@storm-software/linting-tools
⚡ A package containing various linting tools used to validate syntax, enforce design standards, and format code in a Storm workspace.
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| source-diff | obfuscated-file:bin/dist-UNI6WBNY.js | AI (source-diff): ESM counterpart of the same tsup bundle; same rationale as the CJS variant. | ai | |
| source-diff | obfuscated-file:bin/dist-CKGJU76Y.cjs | AI (source-diff): Standard tsup bundle output for a CLI linting tool; consistent with package's build pattern across 854 versions. | ai | |
| source-diff | obfuscated-file:bin/dist-4NPPYNEO.js | AI (source-diff): Standard tsup-bundled ESM CLI output; minification is expected in bin/ artifacts. | ai | |
| source-diff | obfuscated-file:bin/dist-W2LWBS72.cjs | AI (source-diff): Standard tsup-bundled CLI output for a linting tools package; minification is expected in bin/ artifacts. | ai | |
| source-diff | obfuscated-file:bin/dist-EYKW3DH5.cjs | AI (source-diff): Standard tsup/bundler output; minified but not obfuscated — readable module paths and no malicious patterns. | ai | |
| source-diff | obfuscated-file:bin/dist-PJ4KGJZQ.js | AI (source-diff): ESM counterpart of the same bundled CLI output; same reasoning applies. | ai | |
| source-diff | obfuscated-file:bin/dist-TEEZZYBG.js | AI (source-diff): ESM counterpart of the same bundled CLI artifact; expected minified output. | ai | |
| source-diff | obfuscated-file:bin/dist-FQXVMSLF.cjs | AI (source-diff): Bundled CLI artifact from tsup build; consistent with linting tool packaging across all versions. | ai | |
| source-diff | obfuscated-file:bin/dist-TA6D52DW.js | AI (source-diff): ESM counterpart of the same CLI bundle; same rationale as the CJS variant. | ai | |
| source-diff | obfuscated-file:bin/dist-SXWKXAUN.cjs | AI (source-diff): Standard tsup/rollup bundle output for storm-lint CLI; readable module references confirm legitimate bundling. | ai | |
| source-diff | obfuscated-file:bin/dist-ZJ5AUXFT.js | AI (source-diff): ESM counterpart of the same bundled CLI output; consistent with this package's build pipeline. | ai | |
| source-diff | obfuscated-file:bin/dist-LZUZSGPH.cjs | AI (source-diff): Standard tsup/esbuild bundle output for a linting CLI; hashed filenames are normal for this package's build pipeline. | ai | |
| source-diff | obfuscated-file:bin/dist-52RMLTE5.cjs | AI (source-diff): Standard tsup-bundled CLI artifact; minification is expected for this linting tools package. | ai | |
| source-diff | obfuscated-file:bin/dist-FWSAV5L3.js | AI (source-diff): Standard tsup-bundled CLI artifact; minification is expected for this linting tools package. | ai | |
| source-diff | obfuscated-file:bin/dist-CCESLB2R.js | AI (source-diff): Standard tsup-bundled CLI artifact (ESM variant); minification is expected for this linting tools package. | ai | |
| source-diff | obfuscated-file:bin/dist-MHNJ3OEL.cjs | AI (source-diff): Standard tsup-bundled CLI artifact; minification is expected for this linting tools package. | ai | |
| source-diff | obfuscated-file:bin/dist-4FGVKHWK.js | AI (source-diff): ESM counterpart of the same tsup bundle; same rationale applies. | ai | |
| source-diff | obfuscated-file:bin/dist-NL63INKN.cjs | AI (source-diff): Standard tsup/esbuild bundle output; readable module paths confirm legitimate bundled dependencies. | ai | |
| source-diff | obfuscated-file:bin/dist-KGN7PNLO.js | AI (source-diff): Standard tsup ESM bundle output; same pattern as CJS counterpart, stable for this package. | ai | |
| source-diff | obfuscated-file:bin/dist-RMMG4RJ4.cjs | AI (source-diff): Standard tsup bundle output for a linting CLI; pattern is stable across versions of this package. | ai | |
| source-diff | obfuscated-file:bin/dist-RWDY5X6T.js | AI (source-diff): Standard tsup/esbuild bundle output for a linting CLI; not obfuscation. | ai | |
| source-diff | obfuscated-file:bin/dist-Z5LQ3WIL.cjs | AI (source-diff): Standard tsup/esbuild bundle output for a linting CLI; not obfuscation. | ai | |
| semgrep | semgrep:child-process-import | AI (semgrep): Linting tool that spawns external linters; child_process is expected and stable across versions. | ai | |
| semgrep | semgrep:env-spread | AI (semgrep): Subprocess env passing is standard for build/lint tools; no exfiltration pattern present. | ai | |
| phantom-deps | phantom-dep:@angular-devkit/architect | AI (phantom-deps): Declared runtime dep; referenced in config files as documented. | ai | |
| phantom-deps | phantom-dep:jiti | AI (phantom-deps): jiti is a declared runtime dependency used indirectly via config loading. | ai | |
| semgrep | semgrep:api-obfuscation-reflect | AI (semgrep): Reflect.get in Proxy/polyfill pattern; standard in bundled third-party libs. | ai | |
| semgrep | semgrep:base64-decode | AI (semgrep): Base64 decode in bundled utility code; no network send or obfuscation context. | ai | |
| semgrep | semgrep:env-bulk-read | AI (semgrep): Reads debug_ prefixed env vars only; standard debug library pattern. | ai |
Versions (showing 87 of 187)
| Version | Deps | Published |
|---|---|---|
| 1.132.102 | 2 / 28 | |
| 1.132.100 | 2 / 28 | |
| 1.132.99 | 2 / 28 | |
| 1.132.98 | 2 / 28 | |
| 1.132.97 | 2 / 28 | |
| 1.132.96 | 2 / 28 | |
| 1.132.95 | 2 / 28 | |
| 1.132.94 | 2 / 28 | |
| 1.132.93 | 2 / 28 | |
| 1.132.92 | 2 / 28 | |
| 1.132.91 | 2 / 28 | |
| 1.132.90 | 2 / 28 | |
| 1.132.89 | 2 / 28 | |
| 1.132.88 | 2 / 28 | |
| 1.132.87 | 2 / 28 | |
| 1.132.86 | 2 / 28 | |
| 1.132.85 | 2 / 28 | |
| 1.132.84 | 2 / 28 | |
| 1.132.83 | 2 / 28 | |
| 1.132.82 | 2 / 28 | |
| 1.132.81 | 2 / 28 | |
| 1.132.80 | 2 / 28 | |
| 1.132.79 | 2 / 28 | |
| 1.132.78 | 2 / 28 | |
| 1.132.77 | 2 / 28 | |
| 1.132.76 | 2 / 28 | |
| 1.132.75 | 2 / 28 | |
| 1.132.74 | 2 / 28 | |
| 1.132.73 | 2 / 28 | |
| 1.132.72 | 2 / 28 | |
| 1.132.71 | 2 / 28 | |
| 1.132.70 | 2 / 28 | |
| 1.132.69 | 2 / 28 | |
| 1.132.68 | 2 / 28 | |
| 1.132.67 | 2 / 28 | |
| 1.132.66 | 2 / 28 | |
| 1.132.65 | 2 / 28 | |
| 1.132.64 | 2 / 28 | |
| 1.132.63 | 2 / 28 | |
| 1.132.62 | 2 / 28 | |
