@zthun/bouncer-web
A documentation website for showing bouncer.
6
Versions
MIT
License
No
Install Scripts
Missing
Provenance
Supply chain provenance
Status for the latest visible version.
No SLSA provenance
npm registry signatures
gitHead linked
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
zthun
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| source-diff | obfuscated-file:dist/assets/index-Bh7BydIy.js | AI (source-diff): Standard Vite build output (minified bundle); not obfuscated malware. Stable pattern for this frontend docs package. | ai | |
| source-diff | net-exec-file:dist/assets/index-Bh7BydIy.js | AI (source-diff): Network calls are Vite modulepreload polyfill fetch(); no dynamic code execution beyond normal module loading. | ai | |
| source-diff | net-exec-file:dist/assets/index-Bq0BnaM9.js | AI (source-diff): Vite-bundled SPA asset; fetch+dynamic-module pattern is standard browser modulepreload polyfill, not malware. | ai | |
| source-diff | net-exec-file:dist/assets/index-BvKA1Ynh.js | AI (source-diff): Vite-bundled frontend asset; fetch() is a modulepreload polyfill, not malicious network+exec. | ai | |
| source-diff | source-size-tripled | AI (source-diff): Size increase is from bundling React and deps into a single Vite dist asset for a documentation site. | ai |