JSON-Rohbericht maschinenlesbar
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 379,
"has_wiki": true,
"homepage": null,
"languages": {
"Go": 733052,
"Makefile": 14605,
"Dockerfile": 1256
},
"pushed_at": "2026-07-30T04:33:31Z",
"created_at": "2024-03-11T11:50:07Z",
"owner_type": "Organization",
"updated_at": "2026-07-29T15:48:56Z",
"description": "Proof Of Concept showcasing composable GPUs in Kubernetes",
"is_archived": false,
"is_disabled": false,
"license_spdx": "Apache-2.0",
"default_branch": "main",
"license_spdx_raw": "Apache-2.0",
"primary_language": "Go",
"significant_languages": [
"Go"
]
},
"owner": {
"blog": "https://www.cncf.io/projects/cohdi/",
"name": "CoHDI",
"type": "Organization",
"login": "CoHDI",
"company": null,
"location": "Japan",
"followers": 42,
"avatar_url": "https://avatars.githubusercontent.com/u/217262880?v=4",
"created_at": "2025-06-20T20:01:44Z",
"is_verified": null,
"public_repos": 8,
"account_age_days": 406
},
"license": {
"state": "standard",
"spdx_id": "Apache-2.0",
"raw_spdx": "Apache-2.0",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.2.1",
"kind": "patch",
"published_at": "2026-07-21T04:27:07Z"
},
{
"tag": "v0.2.0",
"kind": "minor",
"published_at": "2026-06-23T07:10:01Z"
},
{
"tag": "v0.1.1",
"kind": "patch",
"published_at": "2026-02-05T08:15:24Z"
},
{
"tag": "v0.1.0",
"kind": "minor",
"published_at": "2025-10-09T09:24:17Z"
}
],
"recent_commits": [
{
"oid": "38251b7f94ea6719492c0ea186fad4d21ec3f962",
"body": "fix: Dynamically detect absolute chroot path in NVIDIA driver pod",
"is_bot": false,
"headline": "Merge pull request #55 from NekoHK/pr-54-chroot-path-detection",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-07-21T03:20:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a71292c3ef23c9313382e0688e0b9f7a64e77bb5",
"body": "Detect a usable absolute path for chroot in the NVIDIA driver pod, validate candidate paths, and report when chroot is available through PATH.\n\nSigned-off-by: Adam Wilkowski <adam.wilkowski@fujitsu.com>",
"is_bot": false,
"headline": "Dynamically detect absolute chroot path in NVIDIA driver pod",
"author_name": "Adam Wilkowski",
"author_login": "wilkowskia",
"committed_at": "2026-07-21T02:48:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "44f98e677b83869a2c486751a255a6f55ea3e812",
"body": "…idator\n\nFix ComposabilityRequest webhook validator for controller-runtime API",
"is_bot": false,
"headline": "Merge pull request #46 from NekoHK/fix/typed-composabilityrequest-val…",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-07-10T06:36:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bf7dde90598ab59cc52f0da765bdace1017e57ae",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "ci: update controller-tools for Go 1.26",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-07-10T04:47:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "10ef9ffea282a14ccb0c966cd0a4d023a79dd145",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: use typed validator for composability requests",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-07-10T04:47:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7328f378fef582ca09b4295a65a06c0d7efc9149",
"body": "…tal3-io/baremetal-operator/apis-0.12.2\n\nchore(deps): bump github.com/metal3-io/baremetal-operator/apis from 0.10.2 to 0.13.1",
"is_bot": false,
"headline": "Merge pull request #29 from CoHDI/dependabot/go_modules/github.com/me…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:14:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "15515718cecb873902e908029f0a3f815593e4e5",
"body": "…aremetal-operator/apis-0.12.2",
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/go_modules/github.com/metal3-io/b…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:14:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5fc813fc8687a6d78b76e37b3059540e5e664282",
"body": "…hinery-0.36.0-alpha.2\n\nchore(deps): bump k8s.io/apimachinery from 0.35.6 to 0.36.2",
"is_bot": false,
"headline": "Merge pull request #31 from CoHDI/dependabot/go_modules/k8s.io/apimac…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:13:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6dc4b3a5ea2c31218fc90ae7ee11f014b4c07e5a",
"body": "Bumps [k8s.io/apimachinery](https://github.com/kubernetes/apimachinery) from 0.35.6 to 0.36.2.\n- [Commits](https://github.com/kubernetes/apimachinery/compare/v0.35.6...v0.36.2)\n\n---\nupdated-dependencies:\n- dependency-name: k8s.io/apimachinery\n dependency-version: 0.36.0-alpha.2\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump k8s.io/apimachinery from 0.35.6 to 0.36.2",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-10T01:13:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "edec81868f55c12f4a5247645edf9b8794b9ed42",
"body": "Bumps [github.com/metal3-io/baremetal-operator/apis](https://github.com/metal3-io/baremetal-operator) from 0.10.2 to 0.13.1.\n- [Release notes](https://github.com/metal3-io/baremetal-operator/releases)\n- [Commits](https://github.com/metal3-io/baremetal-operator/compare/v0.10.2...v0.13.1)\n\n---\nupdated\n[…]\n/metal3-io/baremetal-operator/apis\n dependency-version: 0.12.2\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump github.com/metal3-io/baremetal-operator/apis",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-10T01:13:13Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ba3006182c214307c5483c977d56d3c142f9957d",
"body": "…tal3-io/cluster-api-provider-metal3/api-1.12.2\n\nchore(deps): bump github.com/metal3-io/cluster-api-provider-metal3/api from 1.10.1 to 1.13.1",
"is_bot": false,