| 1.132.61 | 2 / 28 | |
| 1.132.60 | 2 / 28 | |
| 1.132.59 | 2 / 28 | |
| 1.132.58 | 2 / 28 | |
| 1.132.57 | 2 / 28 | |
| 1.132.56 | 2 / 28 | |
| 1.132.55 | 2 / 28 | |
| 1.132.54 | 2 / 28 | |
| 1.132.53 | 2 / 28 | |
| 1.132.52 | 2 / 28 | |
| 1.132.51 | 2 / 28 | |
| 1.132.50 | 2 / 28 | |
| 1.132.49 | 2 / 28 | |
| 1.132.48 | 2 / 28 | |
| 1.132.47 | 2 / 28 | |
| 1.132.46 | 2 / 28 | |
| 1.132.45 | 2 / 28 | |
| 1.132.44 | 2 / 28 | |
| 1.132.43 | 2 / 28 | |
| 1.132.42 | 2 / 28 | |
| 1.132.41 | 2 / 28 | |
| 1.132.40 | 2 / 28 | |
| 1.132.39 | 2 / 28 | |
| 1.132.38 | 2 / 28 | |
| 1.132.37 | 2 / 28 | |
| 1.132.36 | 2 / 28 | |
| 1.132.35 | 2 / 28 | |
| 1.132.34 | 2 / 28 | |
| 1.132.33 | 2 / 28 | |
| 1.132.32 | 2 / 28 | |
| 1.132.31 | 2 / 28 | |
| 1.132.30 | 2 / 28 | |
| 1.132.29 | 2 / 28 | |
| 1.132.28 | 2 / 28 | |
| 1.132.27 | 2 / 28 | |
| 1.132.26 | 2 / 28 | |
| 1.132.25 | 2 / 28 | |
| 1.132.24 | 2 / 28 | |
| 1.132.23 | 2 / 28 | |
| 1.132.22 | 2 / 28 | |
| 1.132.21 | 2 / 28 | |
| 1.132.20 | 2 / 28 | |
| 1.132.19 | 2 / 28 | |
| 1.132.18 | 2 / 28 | |
| 1.132.16 | 1 / 28 | |
| 1.132.15 | 1 / 28 | |
| 1.132.14 | 1 / 28 |
v1.132.102
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.100
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.99
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.98
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.97
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.96
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.95
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.94
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.93
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.92
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.91
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.90
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.89
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.88
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.87
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.86
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.85
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.84
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.83
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.82
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.81
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.80
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.79
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.78
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.77
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.76
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.75
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.74
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.73
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.72
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.71
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.70
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.69
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.68
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.67
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.66
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.65
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.64
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.63
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.62
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.61
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.60
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.59
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.58
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.57
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.56
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.55
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.54
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.53
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.52
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.51
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.50
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.49
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.48
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.47
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.46
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.45
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.44
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.43
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.42
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.41
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.40
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.39
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.38
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.37
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.36
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.35
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.34
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.33
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.32
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.31
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.30
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.29
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.28
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.27
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.26
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.25
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.24
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.23
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.22
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.21
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.20
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.19
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.18
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.16
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.15
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.132.14
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.