eslint-plugin-react-naming-convention
ESLint React's ESLint plugin for naming convention related rules.
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| dependencies | unvetted-dep:@eslint-react/eff | AI (dependencies): @eslint-react/eff is a sibling package in the same eslint-react monorepo, always published at the same version. Not a third-party unknown dependency. | ai | |
| phantom-deps | phantom-dep:@eslint-react/var | AI (phantom-deps): @eslint-react/var is a sibling monorepo package; phantom-dep finding is benign as it's used in config/type contexts rather than direct runtime imports. | ai | |
| dependencies | unvetted-dep:@eslint-react/core | AI (dependencies): First-party sibling package from the same eslint-react monorepo, pinned to the same version. Not a third-party risk. | ai | |
| dependencies | unvetted-dep:string-ts | AI (dependencies): string-ts is a well-known TypeScript string utility library with no security concerns; stable dependency for this package. | ai | |
| phantom-deps | phantom-dep:string-ts | AI (phantom-deps): Declared in dependencies; phantom detection likely reflects type-only or indirect usage common in TypeScript monorepos. | ai | |
| dependencies | unvetted-dep:@eslint-react/ast | AI (dependencies): First-party sibling package from the same eslint-react monorepo, pinned to the same version. Not a third-party risk. | ai | |
| phantom-deps | phantom-dep:@typescript-eslint/type-utils | AI (phantom-deps): Declared in dependencies; phantom detection likely reflects type-only or indirect usage common in TypeScript monorepos. | ai | |
| phantom-deps | phantom-dep:@typescript-eslint/scope-manager | AI (phantom-deps): Declared in dependencies; phantom detection likely reflects type-only or indirect usage common in TypeScript monorepos. | ai | |
| phantom-deps | phantom-dep:compare-versions | AI (phantom-deps): Declared in dependencies; phantom detection likely reflects type-only or indirect usage common in TypeScript monorepos. | ai | |
| dependencies | unvetted-dep:@eslint-react/var | AI (dependencies): First-party sibling package from the same eslint-react monorepo, pinned to the same version. Not a third-party risk. | ai |
Versions (showing 37 of 37)
| Version | Deps | Published |
|---|---|---|
| 5.8.8 | 7 / 8 | |
| 5.8.7 | 7 / 8 | |
| 5.8.6 | 7 / 8 | |
| 5.8.5 | 7 / 8 | |
| 5.8.4 | 7 / 8 | |
| 5.8.3 | 7 / 8 | |
| 5.8.2 | 7 / 8 | |
| 5.8.1 | 7 / 8 | |
| 5.8.0 | 7 / 8 | |
| 5.7.10 | 7 / 8 | |
| 5.7.9 | 7 / 8 | |
| 5.7.8 | 7 / 8 | |
| 5.7.7 | 7 / 8 | |
| 5.7.6 | 7 / 8 | |
| 5.7.5 | 7 / 8 | |
| 5.7.4 | 7 / 8 | |
| 5.7.3 | 7 / 8 | |
| 5.7.2 | 7 / 8 | |
| 5.7.1 | 7 / 8 | |
| 5.7.0 | 7 / 8 | |
| 5.6.6 | 7 / 8 | |
| 5.6.4 | 7 / 8 | |
| 5.6.2 | 7 / 8 | |
| 5.6.0 | 7 / 8 | |
| 4.2.3 | 11 / 6 | |
| 4.2.1 | 11 / 6 | |
| 3.0.0 | 11 / 6 | |
| 2.8.0 | 12 / 4 | |
| 2.7.0 | 12 / 4 | |
| 2.6.4 | 12 / 4 | |
| 2.5.5 | 12 / 4 | |
| 2.3.13 | 11 / 4 | |
| 2.3.12 | 11 / 4 | |
| 2.3.10 | 11 / 4 | |
| 2.3.9 | 11 / 4 | |
| 2.3.5 | 11 / 4 | |
| 2.2.4 | 11 / 4 |
v5.8.8
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.8.7
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.8.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.8.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.8.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.8.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.8.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.8.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.8.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.10
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.9
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.8
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.7
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.7.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.6.6
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.6.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.6.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v5.6.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.2.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.2.1
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v3.0.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.8.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.7.0
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.6.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.5.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.3.13
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.3.12
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.3.10
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.3.9
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.3.5
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v2.2.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.