@wix/editor-application
tbd
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): Wix org-wide migration to wix-ci-publisher CI account; consistent with 2565 other approved packages from same publisher. | ai | |
| maintainer-change | maintainer-removed | AI (maintainer-change): Part of Wix CI publisher consolidation; not indicative of takeover. | ai | |
| provenance | no-provenance | AI (provenance): Wix CI publisher consistently publishes without Sigstore provenance; stable pattern across all versions. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Internal Wix monorepo package; missing README/repo/keywords is expected for private org packages published to npm. | ai |
Versions (showing 100 of 226)
| Version | Deps | Published |
|---|---|---|
| 1.459.0 | 4 / 8 | |
| 1.458.0 | 4 / 8 | |
| 1.457.0 | 4 / 8 | |
| 1.456.0 | 4 / 8 | |
| 1.455.0 | 4 / 8 | |
| 1.454.0 | 4 / 8 | |
| 1.453.0 | 4 / 8 | |
| 1.452.0 | 4 / 8 | |
| 1.451.0 | 4 / 8 | |
| 1.450.0 | 4 / 8 | |
| 1.449.0 | 4 / 8 | |
| 1.448.0 | 4 / 8 | |
| 1.447.0 | 4 / 8 | |
| 1.446.0 | 4 / 8 | |
| 1.445.0 | 4 / 8 | |
| 1.444.0 | 4 / 8 | |
| 1.443.0 | 4 / 8 | |
| 1.442.0 | 4 / 8 | |
| 1.441.0 | 4 / 8 | |
| 1.440.0 | 4 / 8 | |
| 1.439.0 | 4 / 8 | |
| 1.438.0 | 4 / 8 | |
| 1.437.0 | 4 / 8 | |
| 1.436.0 | 4 / 8 | |
| 1.435.0 | 4 / 8 | |
| 1.434.0 | 4 / 8 | |
| 1.433.0 | 4 / 8 | |
| 1.432.0 | 4 / 8 | |
| 1.431.0 | 4 / 8 | |
| 1.430.0 | 4 / 8 | |
| 1.429.0 | 4 / 8 | |
| 1.428.0 | 4 / 8 | |
| 1.427.0 | 4 / 8 | |
| 1.426.0 | 4 / 8 | |
| 1.425.0 | 4 / 8 | |
| 1.424.0 | 4 / 8 | |
| 1.423.0 | 4 / 8 | |
| 1.422.0 | 4 / 8 | |
| 1.421.0 | 4 / 8 | |
| 1.420.0 | 4 / 8 | |
| 1.419.0 | 4 / 8 | |
| 1.418.0 | 4 / 8 | |
| 1.416.0 | 4 / 8 | |
| 1.415.0 | 4 / 8 | |
| 1.414.0 | 4 / 8 | |
| 1.413.0 | 4 / 8 | |
| 1.412.0 | 4 / 8 | |
| 1.411.0 | 4 / 8 | |
| 1.410.0 | 4 / 8 | |
| 1.409.0 | 4 / 8 | |
| 1.408.0 | 4 / 8 | |
| 1.407.0 | 4 / 8 | |
| 1.406.0 | 4 / 8 | |
| 1.405.0 | 4 / 8 | |
| 1.404.0 | 4 / 8 | |
| 1.403.0 | 4 / 8 | |
| 1.402.0 | 4 / 8 | |
| 1.401.0 | 4 / 8 | |
| 1.400.0 | 4 / 8 | |
| 1.399.0 | 4 / 8 | |
| 1.398.0 | 4 / 8 | |
| 1.397.0 | 4 / 8 | |
| 1.396.0 | 4 / 8 | |
| 1.395.0 | 4 / 8 | |
| 1.394.0 | 4 / 8 | |
| 1.393.0 | 5 / 9 | |
| 1.392.0 | 5 / 9 | |
| 1.391.0 | 5 / 9 | |
| 1.390.0 | 5 / 9 | |
| 1.389.0 | 5 / 9 | |
| 1.388.0 | 5 / 9 | |
| 1.387.0 | 5 / 9 | |
| 1.386.0 | 5 / 9 | |
| 1.385.0 | 5 / 9 | |
| 1.384.0 | 5 / 9 | |
| 1.383.0 | 5 / 9 | |
| 1.382.0 | 5 / 9 | |
| 1.381.0 | 5 / 9 | |
| 1.380.0 | 5 / 9 | |
| 1.379.0 | 5 / 9 | |
| 1.378.0 | 5 / 9 | |
| 1.377.0 | 5 / 9 | |
| 1.376.0 | 5 / 9 | |
| 1.375.0 | 5 / 9 | |
| 1.374.0 | 5 / 9 | |
| 1.373.0 | 5 / 9 | |
| 1.372.0 | 5 / 9 | |
| 1.371.0 | 5 / 9 | |
| 1.370.0 | 5 / 9 | |
| 1.369.0 | 5 / 9 | |
| 1.368.0 | 5 / 9 | |
| 1.367.0 | 5 / 9 | |
| 1.366.0 | 5 / 9 | |
| 1.365.0 | 5 / 9 | |
| 1.364.0 | 5 / 9 | |
| 1.363.0 | 5 / 9 | |
| 1.362.0 | 5 / 9 | |
| 1.361.0 | 5 / 9 | |
| 1.360.0 | 5 / 9 | |
| 1.359.0 | 5 / 9 |
v1.459.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.458.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.457.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.456.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.455.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.454.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.453.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.452.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.451.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.450.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.449.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.448.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.447.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.446.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.445.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.444.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.443.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.393.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.392.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.391.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.390.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.389.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.388.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.387.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.386.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.385.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.384.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.383.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.382.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.381.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.380.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.379.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.378.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.377.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.376.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.375.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.374.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.373.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.372.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.371.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.370.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.369.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.368.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.367.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.366.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.365.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.364.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.363.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.362.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.361.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.360.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.359.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.