← Home

@unocss/extractor-pug

44
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

antfuunocss-botzyyv

Keywords

unocssunocss-extractorpug

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): unocss uses GitHub Actions for automated releases; publisher change from antfu to GH Actions is the expected CI/CD pattern for this monorepo. ai

Versions (showing 44 of 44)

Version Deps Published
66.7.5 0 / 3
66.7.4 0 / 3
66.7.3 0 / 3
66.7.2 0 / 3
66.7.1 0 / 3
66.7.0 0 / 3
66.6.8 0 / 3
66.6.7 0 / 3
66.6.6 0 / 3
66.6.5 0 / 3
66.6.4 0 / 3
66.6.3 0 / 3
66.6.2 0 / 3
66.6.1 0 / 3
66.6.0 0 / 3
66.5.12 0 / 3
66.5.11 0 / 3
66.5.10 0 / 3
66.5.9 0 / 3
66.5.7 0 / 3
66.5.6 0 / 3
66.5.5 0 / 3
66.5.4 0 / 3
66.5.3 0 / 3
66.5.2 0 / 3
66.5.1 0 / 3
66.5.0 0 / 3
66.4.2 0 / 3
66.4.1 0 / 3
66.4.0 0 / 3
66.3.3 0 / 3
66.3.2 0 / 3
66.3.1 0 / 3
66.3.0 0 / 3
66.2.3 0 / 3
66.2.2 0 / 3
66.2.1 0 / 3
66.2.0 0 / 3
66.1.4 0 / 3
66.1.3 0 / 3
66.1.2 0 / 3
66.1.1 0 / 3
66.1.0 0 / 3
66.0.0 0 / 3

v66.7.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v66.7.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v66.1.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v66.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v66.0.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.