← Home

@stryke/prisma-trpc-generator

A fork of the prisma-trpc-generator code to work in ESM with Prisma v6.

21
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

sullivanpjstormie-bot

Keywords

stryketypescriptutilitiesstorm-softwarestormsullivanpj

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Transition from stormie-bot to GitHub Actions CI is a documented CI/CD migration; SLSA provenance attestation confirms integrity. ai
source-diff obfuscated-file:dist/zod/transformer.cjs AI (source-diff): Minified Zod transformer; readable class structure, no malicious patterns. ai
source-diff obfuscated-file:dist/packages/string-format/src/acronyms.mjs AI (source-diff): ESM variant of the acronym dictionary; same benign content as the .cjs counterpart. ai
source-diff obfuscated-file:dist/packages/string-format/src/acronyms.cjs AI (source-diff): Minified build artifact (acronym dictionary); content is plainly readable and benign. ai
source-diff obfuscated-file:dist/zod/model-helpers.cjs AI (source-diff): Minified Zod model-helper logic; no obfuscation, just bundler output. ai
source-diff obfuscated-file:dist/prisma-generator.cjs AI (source-diff): Minified Prisma generator entry; content matches documented generator behavior. ai
phantom-deps phantom-dep:parenthesis AI (phantom-deps): Dependency is bundled into dist/index.mjs; phantom-dep heuristic is a false positive here. ai
phantom-deps phantom-dep:@stryke/path AI (phantom-deps): Same-org dep bundled into dist; phantom-dep heuristic is a false positive here. ai
phantom-deps phantom-dep:@stryke/fs AI (phantom-deps): Same-org dep bundled into dist; phantom-dep heuristic is a false positive here. ai
source-diff obfuscated-file:dist/index.mjs AI (source-diff): Standard ESM bundle output; imports are readable, no obfuscation/eval patterns present. ai
source-diff source-size-dropped AI (source-diff): Size drop reflects bundling format change (separate files → single .mjs bundle), not code removal. ai
phantom-deps phantom-dep:jiti AI (phantom-deps): Dependency is bundled into dist/index.mjs; phantom-dep heuristic is a false positive here. ai
phantom-deps phantom-dep:prettier AI (phantom-deps): Dependency is bundled into dist/index.mjs; phantom-dep heuristic is a false positive here. ai
phantom-deps phantom-dep:ts-morph AI (phantom-deps): Dependency is bundled into dist/index.mjs; phantom-dep heuristic is a false positive here. ai
phantom-deps phantom-dep:esbuild AI (phantom-deps): esbuild is a known runtime/binary implicit dep for bundlers; stable false positive for this package. ai
phantom-deps phantom-dep:@prisma/generator-helper AI (phantom-deps): Referenced in config files as expected for a Prisma generator; stable false positive. ai
phantom-deps phantom-dep:@prisma/internals AI (phantom-deps): Referenced in config files as expected for a Prisma generator; stable false positive. ai

Versions (showing 21 of 123)

Version Deps Published
0.12.21 10 / 3
0.12.20 10 / 3
0.12.19 10 / 3
0.12.18 10 / 3
0.12.17 10 / 3
0.12.16 10 / 3
0.12.13 10 / 3
0.12.12 10 / 3
0.12.11 10 / 3
0.12.10 10 / 3
0.12.9 10 / 3
0.12.8 10 / 3
0.12.7 10 / 3
0.12.6 10 / 3
0.12.5 8 / 3
0.12.4 7 / 4
0.12.3 7 / 4
0.12.2 7 / 4
0.12.1 7 / 4
0.12.0 7 / 4
0.11.12 7 / 4

v0.12.21

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.20

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.13

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.11

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.12.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.11.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.