@varlock/proton-pass-plugin
Varlock plugin to load secrets from Proton Pass using the Proton Pass CLI
4
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
No source commit
Maintainers
philmillmantheo
Keywords
varlockpluginvarlock-pluginprotonproton-passsecretsenv.envdotenvenvironment variablesconfig
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| npm-metadata | suspicious-initial-version | AI (npm-metadata): Monorepo stub package published at 0.0.0 to reserve namespace; not a throwaway malicious package. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Tiny payload and no deps are expected for a placeholder stub in a monorepo workspace. | ai |