← Home

p-retry

Retry a promise-returning or async function

25
Versions
MIT
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures gitHead linked

Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.

Maintainers

sindresorhus

Keywords

promiseretryretriesoperationfailedrejectedtryexponentialbackoffattemptasyncawaitpromisesconcurrentlyconcurrencyparallelbluebird

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
dependencies unvetted-dep:@types/retry AI (dependencies): @types/retry is intentionally included as a runtime dep in [email protected] to bundle TypeScript types; this is a deliberate design choice by sindresorhus, not a security concern. ai
phantom-deps phantom-dep:@types/retry AI (phantom-deps): @types/retry is a TypeScript types package; it is not directly imported at runtime by design. This is expected behavior for this package. ai
provenance no-provenance AI (provenance): [email protected] predates widespread provenance adoption; the package is published by a highly trusted author with a long track record. Lack of provenance is not a risk signal here. ai
dependencies unvetted-dep:is-network-error AI (dependencies): is-network-error is a sindresorhus package used legitimately as a runtime dependency for network error detection in retry logic; stable false positive for this package. ai

Versions (showing 25 of 25)

Version Deps Published
8.0.0 1 / 5
7.1.1 1 / 4
7.1.0 1 / 4
7.0.0 1 / 4
6.2.1 3 / 4
6.2.0 3 / 4
6.1.0 3 / 4
6.0.0 2 / 4
5.1.2 2 / 4
5.1.1 2 / 4
5.1.0 2 / 4
5.0.0 2 / 4
4.6.2 2 / 4
4.6.1 2 / 4
4.6.0 2 / 4
4.5.0 2 / 4
4.4.0 2 / 4
4.3.0 2 / 4
4.2.0 2 / 4
4.1.0 2 / 4
4.0.0 2 / 4
3.0.1 1 / 3
3.0.0 1 / 3
2.0.0 1 / 3
1.0.0 1 / 3