https://github.com/sigstore/sigstore-js
codesigning javascript node security supply-chain
Score: 5.298317366548036
Last synced: about 12 hours ago
JSON representation
Repository metadata:
Code-signing for npm packages
- Host: GitHub
- URL: https://github.com/sigstore/sigstore-js
- Owner: sigstore
- License: apache-2.0
- Created: 2022-05-23T21:10:15.000Z (almost 4 years ago)
- Default Branch: main
- Last Pushed: 2026-05-04T17:04:04.000Z (10 days ago)
- Last Synced: 2026-05-05T12:49:26.291Z (9 days ago)
- Topics: codesigning, javascript, node, security, supply-chain
- Language: TypeScript
- Homepage:
- Size: 7.61 MB
- Stars: 179
- Watchers: 3
- Forks: 43
- Open Issues: 21
-
Metadata Files:
- Readme: README.md
- License: LICENSE
- Code of conduct: CODE_OF_CONDUCT.md
- Codeowners: CODEOWNERS
Dependencies
package-lock.json
npm
- 475 dependencies
package.json
npm
- @tsconfig/node12 ^1.0.9 development
- @types/jest ^27.5.1 development
- @types/make-fetch-happen ^10.0.0 development
- @types/node ^18.6.5 development
- @typescript-eslint/eslint-plugin ^5.26.0 development
- @typescript-eslint/parser ^5.26.0 development
- eslint ^8.16.0 development
- eslint-config-prettier ^8.5.0 development
- eslint-plugin-prettier ^4.0.0 development
- jest ^27.5.1 development
- nock ^13.2.4 development
- prettier ^2.6.2 development
- ts-jest ^27.1.5 development
- typescript ^4.7.2 development
- make-fetch-happen ^10.1.5
.github/workflows/auto-merge.yml
actions
- dependabot/fetch-metadata c9c4182bf1b97f5224aee3906fd373f6b61b4526 composite
.github/workflows/ci.yml
actions
- actions/cache v3 composite
- actions/checkout 8ade135a41bc03ea155e62e844d188df1ea18608 composite
- actions/setup-node 5e21ff4d9bc1a8cf6de233a3057d20ec6b3fb69d composite
.github/workflows/compatibility-check.yml
actions
- actions/checkout 8ade135a41bc03ea155e62e844d188df1ea18608 composite
- actions/setup-node 5e21ff4d9bc1a8cf6de233a3057d20ec6b3fb69d composite
.github/workflows/conformance.yml
actions
- actions/checkout 8ade135a41bc03ea155e62e844d188df1ea18608 composite
- actions/setup-node 5e21ff4d9bc1a8cf6de233a3057d20ec6b3fb69d composite
- sigstore/sigstore-conformance 1abc82cdefe80bd907855d8447f903ba8b4918e0 composite
.github/workflows/dependabot-changesets.yml
actions
- feelepxyz/dependabot-changesets 088619209e26134e4817fc0e7aba82cfdc10373a composite
.github/workflows/release.yml
actions
- actions/checkout 8ade135a41bc03ea155e62e844d188df1ea18608 composite
- actions/setup-node 5e21ff4d9bc1a8cf6de233a3057d20ec6b3fb69d composite
- changesets/action f13b1baaa620fde937751f5d2c3572b9da32af23 composite
.github/workflows/scorecard.yml
actions
- actions/checkout 8ade135a41bc03ea155e62e844d188df1ea18608 composite
- actions/upload-artifact a8a3f3ad30e3422c9c7b888a15615d19a852ae32 composite
- github/codeql-action/upload-sarif cdcdbb579706841c47f7063dda365e292e5cad7a composite
- ossf/scorecard-action 08b4669551908b1024bb425080c797723083c031 composite
.github/workflows/smoke-test.yml
actions
- actions/checkout 8ade135a41bc03ea155e62e844d188df1ea18608 composite
- actions/setup-node 5e21ff4d9bc1a8cf6de233a3057d20ec6b3fb69d composite
- actions/upload-artifact a8a3f3ad30e3422c9c7b888a15615d19a852ae32 composite
packages/bundle/package.json
npm
- @sigstore/protobuf-specs ^0.2.1
packages/cli/package.json
npm
- make-fetch-happen ^13.0.0 development
- oclif ^3 development
- tslib ^2.6.1 development
- @oclif/color ^1.0.11
- @oclif/core ^2
- @oclif/plugin-help ^5
- open ^8.4.2
- openid-client ^5.5.0
- sigstore ^2.1.0
packages/client/package.json
npm
- @sigstore/jest ^0.0.0 development
- @sigstore/mock ^0.5.0 development
- @sigstore/rekor-types ^2.0.0 development
- @tufjs/repo-mock ^2.0.0 development
- @types/make-fetch-happen ^10.0.0 development
- @sigstore/bundle ^2.1.0
- @sigstore/protobuf-specs ^0.2.1
- @sigstore/sign ^2.1.0
- @sigstore/tuf ^2.2.0
packages/conformance/package.json
npm
- oclif ^3 development
- tslib ^2.6.1 development
- @oclif/core ^2
- sigstore ^2.0.0
packages/jest/package.json
npm
- @types/sigstore-jest-extended ^0.0.0
packages/jest-types/package.json
npm
packages/mock/package.json
npm
- @sigstore/rekor-types ^2.0.0 development
- make-fetch-happen ^13.0.0 development
- @peculiar/webcrypto ^1.4.3
- @peculiar/x509 ^1.9.5
- @sigstore/protobuf-specs ^0.2.1
- asn1js ^3.0.5
- bytestreamjs ^2.0.1
- canonicalize ^2.0.0
- jose ^4.14.6
- nock ^13.3.3
- pkijs ^3.0.15
- pvutils ^1.1.3
packages/mock-server/package.json
npm
- @types/express ^4.17.18 development
- oclif ^3 development
- tslib ^2.6.1 development
- @oclif/color ^1.0.11
- @oclif/core ^2
- @sigstore/mock ^0.5.0
- @tufjs/repo-mock ^2.0.0
- express 4.18.2
packages/rekor-types/package.json
npm
- json-schema-to-typescript ^13.1.1 development
- openapi-typescript-codegen ^0.25.0 development
packages/sign/package.json
npm
- @sigstore/jest ^0.0.0 development
- @sigstore/mock ^0.5.0 development
- @sigstore/rekor-types ^2.0.0 development
- @types/make-fetch-happen ^10.0.0 development
- @sigstore/bundle ^2.1.0
- @sigstore/protobuf-specs ^0.2.1
- make-fetch-happen ^13.0.0
packages/tuf/package.json
npm
- @sigstore/jest ^0.0.0 development
- @tufjs/repo-mock ^2.0.0 development
- @types/make-fetch-happen ^10.0.0 development
- @sigstore/protobuf-specs ^0.2.1
- tuf-js ^2.1.0