@realtimex/node-llama-cpp-linux-arm64
Prebuilt binary for node-llama-cpp for Linux arm64
9
Versions
MIT
License
No
Install Scripts
Verified
Provenance
Supply chain provenance
Status for the latest visible version.
SLSA provenance attestation
npm registry signatures
gitHead linked
Maintainers
realtimex
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| provenance | publisher-changed | AI (provenance): Publisher changed to GitHub Actions with SLSA provenance attestation — this is an automated CI/CD publish flow, which is a security improvement over manual publishing. Stable for this package. | ai | |
| npm-metadata | bundled-binaries | AI (npm-metadata): Package is explicitly a prebuilt binary distribution for node-llama-cpp (llama.cpp bindings). The .node addon and libggml/libllama .so files are the expected artifacts for this package type. SLSA provenance attestation further validates integrity. | ai | |
| bogus-package | bogus-package | AI (bogus-package): Platform-specific prebuilt binary sub-packages routinely lack keywords, detailed READMEs, and runtime deps — they are consumed programmatically, not by end users directly. | ai |