← Home

remark-preset-lint-markdown-style-guide

1
Versions
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures gitHead linked

Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.

Maintainers

johnowooormremcohaszing

Keywords

guidemarkdownpresetremarkremark-lintremark-presetstyle

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
provenance no-provenance AI (provenance): Established trusted publisher; lack of provenance is common and not a risk signal here. ai
dependencies unvetted-dep:remark-lint-definition-case AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-emphasis-marker AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-link-title-style AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-heading-increment AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-list-item-spacing AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-table-pipe-alignment AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-no-duplicate-headings AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-maximum-heading-length AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-no-emphasis-as-heading AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-no-heading-punctuation AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-no-file-name-mixed-case AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-list-item-content-indent AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-ordered-list-marker-value AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai
dependencies unvetted-dep:remark-lint-no-file-name-irregular-characters AI (dependencies): Sibling package in the remark-lint monorepo from the same trusted publisher. ai

Versions (showing 1 of 1)

Version Deps Published
6.0.1 44 / 0

v6.0.1

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.