@tsparticles/tsconfig
tsParticles default TypeScript Compiler Configuration
47
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
gitHead linked
Maintainers
matteobruni
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | missing-githead | AI (provenance): SLSA attestation present; missing gitHead is a minor metadata issue, not a security signal for this package. | ai | |
| provenance | publisher-changed | AI (provenance): Transition from personal account to GitHub Actions CI/CD is a legitimate automation pattern, strongly validated by SLSA provenance attestation from the official tsparticles org. | ai | |
| publish-pattern | dormant-publish | AI (publish-pattern): Stable tsconfig utility package rarely needs updates; SLSA provenance attestation rules out account takeover as the cause of resumed publishing. | ai | |
| provenance | slsa-provenance | AI (provenance): tsparticles ecosystem has adopted GitHub Actions CI/CD publishing with SLSA provenance; this is a stable, positive signal for all future versions. | ai | |
| phantom-deps | phantom-dep:typescript | AI (phantom-deps): This package ships TypeScript compiler configuration; typescript as a dependency without direct imports is expected and stable for this package. | ai | |
| bogus-package | bogus-package | AI (bogus-package): This is a tsconfig utility package in the tsparticles ecosystem; minimal README and no keywords are cosmetic issues, not spam indicators. | ai |
Versions (showing 47 of 47)
| Version | Deps | Published |
|---|---|---|
| 4.3.2 | 0 / 2 | |
| 4.3.1 | 0 / 2 | |
| 4.3.0 | 0 / 2 | |
| 4.2.1 | 0 / 2 | |
| 4.2.0 | 0 / 2 | |
| 4.1.3 | 0 / 2 | |
| 4.1.2 | 0 / 2 | |
| 4.1.1 | 0 / 2 | |
| 4.1.0 | 0 / 2 | |
| 4.0.5 | 0 / 2 | |
| 4.0.4 | 0 / 2 | |
| 4.0.3 | 0 / 2 | |
| 4.0.2 | 0 / 2 | |
| 4.0.1 | 0 / 2 | |
| 4.0.0 | 0 / 2 | |
| 3.4.14 | 0 / 2 | |
| 3.4.13 | 0 / 2 | |
| 3.4.12 | 0 / 2 | |
| 3.4.11 | 0 / 2 | |
| 3.4.7 | 0 / 2 | |
| 3.4.6 | 0 / 2 | |
| 3.4.5 | 0 / 2 | |
| 3.4.4 | 0 / 2 | |
| 3.4.3 | 0 / 2 | |
| 3.4.2 | 0 / 2 | |
| 3.4.1 | 0 / 2 | |
| 3.3.5 | 0 / 2 | |
| 3.3.4 | 0 / 2 | |
| 3.3.3 | 0 / 2 | |
| 3.3.2 | 0 / 2 | |
| 3.3.1 | 0 / 2 | |
| 3.3.0 | 0 / 2 | |
| 3.2.0 | 1 / 1 | |
| 3.1.9 | 1 / 1 | |
| 3.1.8 | 1 / 1 | |
| 3.1.7 | 1 / 1 | |
| 3.1.6 | 1 / 1 | |
| 3.1.4 | 1 / 0 | |
| 3.1.0 | 1 / 0 | |
| 3.0.14 | 1 / 0 | |
| 3.0.9 | 1 / 0 | |
| 3.0.8 | 1 / 0 | |
| 3.0.6 | 1 / 0 | |
| 3.0.5 | 1 / 0 | |
| 3.0.4 | 1 / 0 | |
| 3.0.1 | 1 / 0 | |
| 3.0.0 | 1 / 0 |
v4.3.2
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.3.1
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.3.0
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.