← Home

react-responsive-modal

3
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

leopradel

Keywords

flexmobilemodalreactresponsive

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance publisher-changed AI (provenance): Transition to GitHub Actions CI publishing with SLSA provenance attestation; consistent with legitimate automation migration. ai
provenance missing-githead AI (provenance): gitHead absent because CI publish flow changed; SLSA attestation provides stronger commit linkage than gitHead. ai
publish-pattern dormant-publish AI (publish-pattern): 255-day gap followed by a CI-attested publish on an established package; consistent with normal maintenance cadence. ai
provenance no-provenance AI (provenance): Established package with long history; lack of provenance is common and not a risk signal here. ai

Versions (showing 3 of 3)

Version Deps Published
7.2.0 3 / 22
7.1.0 3 / 22
7.0.0 3 / 22