"headline": "Merge pull request #32 from CoHDI/dependabot/go_modules/github.com/me…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:12:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d9504f3feb4d17e6def307f7337138361fde26bf",
"body": "Bumps [github.com/metal3-io/cluster-api-provider-metal3/api](https://github.com/metal3-io/cluster-api-provider-metal3) from 1.10.1 to 1.13.1.\n- [Release notes](https://github.com/metal3-io/cluster-api-provider-metal3/releases)\n- [Commits](https://github.com/metal3-io/cluster-api-provider-metal3/comp\n[…]\nio/cluster-api-provider-metal3/api\n dependency-version: 1.12.2\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump github.com/metal3-io/cluster-api-provider-metal3/api",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-10T01:11:10Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "9986978bfad28d8db33941eb472fbe14767b862a",
"body": "…heckout-6.0.2\n\nchore(deps): bump actions/checkout from 4.2.2 to 6.0.2",
"is_bot": false,
"headline": "Merge pull request #25 from CoHDI/dependabot/github_actions/actions/c…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:09:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1096f17df6486f5a68d4e9938a5781ce42eee8ed",
"body": "….0.2",
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/github_actions/actions/checkout-6…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:09:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "65d54e11fdc7d7392c6f9332edd9bd2061dd5a29",
"body": "chore(deps): bump golang from 1.24 to 1.26",
"is_bot": false,
"headline": "Merge pull request #27 from CoHDI/dependabot/docker/golang-1.26",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:09:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3632b172bc13115dac039e4ddc16927bd3948d31",
"body": null,
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/docker/golang-1.26",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:08:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "57bb30812bd32e14b430fe8caec68052bf74ab35",
"body": "…ecard-action-2.4.3\n\nchore(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.3",
"is_bot": false,
"headline": "Merge pull request #28 from CoHDI/dependabot/github_actions/ossf/scor…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:08:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "86c326438e54f0b933b80edbacafb71be9d11d4b",
"body": "…ion-2.4.3",
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/github_actions/ossf/scorecard-act…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:07:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c6b9efa9a6dfd0a6a60163e9645ab1703e35e497",
"body": "…deql-action-4\n\nchore(deps): bump github/codeql-action from 3 to 4",
"is_bot": false,
"headline": "Merge pull request #30 from CoHDI/dependabot/github_actions/github/co…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:07:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ce4f21950dac221dfe8d38d259174286dde9fdd8",
"body": "…on-4",
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/github_actions/github/codeql-acti…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:07:09Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "638f72c48377d112fc83c0439a50d1808b3c9d1b",
"body": "…iledragon/gomonkey/v2-2.14.0\n\nchore(deps): bump github.com/agiledragon/gomonkey/v2 from 2.11.0 to 2.14.0",
"is_bot": false,
"headline": "Merge pull request #33 from CoHDI/dependabot/go_modules/github.com/ag…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:06:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "72d2ca34d04f50a2a158bdac40184853aaeb1ec4",
"body": "…/gomonkey/v2-2.14.0",
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/go_modules/github.com/agiledragon…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:06:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1537c59df7e14a2ea56c3eb366fd9237977db569",
"body": "…si/ginkgo/v2-2.28.1\n\nchore(deps): bump github.com/onsi/ginkgo/v2 from 2.23.4 to 2.28.1",
"is_bot": false,
"headline": "Merge pull request #34 from CoHDI/dependabot/go_modules/github.com/on…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:05:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "001041667eb87009a30521b4b3b29b491ed4c2e1",
"body": "…/v2-2.28.1",
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/go_modules/github.com/onsi/ginkgo…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:05:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8c82b5576e472a8e1633868ea20182e2f49c2c58",
"body": "…s-sigs/release-actions-0.4.3\n\nchore(deps): bump kubernetes-sigs/release-actions from 0.4.0 to 0.4.3",
"is_bot": false,
"headline": "Merge pull request #41 from CoHDI/dependabot/github_actions/kubernete…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:04:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7f92ce75c679e017241eade7f2eca187317e7880",
"body": "…lease-actions-0.4.3",
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/github_actions/kubernetes-sigs/re…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:04:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "639b1c3c0525afdc57b129570695bca156554018",
"body": "…pload-artifact-7\n\nchore(deps): bump actions/upload-artifact from 4 to 7",
"is_bot": false,
"headline": "Merge pull request #42 from CoHDI/dependabot/github_actions/actions/u…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:03:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b23f735327e33cee2878cba08cd42d51deb0ed9f",
"body": "…ifact-7",
"is_bot": false,
"headline": "Merge branch 'main' into dependabot/github_actions/actions/upload-art…",
