← Home

react-native-test-app

react-native-test-app provides a test app for all supported platforms as a package

8
Versions
MIT
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures gitHead linked

Maintainers

microsoft1esmicrosoft-oss-releasestido64

Keywords

androidappiosmacosreactreact-nativetesttest-apptestingwindows

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
semgrep semgrep:dynamic-require AI (semgrep): Path-walking helper that resolves a module by traversing directories; not user-controlled arbitrary load. ai
dependencies unvetted-dep:@rnx-kit/react-native-host AI (dependencies): Same Microsoft @rnx-kit org; expected companion dependency for this package. ai
dependencies unvetted-dep:@rnx-kit/tools-react-native AI (dependencies): Same Microsoft @rnx-kit org; expected companion dependency for this package. ai

Versions (showing 8 of 8)

Version Deps Published
5.1.8 7 / 24
5.1.7 7 / 24
5.1.6 7 / 24
5.1.5 7 / 24
5.1.4 7 / 24
5.1.3 7 / 24
5.1.2 8 / 25
5.1.1 8 / 26

v5.1.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.1.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.1.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.1.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.1.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.1.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.1.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v5.1.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.