← Home

vue-jsx-vapor

Vapor Mode of Vue JSX

8
Versions
MIT
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

zmjs

Keywords

unpluginvitewebpackrolluptransformvue-jsxvolarvapor

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
dependencies unvetted-dep:ts-macro AI (dependencies): Vue tooling ecosystem dep; no malware indicators, stable package context. ai
dependencies unvetted-dep:@vue-macros/volar AI (dependencies): Vue Macros volar integration; expected dependency for this Vue JSX tooling package. ai
dependencies unvetted-peer-dep:@nuxt/schema AI (dependencies): Optional peer dep for Nuxt integration; runs in consumer's app, not bundled. Stable for this package. ai
dependencies unvetted-dep:@vue-jsx-vapor/macros AI (dependencies): First-party scoped package from the same vuejs org project; stable across versions. ai
dependencies unvetted-dep:@vue-jsx-vapor/runtime AI (dependencies): First-party scoped package from the same vuejs org project; stable across versions. ai
dependencies unvetted-dep:@vue-jsx-vapor/compiler-rs AI (dependencies): First-party scoped package from the same vuejs org project; stable across versions. ai

Versions (showing 8 of 8)

Version Deps Published
3.2.11 8 / 4
3.2.10 8 / 4
3.2.8 8 / 4
3.2.7 8 / 4
3.2.6 8 / 4
3.1.17 8 / 4
3.1.12 8 / 3
3.1.0 9 / 2

v3.2.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.2.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.2.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.2.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.1.17

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.1.12

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v3.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.