@tanstack/solid-start-server
51
Versions
—
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
No source commit
Maintainers
tannerlinsleyalemtuzlakkevinvandy
Keywords
solidlocationrouterroutingasyncasync routertypescript
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:jsesc | AI (phantom-deps): Config-referenced dependency; stable for framework packages. | ai | |
| phantom-deps | phantom-dep:unctx | AI (phantom-deps): Config-referenced dependency; stable for framework packages. | ai | |
| phantom-deps | phantom-dep:h3 | AI (phantom-deps): Config-referenced dependency; stable for framework packages. | ai | |
| phantom-deps | phantom-dep:tiny-warning | AI (phantom-deps): Config-referenced dependency; stable for framework packages. | ai | |
| provenance | publisher-changed | AI (provenance): Publisher changed from tannerlinsley to GitHub Actions as part of a deliberate move to automated CI/CD publishing with SLSA provenance. This is a security improvement, not a compromise indicator. | ai | |
| maintainer-change | maintainer-added | AI (maintainer-change): lachlancollins is a known TanStack contributor; addition is consistent with legitimate team growth alongside the move to automated publishing. | ai | |
| dependencies | unvetted-dep:@solidjs/meta | AI (dependencies): Well-known SolidJS ecosystem package for head/meta management; expected dep for a SolidJS meta-framework. | ai | |
| phantom-deps | phantom-dep:@solidjs/meta | AI (phantom-deps): Referenced in config files for meta-framework head management; not a direct import but a legitimate declared dependency. | ai | |
| phantom-deps | phantom-dep:@tanstack/history | AI (phantom-deps): Same-org TanStack package used indirectly through router dependencies; stable pattern for this package. | ai | |
| phantom-deps | phantom-dep:@tanstack/start-client-core | AI (phantom-deps): Same-org TanStack package; indirect usage pattern is stable for this meta-framework package. | ai | |
| dependencies | unvetted-dep:@tanstack/router-core | AI (dependencies): Same-org TanStack dependency; expected transitive dep for TanStack Start packages across all versions. | ai | |
| dependencies | unvetted-dep:@tanstack/start-client-core | AI (dependencies): Same-org TanStack dependency; expected for TanStack Start server package across all versions. | ai | |
| dependencies | unvetted-dep:@tanstack/solid-router | AI (dependencies): Same-org TanStack dependency; core dependency for this SolidJS router package across all versions. | ai | |
| dependencies | unvetted-dep:@tanstack/start-server-core | AI (dependencies): Same-org TanStack dependency; expected core dep for this server package across all versions. | ai |
Versions (showing 51 of 440)
| Version | Deps | Published |
|---|---|---|
| 1.167.22 | 3 / 4 | |
| 1.167.21 | 3 / 4 | |
| 1.167.20 | 3 / 4 | |
| 1.167.19 | 3 / 4 | |
| 1.167.18 | 3 / 4 | |
| 1.167.17 | 3 / 4 | |
| 1.167.16 | 3 / 4 | |
| 1.167.15 | 3 / 4 | |
| 1.167.14 | 6 / 4 | |
| 1.167.13 | 6 / 4 | |
| 1.167.12 | 6 / 4 | |
| 1.167.11 | 6 / 4 | |
| 1.167.10 | 6 / 4 | |
| 1.167.9 | 6 / 4 | |
| 1.167.8 | 6 / 4 | |
| 1.167.7 | 6 / 4 | |
| 1.167.6 | 6 / 4 | |
| 1.167.5 | 6 / 4 | |
| 1.167.4 | 6 / 4 | |
| 1.167.3 | 6 / 4 | |
| 1.167.2 | 6 / 4 | |
| 1.167.1 | 6 / 4 | |
| 1.167.0 | 6 / 4 | |
| 1.166.51 | 6 / 4 | |
| 1.166.50 | 6 / 4 | |
| 1.166.49 | 6 / 4 | |
| 1.166.48 | 6 / 4 | |
| 1.166.47 | 6 / 4 | |
| 1.166.46 | 6 / 4 | |
| 1.166.45 | 6 / 4 | |
| 1.166.44 | 6 / 4 | |
| 1.166.43 | 6 / 4 | |
| 1.166.42 | 6 / 4 | |
| 1.166.41 | 6 / 4 | |
| 1.166.40 | 6 / 4 | |
| 1.166.39 | 6 / 4 | |
| 1.166.38 | 6 / 4 | |
| 1.166.37 | 6 / 4 | |
| 1.166.36 | 6 / 4 | |
| 1.166.35 | 6 / 4 | |
| 1.166.34 | 6 / 4 | |
| 1.166.33 | 6 / 4 | |
| 1.166.32 | 6 / 4 | |
| 1.166.31 | 6 / 4 | |
| 1.166.30 | 6 / 4 | |
| 1.166.29 | 6 / 4 | |
| 1.166.28 | 6 / 4 | |
| 1.166.27 | 6 / 4 | |
| 1.166.26 | 6 / 4 | |
| 1.166.25 | 6 / 4 | |
| 1.166.24 | 6 / 4 |
v1.167.22
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.167.21
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.