@socialgouv/legi-data-types
[![License][img-license]][link-license] [![NPM Version][img-npm]][link-npm] [![Code Coverage][img-coverage]][link-coverage]
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): Transition to GitHub Actions CI publishing is confirmed by SLSA provenance attestation; stable pattern for this org. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Established data-types package with 533 versions; README link dump reflects legal data references, not phishing. | ai |
Versions (showing 51 of 197)
| Version | Deps | Published |
|---|---|---|
| 2.549.0 | 0 / 22 | |
| 2.548.0 | 0 / 22 | |
| 2.547.0 | 0 / 22 | |
| 2.546.1 | 0 / 22 | |
| 2.546.0 | 0 / 22 | |
| 2.545.0 | 0 / 22 | |
| 2.544.0 | 0 / 22 | |
| 2.543.0 | 0 / 22 | |
| 2.542.0 | 0 / 22 | |
| 2.540.0 | 0 / 22 | |
| 2.539.0 | 0 / 22 | |
| 2.538.0 | 0 / 22 | |
| 2.537.0 | 0 / 22 | |
| 2.536.0 | 0 / 22 | |
| 2.535.0 | 0 / 22 | |
| 2.534.0 | 0 / 22 | |
| 2.533.0 | 0 / 22 | |
| 2.532.0 | 0 / 22 | |
| 2.531.0 | 0 / 22 | |
| 2.530.0 | 0 / 22 | |
| 2.529.0 | 0 / 22 | |
| 2.528.0 | 0 / 22 | |
| 2.527.0 | 0 / 22 | |
| 2.526.0 | 0 / 22 | |
| 2.525.0 | 0 / 22 | |
| 2.524.0 | 0 / 22 | |
| 2.523.0 | 0 / 22 | |
| 2.522.0 | 0 / 22 | |
| 2.521.0 | 0 / 22 | |
| 2.520.0 | 0 / 22 | |
| 2.519.0 | 0 / 22 | |
| 2.518.0 | 0 / 22 | |
| 2.517.0 | 0 / 22 | |
| 2.516.0 | 0 / 22 | |
| 2.515.0 | 0 / 22 | |
| 2.514.0 | 0 / 22 | |
| 2.513.0 | 0 / 22 | |
| 2.512.0 | 0 / 22 | |
| 2.511.0 | 0 / 22 | |
| 2.510.0 | 0 / 22 | |
| 2.509.0 | 0 / 22 | |
| 2.508.0 | 0 / 22 | |
| 2.507.0 | 0 / 22 | |
| 2.506.0 | 0 / 22 | |
| 2.505.0 | 0 / 22 | |
| 2.504.0 | 0 / 22 | |
| 2.503.0 | 0 / 22 | |
| 2.502.0 | 0 / 22 | |
| 2.501.0 | 0 / 22 | |
| 2.500.0 | 0 / 22 | |
| 2.499.0 | 0 / 22 |
v2.549.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.548.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.547.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.546.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.546.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.545.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.544.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.543.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.542.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.