 / 24 | |
| 3.428.0 | 0 / 24 | |
| 3.427.0 | 0 / 24 | |
| 3.426.0 | 0 / 24 | |
| 3.425.0 | 0 / 24 | |
| 3.424.0 | 0 / 24 | |
| 3.423.0 | 0 / 24 | |
| 3.422.0 | 0 / 24 | |
| 3.421.0 | 0 / 24 | |
| 3.420.0 | 0 / 24 | |
| 3.419.0 | 0 / 24 | |
| 3.418.0 | 0 / 24 | |
| 3.417.0 | 0 / 24 | |
| 3.416.0 | 0 / 24 | |
| 3.415.0 | 0 / 24 | |
| 3.414.1 | 0 / 24 | |
| 3.414.0 | 0 / 24 | |
| 3.413.0 | 0 / 24 | |
| 3.412.0 | 0 / 24 | |
| 3.411.0 | 0 / 24 | |
| 3.410.0 | 0 / 24 | |
| 3.409.0 | 0 / 24 | |
| 3.408.0 | 0 / 24 | |
| 3.407.0 | 0 / 24 | |
| 3.406.0 | 0 / 24 | |
| 3.405.0 | 0 / 24 | |
| 3.404.0 | 0 / 24 | |
| 3.403.0 | 0 / 24 | |
| 3.402.0 | 0 / 24 | |
| 3.401.0 | 0 / 24 | |
| 3.400.0 | 0 / 24 | |
| 3.399.0 | 0 / 24 | |
| 3.398.0 | 0 / 24 | |
| 3.397.0 | 0 / 24 | |
| 3.396.0 | 0 / 24 | |
| 3.395.0 | 0 / 24 | |
| 3.394.0 | 0 / 24 | |
| 3.393.0 | 0 / 24 | |
| 3.392.8 | 0 / 24 | |
| 3.392.7 | 0 / 24 | |
| 3.392.4 | 0 / 24 | |
| 3.392.0 | 0 / 24 | |
| 3.391.0 | 0 / 24 | |
| 3.390.0 | 0 / 24 | |
| 3.389.0 | 0 / 24 |
v3.484.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.483.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.482.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.481.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.480.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.479.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.478.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.477.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.476.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.475.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.474.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.474.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.473.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.472.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.471.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.470.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.469.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.