@thisisagile/easy-test
Straightforward library for testing microservices built with @thisisagile/easy
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:jest | AI (phantom-deps): Jest loaded via config; stable pattern for test packages. | ai | |
| phantom-deps | phantom-dep:ts-jest | AI (phantom-deps): Jest preset loaded via config; stable pattern for test packages. | ai | |
| phantom-deps | phantom-dep:jest-junit | AI (phantom-deps): Jest reporter loaded via config; stable pattern for test packages. | ai | |
| phantom-deps | phantom-dep:@types/jest | AI (phantom-deps): @types/* loaded by convention; stable for test packages. | ai | |
| phantom-deps | phantom-dep:@types/node | AI (phantom-deps): @types/* loaded by convention; stable for test packages. | ai | |
| phantom-deps | phantom-dep:jest-sonar-reporter | AI (phantom-deps): Jest reporter loaded via config; stable pattern for test packages. | ai |
Versions (showing 51 of 90)
| Version | Deps | Published |
|---|---|---|
| 18.4.0 | 8 / 2 | |
| 18.3.0 | 8 / 2 | |
| 18.2.0 | 8 / 2 | |
| 18.1.2 | 8 / 2 | |
| 18.1.1 | 8 / 2 | |
| 18.1.0 | 8 / 2 | |
| 18.0.1 | 8 / 2 | |
| 18.0.0 | 8 / 2 | |
| 17.36.0 | 8 / 2 | |
| 17.35.0 | 8 / 2 | |
| 17.34.4 | 8 / 2 | |
| 17.34.3 | 8 / 2 | |
| 17.34.2 | 8 / 2 | |
| 17.34.1 | 8 / 2 | |
| 17.34.0 | 8 / 2 | |
| 17.33.0 | 8 / 2 | |
| 17.32.0 | 8 / 2 | |
| 17.31.1 | 8 / 2 | |
| 17.31.0 | 8 / 2 | |
| 17.30.11 | 8 / 2 | |
| 17.30.10 | 8 / 2 | |
| 17.30.9 | 8 / 2 | |
| 17.30.8 | 8 / 2 | |
| 17.30.7 | 8 / 2 | |
| 17.30.6 | 8 / 2 | |
| 17.30.5 | 8 / 2 | |
| 17.30.4 | 8 / 2 | |
| 17.30.3 | 8 / 2 | |
| 17.30.2 | 8 / 2 | |
| 17.30.1 | 8 / 2 | |
| 17.30.0 | 8 / 2 | |
| 17.29.0 | 8 / 2 | |
| 17.28.0 | 8 / 2 | |
| 17.27.3 | 8 / 2 | |
| 17.27.2 | 8 / 2 | |
| 17.27.1 | 8 / 2 | |
| 17.27.0 | 8 / 2 | |
| 17.26.4 | 8 / 2 | |
| 17.26.3 | 8 / 2 | |
| 17.26.2 | 8 / 2 | |
| 17.26.1 | 8 / 2 | |
| 17.26.0 | 8 / 2 | |
| 17.25.3 | 8 / 2 | |
| 17.25.2 | 8 / 2 | |
| 17.25.1 | 8 / 2 | |
| 17.25.0 | 8 / 2 | |
| 17.24.3 | 8 / 2 | |
| 17.24.2 | 8 / 2 | |
| 17.24.1 | 8 / 2 | |
| 17.24.0 | 8 / 2 | |
| 17.23.1 | 8 / 2 |
v18.4.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v18.3.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v18.2.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v18.1.2
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v18.1.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v18.1.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v18.0.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v18.0.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.36.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.35.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.34.4
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.34.3
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.34.2
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.34.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.34.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.33.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.32.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.31.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.31.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.11
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.10
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.9
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.8
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.7
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.6
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.5
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.4
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.3
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.2
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.30.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.29.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.28.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.27.3
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.27.2
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.27.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.27.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.26.4
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.26.3
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.26.2
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.26.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.26.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.25.3
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.25.2
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.25.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.25.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.24.3
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.24.2
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.24.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.24.0
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v17.23.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.