← Home

@transcend-io/airgap.js-types

31
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

cami-transcendmichaelfarrell76bencmbrookdmattiaelidawson.turechekaldobarrfran-transcendkendra.taylorhtunniclifftranscend-bot

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance missing-githead AI (provenance): Package migrated to monorepo; SLSA provenance attestation present, gitHead absence is benign. ai
source-diff obfuscated-file:dist/index.d.mts AI (source-diff): Bundled TypeScript declaration file; long lines are inlined type unions, not obfuscation. Stable pattern for this package. ai
phantom-deps phantom-dep:fp-ts AI (phantom-deps): fp-ts is a declared runtime dependency in package.json; phantom-dep is a false positive for this package. ai
bogus-package bogus-package AI (bogus-package): Established Transcend types package; sparse README and no keywords are cosmetic, not spam indicators. ai

Versions (showing 31 of 31)

Version Deps Published
14.2.20 5 / 6
14.2.19 5 / 6
14.2.18 5 / 6
14.2.17 5 / 6
14.2.16 5 / 6
14.2.15 5 / 6
14.2.14 5 / 6
14.2.13 5 / 6
14.2.12 5 / 6
14.2.11 5 / 6
14.2.10 5 / 6
14.2.9 5 / 6
14.2.8 5 / 6
14.2.7 5 / 6
14.2.6 5 / 6
14.2.5 5 / 6
14.2.4 5 / 6
14.2.3 5 / 6
14.2.2 5 / 6
14.2.1 5 / 6
14.2.0 5 / 6
14.1.2 5 / 6
14.1.1 5 / 6
14.0.1 5 / 6
14.0.0 5 / 6
13.0.1 0 / 17
13.0.0 0 / 17
12.17.0 3 / 14
12.16.0 3 / 16
12.15.3 3 / 16
12.15.0 3 / 16

v14.2.20

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.14

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.13

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.2.11

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.