← Home

@stryke/hash

51
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

sullivanpjstormie-bot

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Transition from stormie-bot to GitHub Actions is a CI/CD migration within the same storm-software org, corroborated by SLSA provenance attestation on this and likely future versions. ai
publish-pattern new-deps-added AI (publish-pattern): All new deps (@stryke/fs, @stryke/json, @stryke/type-checks) are same-org @stryke scoped packages from the storm-software/stryke monorepo — routine internal dependency additions. ai
typosquat typosquat.levenshtein:hapi AI (typosquat): @stryke/hash is a scoped hashing utility in the storm-software monorepo; the levenshtein match to 'hapi' is coincidental and not an impersonation attempt. ai
phantom-deps phantom-dep:@stryke/fs AI (phantom-deps): Same-org sibling package in the @stryke monorepo; indirect usage or re-export is expected across the ecosystem. ai
phantom-deps phantom-dep:@stryke/json AI (phantom-deps): Same-org sibling package in the @stryke monorepo; indirect usage or re-export is expected across the ecosystem. ai
phantom-deps phantom-dep:@stryke/type-checks AI (phantom-deps): Same-org sibling package in the @stryke monorepo; indirect usage or re-export is expected across the ecosystem. ai

Versions (showing 51 of 127)

View all versions
Version Deps Published
0.13.52 5 / 2
0.13.51 5 / 2
0.13.50 5 / 2
0.13.49 5 / 2
0.13.48 5 / 2
0.13.47 5 / 2
0.13.46 5 / 2
0.13.45 5 / 2
0.13.44 5 / 2
0.13.43 5 / 2
0.13.42 5 / 2
0.13.41 5 / 2
0.13.40 5 / 2
0.13.39 5 / 2
0.13.38 5 / 2
0.13.37 5 / 2
0.13.36 5 / 2
0.13.35 5 / 2
0.13.34 5 / 2
0.13.33 5 / 2
0.13.32 5 / 2
0.13.31 5 / 2
0.13.30 5 / 2
0.13.29 5 / 2
0.13.28 5 / 2
0.13.27 5 / 2
0.13.26 5 / 2
0.13.25 5 / 2
0.13.24 5 / 2
0.13.23 5 / 2
0.13.22 5 / 2
0.13.21 5 / 2
0.13.20 5 / 2
0.13.19 5 / 2
0.13.18 5 / 2
0.13.17 5 / 2
0.13.16 5 / 2
0.13.15 5 / 2
0.13.14 5 / 2
0.13.13 5 / 2
0.13.12 5 / 2
0.13.11 5 / 2
0.13.10 5 / 2
0.13.9 5 / 2
0.13.8 5 / 2
0.13.7 5 / 2
0.13.6 5 / 2
0.13.3 5 / 2
0.13.2 5 / 2
0.13.1 5 / 2
0.13.0 5 / 2

v0.13.52

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.13.51

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.13.50

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.13.49

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.13.48

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.13.47

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.13.46

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.