@taiga-ui/addon-commerce
Extension package for Taiga UI related to commerce, payment systems, currencies etc.
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:tslib | AI (phantom-deps): tslib is a declared runtime dependency in package.json; phantom-dep false positive for this package. | ai | |
| source-diff | obfuscated-file:esm2022/types/currency-code.mjs | AI (source-diff): Large ISO 4217 enum data file; long lines are data, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2022/types/currency.mjs | AI (source-diff): Large ISO 4217 enum data file; long lines are data, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2022/pipes/decimal/decimal.pipe.mjs | AI (source-diff): Angular ESM2022 build artifact with inline sourcemap; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2022/utils/get-code-by-currency.mjs | AI (source-diff): Currency dictionary mapping; long lines are data, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2022/utils/get-currency-by-code.mjs | AI (source-diff): Currency dictionary mapping; long lines are data, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2022/utils/get-currency-symbol.mjs | AI (source-diff): Currency symbol switch statement; long lines are data, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2022/utils/get-payment-system.mjs | AI (source-diff): Payment BIN table data; long lines are data, not obfuscation. | ai | |
| source-diff | obfuscated-file:esm2022/pipes/amount/amount.pipe.mjs | AI (source-diff): Angular ESM2022 build artifact with inline sourcemap; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2022/components/input-card-group/input-card-group.options.mjs | AI (source-diff): Angular component options ESM2022 build artifact; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2022/components/input-card-group/input-card-group.providers.mjs | AI (source-diff): Angular component providers ESM2022 build artifact; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2022/components/input-card/input-card.component.mjs | AI (source-diff): Angular component ESM2022 build artifact; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2022/components/input-cvc/input-cvc.directive.mjs | AI (source-diff): Angular directive ESM2022 build artifact; not obfuscated. | ai | |
| source-diff | obfuscated-file:esm2022/constants/mask-card-holder.mjs | AI (source-diff): Angular constants ESM2022 build artifact; not obfuscated. | ai | |
| source-diff | large-new-source-files | AI (source-diff): New files are ESM2022 per-file build outputs added alongside existing fesm2022 bundle; expected for Angular library restructuring. | ai | |
| source-diff | source-size-tripled | AI (source-diff): Size increase explained by addition of per-file ESM2022 outputs; no injected payload. | ai | |
| source-diff | obfuscated-file:esm2022/components/input-card-group/input-card-group.component.mjs | AI (source-diff): Angular component ESM2022 build artifact; not obfuscated. | ai |
Versions (showing 53 of 53)
| Version | Deps | Published |
|---|---|---|
| 5.16.0 | 1 / 0 | |
| 5.15.0 | 1 / 0 | |
| 5.14.0 | 1 / 0 | |
| 5.13.0 | 1 / 0 | |
| 5.12.0 | 1 / 0 | |
| 5.11.0 | 1 / 0 | |
| 5.10.0 | 1 / 0 | |
| 5.9.0 | 1 / 0 | |
| 5.8.0 | 1 / 0 | |
| 5.7.0 | 1 / 0 | |
| 5.6.0 | 1 / 0 | |
| 5.5.0 | 1 / 0 | |
| 5.4.0 | 1 / 0 | |
| 5.3.0 | 1 / 0 | |
| 5.2.0 | 1 / 0 | |
| 5.1.0 | 1 / 0 | |
| 5.0.0 | 1 / 0 | |
| 4.91.0 | 1 / 0 | |
| 4.90.0 | 1 / 0 | |
| 4.89.0 | 1 / 0 | |
| 4.88.0 | 1 / 0 | |
| 4.87.0 | 1 / 0 | |
| 4.86.0 | 1 / 0 | |
| 4.85.0 | 1 / 0 | |
| 4.84.0 | 1 / 0 | |
| 4.83.0 | 1 / 0 | |
| 4.82.0 | 1 / 0 | |
| 4.81.0 | 1 / 0 | |
| 4.80.1 | 1 / 0 | |
| 4.80.0 | 1 / 0 | |
| 4.79.0 | 1 / 0 | |
| 4.78.1 | 1 / 0 | |
| 4.78.0 | 1 / 0 | |
| 4.77.0 | 1 / 0 | |
| 4.76.0 | 1 / 0 | |
| 4.75.0 | 1 / 0 | |
| 4.74.1 | 1 / 0 | |
| 4.74.0 | 1 / 0 | |
| 4.73.0 | 1 / 0 | |
| 4.72.0 | 1 / 0 | |
| 4.71.1 | 1 / 0 | |
| 4.71.0 | 1 / 0 | |
| 4.70.0 | 1 / 0 | |
| 4.69.0 | 1 / 0 | |
| 4.68.0 | 1 / 0 | |
| 4.67.0 | 1 / 0 | |
| 4.66.0 | 1 / 0 | |
| 4.65.0 | 1 / 0 | |
| 4.64.0 | 1 / 0 | |
| 4.63.0 | 1 / 0 | |
| 4.62.1 | 1 / 0 | |
| 4.62.0 | 1 / 0 | |
| 4.61.0 | 1 / 0 |
v5.16.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v5.15.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v5.14.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v5.13.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v4.91.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v4.90.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v4.89.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.