This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
danielroe πΊπ¦
danielroe.dev
did:plc:jbeaa5kdaladzwq3r7f5xgwe
in light of the current supply chain attacks, I've just published a @github.com action to detect packages that _lose_ their provenance.
π¦ supports pnpm-lock.yaml, package-lock.json, yarn.lock (v1)
π¨ inline GitHub annotations
β
JSON output + configurable
πͺ published in TS with zero deps
https://github.com/danielroe/provenance-action
2025-09-16T12:17:33.509Z