← Home

posthog-react-native

51
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

watilotwixesfuziontechmariusandraben-posthogtimglrafael_posthogfraserhoppermanoelposthogrobbie-cdustinbyrnefeliperalmeidalucasheriquesfrankposthogtom-posthogadamleithpcat-phsarahxsanderspeterkirkhamposthogioannisjjoshuasnyderhuguespouillot

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
bogus-package bogus-package AI (bogus-package): Established package with 604k downloads; low-value signals are false positives. ai
source-diff obfuscated-file:dist/PostHogErrorBoundary.js AI (source-diff): Babel-transpiled output, not obfuscation; stable for this package. ai
source-diff obfuscated-file:dist/error-tracking/index.js AI (source-diff): Standard Babel/TypeScript compiled output for error-tracking feature. ai
provenance publisher-changed AI (provenance): timgl has 185 approved packages; publisher change is within PostHog org, not an external takeover. ai
maintainer-change maintainer-added AI (maintainer-change): Large PostHog org team; timgl has 133 approved packages; consistent with org-level maintainer management. ai
source-diff large-new-source-files AI (source-diff): Large file count reflects build system restructuring in an established SDK monorepo. ai
source-diff obfuscated-file:dist/posthog-rn.js AI (source-diff): Standard Babel/TypeScript compiled output; main PostHog class. ai
source-diff obfuscated-file:dist/surveys/PostHogSurveyProvider.js AI (source-diff): Standard Babel/TypeScript compiled output; survey provider component. ai
source-diff obfuscated-file:dist/surveys/components/QuestionTypes.js AI (source-diff): Standard Babel/TypeScript compiled output; survey question components. ai
source-diff obfuscated-file:dist/storage.js AI (source-diff): Standard Babel/TypeScript compiled output; storage utilities. ai
source-diff obfuscated-file:dist/surveys/components/SurveyModal.js AI (source-diff): Standard Babel/TypeScript compiled output; survey modal component. ai
source-diff obfuscated-file:dist/surveys/surveys-utils.js AI (source-diff): Standard Babel/TypeScript compiled output; survey utilities. ai
source-diff obfuscated-file:dist/surveys/components/Surveys.js AI (source-diff): Standard Babel/TypeScript compiled output; survey components. ai
source-diff obfuscated-file:dist/surveys/useActivatedSurveys.js AI (source-diff): Standard Babel/TypeScript compiled output; survey hook. ai
source-diff obfuscated-file:dist/PostHogProvider.js AI (source-diff): Standard Babel/TypeScript compiled output; React provider component. ai
source-diff obfuscated-file:dist/autocapture.js AI (source-diff): Standard Babel/TypeScript compiled output for React Native SDK; not obfuscated. ai
source-diff obfuscated-file:dist/surveys/getActiveMatchingSurveys.js AI (source-diff): Standard Babel/TypeScript compiled output; readable survey logic. ai
source-diff obfuscated-file:dist/surveys/icons.js AI (source-diff): Standard Babel/TypeScript compiled output; SVG icon components. ai
source-diff obfuscated-file:dist/index.js AI (source-diff): Standard Babel/TypeScript compiled output; re-export barrel file. ai
source-diff obfuscated-file:dist/native-deps.js AI (source-diff): Standard Babel/TypeScript compiled output; native dependency wrappers. ai
source-diff obfuscated-file:dist/tooling/posthogMetroSerializer.js AI (source-diff): Standard Babel-compiled output from PostHog's build pipeline; not malicious obfuscation. ai
source-diff obfuscated-file:dist/tooling/vendor/metro/utils.js AI (source-diff): Standard Babel-compiled output from PostHog's build pipeline; not malicious obfuscation. ai
source-diff obfuscated-file:dist/tooling/utils.js AI (source-diff): Standard Babel-compiled output from PostHog's build pipeline; not malicious obfuscation. ai

Versions (showing 51 of 179)

View all versions
Version Deps Published
4.47.0 2 / 39
4.46.32 2 / 38
4.46.31 2 / 38
4.46.30 2 / 38
4.46.29 2 / 38
4.46.28 2 / 38
4.46.27 2 / 38
4.46.26 2 / 38
4.46.25 2 / 38
4.46.24 2 / 38
4.46.23 2 / 38
4.46.22 2 / 38
4.46.21 2 / 38
4.46.20 2 / 38
4.46.19 2 / 38
4.46.18 2 / 38
4.46.17 2 / 38
4.46.16 2 / 38
4.46.15 2 / 38
4.46.14 2 / 38
4.46.13 2 / 38
4.46.12 2 / 38
4.46.11 2 / 38
4.46.10 2 / 38
4.46.9 2 / 38
4.46.8 2 / 38
4.46.7 2 / 38
4.46.6 2 / 38
4.46.5 2 / 38
4.46.4 2 / 38
4.46.3 2 / 38
4.46.2 2 / 38
4.46.1 2 / 38
4.46.0 2 / 38
4.45.16 2 / 38
4.45.15 2 / 38
4.45.14 2 / 38
4.45.13 2 / 38
4.45.12 2 / 38
4.45.11 2 / 38
4.45.10 2 / 38
4.45.9 2 / 38
4.45.8 2 / 38
4.45.7 2 / 38
4.45.6 2 / 38
4.45.5 2 / 38
4.45.4 2 / 38
4.45.3 2 / 38
4.45.2 2 / 38
4.45.1 2 / 38
4.45.0 2 / 38

v4.47.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.32

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.31

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.30

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.29

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.28

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.27

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.26

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.25

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.24

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.23

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.22

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.21

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.20

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.19

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.18

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.14

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.13

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.11

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.46.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.16

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.15

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.14

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.13

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.11

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v4.45.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.