openteamsinc
npm/@sigstore/core
Risk Profile
Package
Source
Risk Profile
Maturity:
Stale
The last commit was over a year ago
Health:
Healthy
Legal:
Moderate Risk
Package license does not match the source code license
License includes a patent grant clause
Security:
Healthy
Package
npm
@sigstore/core
Version
2.0.0
Last Release Date
9 months ago
License
Apache-2.0
Dependencies
No dependencies
Source
Location
sigstore/sigstore-js
Last Source Update
over 1 year ago
Licenses
Apache License 2.0
Apache License 2.0
Apache License 2.0
Apache License 2.0
Apache License 2.0
Apache License 2.0
Apache License 2.0
Apache License 2.0
Apache License 2.0
Apache License 2.0
Distribution Destinations
npm/sigstore-monorepo
npm/@sigstore/cli
npm/@sigstore/oci
npm/@sigstore/tuf
npm/@sigstore/core
npm/@sigstore/jest
npm/@sigstore/mock
npm/@sigstore/sign
npm/@sigstore/bundle
npm/sigstore
npm/@sigstore/verify
npm/@types/sigstore-jest-extended
npm/@sigstore/conformance
npm/@sigstore/mock-server
npm/@sigstore/rekor-types