@wix/editor
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| dependencies | unvetted-dep:@wix/admin | AI (dependencies): Internal Wix dependency consistent with this package's ecosystem; stable pattern across versions. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Wix internal CI-published package; no repo/keywords/homepage is standard for their monorepo artifacts. | ai | |
| license | uncommon-license:UNLICENSED | AI (license): Proprietary Wix package; UNLICENSED is appropriate for internal corporate packages. | ai | |
| provenance | no-provenance | AI (provenance): Internal Wix package; provenance attestation is a best-practice enhancement, not a blocker. | ai | |
| dependencies | unvetted-dep:@wix/editor-platform-environment-api | AI (dependencies): Internal @wix/* scoped dep consistent with Wix ecosystem. | ai | |
| dependencies | unvetted-dep:@wix/workspace | AI (dependencies): Internal @wix/* scoped dep consistent with Wix ecosystem; stable pattern across versions. | ai | |
| dependencies | unvetted-dep:@wix/public-editor-platform-interfaces | AI (dependencies): Internal @wix/* scoped dep consistent with Wix ecosystem. | ai | |
| dependencies | unvetted-dep:@wix/editor-platform-contexts | AI (dependencies): Internal @wix/* scoped dep consistent with Wix ecosystem. | ai | |
| dependencies | unvetted-dep:@wix/monitoring-browser-sdk-host | AI (dependencies): Internal @wix/* scoped dep consistent with Wix ecosystem. | ai | |
| dependencies | unvetted-dep:@wix/public-editor-platform-errors | AI (dependencies): Internal @wix/* scoped dep consistent with Wix ecosystem. | ai |
Versions (showing 51 of 193)
| Version | Deps | Published |
|---|---|---|
| 1.560.0 | 8 / 12 | |
| 1.559.0 | 8 / 12 | |
| 1.558.0 | 8 / 12 | |
| 1.557.0 | 8 / 12 | |
| 1.556.0 | 8 / 12 | |
| 1.555.0 | 8 / 12 | |
| 1.554.0 | 8 / 12 | |
| 1.553.0 | 8 / 12 | |
| 1.552.0 | 8 / 12 | |
| 1.551.0 | 8 / 12 | |
| 1.550.0 | 8 / 12 | |
| 1.549.0 | 8 / 12 | |
| 1.548.0 | 8 / 12 | |
| 1.547.0 | 8 / 12 | |
| 1.546.0 | 8 / 12 | |
| 1.545.0 | 8 / 12 | |
| 1.544.0 | 8 / 12 | |
| 1.543.0 | 8 / 12 | |
| 1.542.0 | 8 / 12 | |
| 1.541.0 | 8 / 12 | |
| 1.540.0 | 8 / 12 | |
| 1.539.0 | 8 / 12 | |
| 1.538.0 | 8 / 12 | |
| 1.537.0 | 8 / 12 | |
| 1.536.0 | 8 / 12 | |
| 1.535.0 | 8 / 12 | |
| 1.534.0 | 8 / 12 | |
| 1.533.0 | 8 / 12 | |
| 1.532.0 | 8 / 12 | |
| 1.531.0 | 8 / 12 | |
| 1.530.0 | 8 / 12 | |
| 1.529.0 | 8 / 12 | |
| 1.528.0 | 8 / 12 | |
| 1.527.0 | 8 / 12 | |
| 1.526.0 | 8 / 12 | |
| 1.525.0 | 8 / 12 | |
| 1.524.0 | 8 / 12 | |
| 1.523.0 | 8 / 12 | |
| 1.522.0 | 8 / 12 | |
| 1.521.0 | 8 / 12 | |
| 1.520.0 | 8 / 12 | |
| 1.519.0 | 8 / 12 | |
| 1.518.0 | 8 / 12 | |
| 1.517.0 | 8 / 12 | |
| 1.516.0 | 8 / 12 | |
| 1.513.0 | 8 / 12 | |
| 1.512.0 | 8 / 12 | |
| 1.511.0 | 8 / 12 | |
| 1.510.0 | 8 / 12 | |
| 1.509.0 | 8 / 12 | |
| 1.508.0 | 8 / 12 |
v1.560.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.559.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.558.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.557.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.556.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.555.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.554.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.553.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.552.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.551.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.550.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.549.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.548.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.547.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.546.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.545.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.544.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.543.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.542.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.541.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.540.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.539.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.538.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.537.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.536.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.535.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.534.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.533.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.532.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.531.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.530.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.529.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.528.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.527.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.526.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.525.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.524.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.523.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.522.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.521.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.520.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.519.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.518.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.517.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.516.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.513.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.512.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.511.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.510.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.509.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.508.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.