sigstore
npmv4.1.0code-signing for npm packages
License Apache-2.0permissive38 versions1 maintainers6 deps
sigstore/sigstore-js56
/ 100
Health
safe to use
[email protected] is safe to use (health: 56/100)
Health breakdown0 – 100
15/25
maintenance
0/20
popularity
25/25
security
12/15
maturity
4/15
community
Vulnerabilities
0
none known
Bundle & TypeScript
📦
Bundle Size
782.4 KBminified
300.7 KB gzipped
6 direct dependencies
side effects
🌟
TypeScript
10/10typed
bundled
Quality signals
Publish security
npm signed
Health History
Dependency Tree
License Audit
Dependencies (6)
API access
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/npm/sigstoreFirst published · 2022-08-08T20:42:14.283Z
Last updated · 2025-12-19T16:54:56.285Z