npm package
Home@sigstore/protobuf-specs
The @sigstore/protobuf-specs package provides TypeScript language bindings for Sigstore's protobuf specifications, facilitating code-signing for npm packages. It is useful for developers looking to implement secure code-signing mechanisms in their applications. This package integrates with systems that require verification of package authenticity.
- lurq health score
- 79/100
- Confidence
- proven
- Weekly downloads
- 11,692,665
- Latest version
- 0.5.2
- Last release
- Aug 21, 2026
- License
- Apache-2.0
Should you depend on @sigstore/protobuf-specs?
lurq's verdict: low
- No known advisories
Check this from your coding agent
This page is a daily snapshot. lurq's verify tool checks @sigstore/protobuf-specs at the exact version your agent is about to install, and compat checks it against the rest of your stack. One command connects Claude Code, Cursor, VS Code and other agents:
npx lurqrun
Free to start. Quickstart
Other utility packages lurq scores
- dompurify98/100 · proven
- pdfjs-dist95/100 · proven
- @puppeteer/browsers94/100 · proven
- puppeteer-core94/100 · proven
- puppeteer94/100 · proven
Scored from public signals (npm registry, GitHub, deps.dev and advisory databases). Data as of Sep 3, 2026; this page refreshes every 24 hours. Source repository.