← Home

@workday/canvas-kit-mcp

MCP package for Canvas Kit

51
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

workday-canvas-kitmannycarrera4raisa.primerovaalanbsmithjaclynjessupjheddings

Keywords

canvascanvas-kitworkdaymcp

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Workday uses GitHub Actions with SLSA attestation for automated publishing; this is the expected CI/CD pattern for this org. ai

Versions (showing 51 of 108)

View all versions
Version Deps Published
15.1.3 3 / 13
15.1.2 3 / 13
15.1.1 3 / 13
15.1.0 3 / 13
15.0.21 3 / 13
15.0.20 3 / 13
15.0.19 3 / 13
15.0.18 3 / 13
15.0.17 3 / 13
15.0.16 3 / 13
15.0.15 3 / 13
15.0.13 3 / 13
15.0.12 3 / 13
15.0.11 3 / 13
15.0.9 3 / 13
15.0.8 3 / 13
15.0.7 3 / 13
15.0.6 3 / 13
15.0.3 3 / 13
15.0.1 3 / 13
14.3.12 3 / 13
14.3.11 3 / 13
14.3.10 1 / 6
14.3.9 1 / 6
14.3.8 1 / 6
14.3.7 1 / 6
14.3.6 1 / 6
14.3.5 1 / 6
14.3.4 1 / 6
14.3.3 1 / 6
14.3.2 1 / 6
14.3.1 1 / 6
14.3.0 1 / 6
14.2.37 1 / 6
14.2.36 1 / 6
14.2.35 1 / 6
14.2.34 1 / 6
14.2.33 1 / 6
14.2.32 1 / 6
14.2.31 1 / 6
14.2.30 1 / 6
14.2.29 1 / 6
14.2.28 1 / 6
14.2.27 1 / 6
14.2.26 1 / 6
14.2.25 1 / 6
14.2.24 1 / 6
14.2.23 1 / 6
14.2.22 1 / 6
14.2.21 1 / 6
14.2.20 1 / 6

v15.1.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.1.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.1.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.21

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.20

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v15.0.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.