← Home

eslint-config-egg

Node.js Style Guide for EggJS

48
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

gxkleggjs-adminfengmk2atian25dead_horsewanghxhyj1991killagucoolme200mansonchor.zzwhubcarlgemwuuakitasummerpopomore

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:eslint-plugin-node AI (phantom-deps): ESLint config packages reference plugins in config files, not via require/import. This is the standard pattern; not a real phantom dep. ai
phantom-deps phantom-dep:eslint-plugin-jsdoc AI (phantom-deps): ESLint config packages reference plugins in config files, not via require/import. This is the standard pattern; not a real phantom dep. ai
phantom-deps phantom-dep:eslint-plugin-import AI (phantom-deps): ESLint config packages reference plugins in config files, not via require/import. This is the standard pattern; not a real phantom dep. ai
phantom-deps phantom-dep:eslint-plugin-eggache AI (phantom-deps): ESLint config packages reference plugins in config files, not via require/import. This is the standard pattern; not a real phantom dep. ai
phantom-deps phantom-dep:@typescript-eslint/parser AI (phantom-deps): ESLint config packages reference plugins in config files, not via require/import. This is the standard pattern; not a real phantom dep. ai
phantom-deps phantom-dep:@typescript-eslint/eslint-plugin AI (phantom-deps): ESLint config packages reference plugins in config files, not via require/import. This is the standard pattern; not a real phantom dep. ai
bogus-package bogus-package AI (bogus-package): Legitimate long-running EggJS ecosystem package published by trusted maintainer fengmk2. Original author popomore flag does not taint this package. ai

Versions (showing 48 of 48)

Version Deps Published
14.1.0 6 / 4
14.0.0 6 / 4
13.1.0 10 / 6
13.0.0 10 / 6
12.3.1 10 / 6
12.3.0 10 / 6
12.2.1 10 / 6
12.2.0 10 / 6
12.1.0 10 / 8
12.0.0 10 / 8
11.1.0 10 / 8
11.0.1 10 / 8
11.0.0 10 / 8
10.0.0 10 / 8
9.0.0 9 / 7
8.1.2 8 / 7
8.1.1 8 / 7
8.1.0 8 / 7
8.0.1 8 / 7
8.0.0 8 / 7
7.5.1 8 / 7
7.5.0 8 / 7
7.4.1 6 / 6
7.4.0 6 / 6
7.3.1 6 / 6
7.3.0 6 / 6
7.2.0 5 / 5
7.1.0 5 / 5
7.0.0 5 / 5
6.0.0 4 / 5
5.1.1 4 / 5
5.1.0 4 / 5
5.0.0 4 / 5
4.2.1 4 / 5
4.2.0 4 / 5
4.1.0 4 / 5
4.0.0 0 / 10
3.2.0 0 / 4
3.1.0 0 / 3
3.0.3 0 / 3
3.0.2 0 / 2
3.0.1 0 / 2
3.0.0 0 / 2
2.0.0 0 / 3
1.0.3 0 / 3
1.0.2 0 / 3
1.0.1 0 / 3
1.0.0 0 / 3

v14.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v14.0.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v13.1.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v13.0.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v0.2). This is the strongest supply chain integrity signal.