@stackra/eslint-config
Shared ESLint configuration presets for Stackra packages
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:@nesvel/tsup-config | AI (phantom-deps): Build-tool config dep; not directly imported at runtime, stable false positive for this package. | ai | |
| source-diff | source-size-dropped | AI (source-diff): Package restructured from bundled monolith to lean config package; size drop reflects intentional refactor, not stub replacement. | ai | |
| phantom-deps | phantom-dep:@stackra/tsup-config | AI (phantom-deps): Same-org build tooling dep; loaded by convention via tsup config, not directly imported in source. | ai | |
| phantom-deps | phantom-dep:@babel/preset-typescript | AI (phantom-deps): Framework-scoped package loaded by convention, not direct import. | ai | |
| phantom-deps | phantom-dep:@stackra/typescript-config | AI (phantom-deps): Same-org config dep loaded by convention via tsconfig extends, not direct import. | ai |
Versions (showing 6 of 6)
| Version | Deps | Published |
|---|---|---|
| 1.0.13 | 13 / 14 | |
| 1.0.12 | 3 / 24 | |
| 1.0.9 | 2 / 24 | |
| 1.0.8 | 2 / 24 | |
| 1.0.7 | 2 / 16 | |
| 1.0.6 | 2 / 16 |
v1.0.13
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.12
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.8
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.7
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.0.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.