← Home

@willbooster/wbfy

A tool for applying WillBooster's conventional configures to npm packages

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

exkazuu

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
dependencies unvetted-dep:minimal-promise-pool AI (dependencies): minimal-promise-pool is a small promise concurrency utility with no known advisories or malware signals; its use in this tooling package is benign. ai
phantom-deps phantom-dep:@willbooster/shared-lib AI (phantom-deps): Same-org package used in config/template files; wbfy is a configuration tool that references packages without directly importing them. Stable pattern for this package. ai
phantom-deps phantom-dep:@willbooster/shared-lib-node AI (phantom-deps): Same-org package used in config/template files; consistent with wbfy's role as a configuration management tool. ai
phantom-deps phantom-dep:lodash.clonedeep AI (phantom-deps): Referenced in config files but not directly imported; consistent with wbfy's configuration template management role. ai
phantom-deps phantom-dep:js-yaml AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:deepmerge AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:fast-glob AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:libsodium AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:smol-toml AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:zod AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:typescript AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:@octokit/core AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:libsodium-wrappers AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:fastest-levenshtein AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:minimal-promise-pool AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:simple-git AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:yargs AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:dotenv AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai
phantom-deps phantom-dep:semver AI (phantom-deps): wbfy is a config-management tool; deps referenced in config templates/files without direct import is expected behavior for this package type. ai

Versions (showing 51 of 124)

View all versions
Version Deps Published
1.9.16 15 / 20
1.9.15 15 / 20
1.9.14 15 / 20
1.9.13 15 / 20
1.9.12 15 / 20
1.9.11 15 / 20
1.9.10 15 / 20
1.9.9 15 / 20
1.9.8 15 / 20
1.9.7 15 / 20
1.9.6 15 / 20
1.9.5 15 / 20
1.9.4 15 / 20
1.9.3 15 / 20
1.9.2 15 / 20
1.9.1 15 / 20
1.9.0 15 / 20
1.8.8 15 / 20
1.8.7 15 / 20
1.8.6 15 / 20
1.8.5 15 / 20
1.8.4 15 / 20
1.8.3 15 / 20
1.8.2 15 / 20
1.8.1 15 / 20
1.8.0 15 / 20
1.7.10 15 / 20
1.7.9 15 / 20
1.7.8 15 / 20
1.7.7 15 / 20
1.7.6 15 / 20
1.7.5 15 / 20
1.7.4 15 / 20
1.7.3 15 / 20
1.7.2 15 / 20
1.7.1 15 / 20
1.7.0 15 / 20
1.6.20 15 / 20
1.6.19 15 / 20
1.6.18 15 / 20
1.6.17 15 / 20
1.6.16 15 / 20
1.6.15 15 / 20
1.6.14 15 / 20
1.6.13 15 / 20
1.6.12 15 / 20
1.6.11 15 / 20
1.6.10 15 / 20
1.6.9 15 / 20
1.6.8 15 / 20
1.6.7 15 / 20

v1.9.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.14

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.13

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.11

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.9.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.8.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.7.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.20

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.14

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.13

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.11

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.6.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.