← Home

@workday/canvas-kit-codemod

A collection of codemods for use on Workday Canvas Kit packages.

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

workday-canvas-kitmannycarrera4raisa.primerovaalanbsmithjaclynjessupjheddingssheelah

Keywords

workdaycanvaskitcodemod

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
semgrep semgrep:child-process-import AI (semgrep): CLI codemod tool legitimately uses spawn to invoke jscodeshift; stable pattern across all versions. ai

Versions (showing 51 of 136)

View all versions
Version Deps Published
15.1.3 3 / 1
15.1.2 3 / 1
15.1.1 3 / 1
15.1.0 3 / 1
15.0.21 3 / 1
15.0.20 3 / 1
15.0.19 3 / 1
15.0.18 3 / 1
15.0.17 3 / 1
15.0.16 3 / 1
15.0.15 3 / 1
15.0.14 3 / 1
15.0.13 3 / 1
15.0.12 3 / 1
15.0.11 3 / 1
15.0.9 3 / 1
15.0.8 3 / 1
15.0.7 3 / 1
15.0.6 3 / 1
15.0.5 3 / 1
15.0.4 3 / 1
15.0.3 3 / 1
15.0.2 3 / 1
15.0.1 3 / 1
15.0.0 3 / 1
14.3.17 3 / 1
14.3.16 3 / 1
14.3.15 3 / 1
14.3.14 3 / 1
14.3.13 3 / 1
14.3.12 3 / 1
14.3.11 3 / 1
14.3.10 3 / 1
14.3.9 3 / 1
14.3.8 3 / 1
14.3.7 3 / 1
14.3.6 3 / 1
14.3.5 3 / 1
14.3.4 3 / 1
14.3.3 3 / 1
14.3.2 3 / 1
14.3.1 3 / 1
14.3.0 3 / 1
14.2.37 3 / 1
14.2.36 3 / 1
14.2.35 3 / 1
14.2.34 3 / 1
14.2.33 3 / 1
14.2.32 3 / 1
14.2.30 3 / 1
14.2.29 3 / 1

v15.1.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.1.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.1.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.21

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.20

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.14

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.3.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.