@aws-sdk/s3-request-presigner
[](https://www.npmjs.com/package/@aws-sdk/s3-request-presigner) [](https://www.npmjs.com/
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:@aws-sdk/middleware-sdk-s3 | AI (phantom-deps): Framework-scoped AWS SDK package loaded by convention; stable pattern for this monorepo. | ai | |
| dependencies | unvetted-dep:@aws-sdk/util-create-request | AI (dependencies): First-party AWS SDK v3 package published by the same aws-sdk-bot publisher at the same pinned version; consistent with the monorepo release pattern. | ai | |
| phantom-deps | phantom-dep:@aws-sdk/util-create-request | AI (phantom-deps): Framework-scoped AWS SDK package loaded by convention; stable pattern for this monorepo. | ai | |
| provenance | no-provenance | AI (provenance): AWS SDK packages are published by the official aws-sdk-bot with a strong track record; lack of Sigstore provenance is not a meaningful risk here. | ai | |
| dependencies | unvetted-dep:@aws-sdk/util-format-url | AI (dependencies): @aws-sdk/util-format-url is an official AWS SDK v3 package published by the same aws-sdk-bot publisher; not a real risk for this package. | ai | |
| phantom-deps | phantom-dep:tslib | AI (phantom-deps): tslib is a standard TypeScript runtime helper used across all AWS SDK v3 packages; its phantom-dep status is a known pattern for this package family. | ai | |
| phantom-deps | phantom-dep:@aws-sdk/types | AI (phantom-deps): @aws-sdk/types is a framework-scoped type package used by convention across all AWS SDK v3 packages; not a real phantom dependency risk. | ai |
Versions (showing 51 of 650)
| Version | Deps | Published |
|---|---|---|
| 3.1057.0 | 6 / 7 | |
| 3.1056.0 | 6 / 7 | |
| 3.1055.0 | 6 / 7 | |
| 3.1054.0 | 6 / 7 | |
| 3.1053.0 | 6 / 7 | |
| 3.1052.0 | 6 / 7 | |
| 3.1051.0 | 6 / 7 | |
| 3.1050.0 | 6 / 7 | |
| 3.1049.0 | 6 / 7 | |
| 3.1048.0 | 6 / 7 | |
| 3.1047.0 | 6 / 8 | |
| 3.1046.0 | 6 / 8 | |
| 3.1045.0 | 8 / 8 | |
| 3.1044.0 | 8 / 8 | |
| 3.1043.0 | 8 / 8 | |
| 3.1042.0 | 8 / 8 | |
| 3.1041.0 | 8 / 8 | |
| 3.1040.0 | 8 / 8 | |
| 3.1039.0 | 8 / 8 | |
| 3.1038.0 | 8 / 8 | |
| 3.1037.0 | 8 / 8 | |
| 3.1036.0 | 8 / 8 | |
| 3.1035.0 | 8 / 8 | |
| 3.1034.0 | 8 / 8 | |
| 3.1033.0 | 8 / 8 | |
| 3.1032.0 | 8 / 8 | |
| 3.1031.0 | 8 / 8 | |
| 3.1030.0 | 8 / 8 | |
| 3.1029.0 | 8 / 8 | |
| 3.1028.0 | 8 / 8 | |
| 3.1027.0 | 8 / 8 | |
| 3.1026.0 | 8 / 8 | |
| 3.1025.0 | 8 / 8 | |
| 3.1024.0 | 8 / 8 | |
| 3.1023.0 | 8 / 8 | |
| 3.1022.0 | 8 / 8 | |
| 3.1021.0 | 8 / 8 | |
| 3.1020.0 | 8 / 8 | |
| 3.1019.0 | 8 / 8 | |
| 3.1018.0 | 8 / 8 | |
| 3.1017.0 | 8 / 8 | |
| 3.1016.0 | 8 / 8 | |
| 3.1015.0 | 8 / 8 | |
| 3.1014.0 | 8 / 8 | |
| 3.1013.0 | 8 / 8 | |
| 3.1012.0 | 8 / 8 | |
| 3.1011.0 | 8 / 8 | |
| 3.1010.0 | 8 / 8 | |
| 3.1009.0 | 8 / 8 | |
| 3.1008.0 | 8 / 8 | |
| 3.1007.0 | 8 / 8 |
v3.1057.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1056.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1055.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1054.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1053.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1052.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1051.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1050.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1049.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1048.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1047.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1046.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1045.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1044.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1043.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1042.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1041.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1040.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1039.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1038.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1037.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1036.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1035.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1033.0
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.