@uniswap/ai-toolkit-linear-task-utils
CLI tool to query Linear issues for autonomous Claude Code task processing
22
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
gitHead linked
Maintainers
uniswap-labs-service-accountuniswap-labs-owner-account
Keywords
linearclaudeai-toolkitgithub-actionsautomation
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): Transition to GitHub Actions publisher with SLSA provenance is expected CI/CD pattern for Uniswap monorepo. | ai | |
| source-diff | obfuscated-file:dist/cli.cjs | AI (source-diff): Standard esbuild bundle output; bundled node_modules produce long lines. Not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index.cjs | AI (source-diff): Standard esbuild bundle output; bundled node_modules produce long lines. Not malicious obfuscation. | ai | |
| phantom-deps | phantom-dep:tslib | AI (phantom-deps): tslib is a known implicit runtime dep for TypeScript compiled output; not directly imported. | ai | |
| phantom-deps | phantom-dep:minimist | AI (phantom-deps): minimist is bundled into dist/cli.cjs; phantom-dep heuristic fires because it's not directly imported in source. | ai |
Versions (showing 22 of 22)
| Version | Deps | Published |
|---|---|---|
| 0.0.22 | 3 / 1 | |
| 0.0.21 | 3 / 1 | |
| 0.0.20 | 3 / 1 | |
| 0.0.19 | 3 / 1 | |
| 0.0.18 | 3 / 1 | |
| 0.0.17 | 3 / 1 | |
| 0.0.16 | 3 / 1 | |
| 0.0.15 | 3 / 1 | |
| 0.0.14 | 3 / 1 | |
| 0.0.13 | 3 / 1 | |
| 0.0.12 | 3 / 1 | |
| 0.0.11 | 3 / 1 | |
| 0.0.10 | 3 / 1 | |
| 0.0.9 | 3 / 1 | |
| 0.0.8 | 3 / 1 | |
| 0.0.7 | 3 / 1 | |
| 0.0.6 | 3 / 1 | |
| 0.0.5 | 3 / 1 | |
| 0.0.4 | 3 / 1 | |
| 0.0.3 | 3 / 1 | |
| 0.0.2 | 3 / 1 | |
| 0.0.1 | 0 / 0 |
v0.0.22
1 finding
INFO
Has SLSA provenance attestation
provenance
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.