"author_name": "Shogo Matsumoto",
"author_login": "shogom2",
"committed_at": "2026-07-10T01:03:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a199c65828eefaf7ec03dcc1ae275292b0f50b0c",
"body": "* fix: use new NVIDIA DRA driver resource name\n\nSigned-off-by: Ko Kai <ko.kai@jp.fujitsu.com>\n\n* fix: use sysfs remove for GPU reset on VM container drivers\n\nSigned-off-by: Ko Kai <ko.kai@jp.fujitsu.com>\n\n* fix: centralize NVIDIA DRA driver resource name\n\nSigned-off-by: Ko Kai <ko.kai@jp.fujitsu.com>\n\n---------\n\nSigned-off-by: Ko Kai <ko.kai@jp.fujitsu.com>\nCo-authored-by: Ko, Kai 黄 凱 <ko.kai@fujitsu.com>",
"is_bot": false,
"headline": "fix: update NVIDIA DRA resource name and VM GPU reset handling (#45)",
"author_name": "kokai",
"author_login": "NekoHK",
"committed_at": "2026-07-07T06:18:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "761a00ba43d29524f21082cf157f1d4d361e465e",
"body": "Fix GPU attach/detach handling and CM response processing",
"is_bot": false,
"headline": "Merge pull request #44 from NekoHK/github-sync-ado-dev",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-06-23T00:09:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f1ce30e375b2d192d3468a4da0a6920750cdd70c",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: use pid file to terminate nvidia-persistenced",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-22T08:47:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ac0a05be7218568e4d87f8f4ef098452bf9ae320",
"body": "…ado-dev",
"is_bot": false,
"headline": "Merge remote-tracking branch 'upstream-github/main' into github-sync-…",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-22T08:29:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fa166ca6e11930e4e3e0fbe8db89abc048f17e58",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: address GitHub review comments",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-22T08:25:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "db2102501af0d299ecc40e2578be62c8fb251fc2",
"body": "Signed-off-by: Motoka Makoto <m.motoka@nec.com>",
"is_bot": false,
"headline": "Create nec plugin (#43)",
"author_name": "motooka79",
"author_login": "motooka79",
"committed_at": "2026-06-18T05:49:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2ec315c80a8bf27132e5a12499daa4fc8adb64fa",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: update CM machine lookup and response handling",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ad880bb3f012eeca7b74116c62b9f8bdbeaa77ab",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: update GPU driver detection flow",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "35a3e4ca6c1c3ddb6530fa1f47cf60269a04844c",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: improve GPU load check and drain handling",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "84e4a012ccf8e14e04b512d44a76a8ffc0043777",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: handle GPU detach when no devices are found",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "99d03acc4c131386d6f96f3c4db0f2505385b9e0",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: handle gpu operator namespace from env var",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9c9342474e72b32d749283146ce71eb9f8b3434f",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: add fallback check if nvidia kernel module is present",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0b2693dc9e32700f78ab70a2fb10cdc0cdf8cccb",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: replace kubelet plugin restart daemonset with pod restart",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5a44dbffa8a6f98201d43eef9341dd4492617714",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "refactor: replace driver.enabled check with GPU driver type detection",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a7b59da83b454a9dade6f10e71893c7904c6e8fc",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "test: add CRO MT improvement tests",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ba0f8f52a6307370aed59ac4c956c74e73a88a18",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "test: add missing tests for upstream syncer controller",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ab08fe5e1644094b7707f1ba8c9cc8883e305e76",
"body": "Signed-off-by: Ko Kai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "test: add unit tests for performGarbageCollection",
"author_name": "Ko Kai",
"author_login": "NekoHK",
"committed_at": "2026-06-15T11:33:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b062ed35524f275709d009bc4b4017aba240b6b4",
"body": "Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4 to 7.\n- [Release notes](https://github.com/actions/upload-artifact/releases)\n- [Commits](https://github.com/actions/upload-artifact/compare/v4...v7)\n\n---\nupdated-dependencies:\n- dependency-name: actions/upload-artifact\n dependency-version: '7'\n dependency-type: direct:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump actions/upload-artifact from 4 to 7",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-16T04:38:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0f2d8c91fe773fe7b0e65a69bbc8a3176f3ae001",
"body": "Bumps [kubernetes-sigs/release-actions](https://github.com/kubernetes-sigs/release-actions) from 0.4.0 to 0.4.3.\n- [Release notes](https://github.com/kubernetes-sigs/release-actions/releases)\n- [Changelog](https://github.com/kubernetes-sigs/release-actions/blob/main/RELEASE.md)\n- [Commits](https://g\n[…]\nme: kubernetes-sigs/release-actions\n dependency-version: 0.4.3\n dependency-type: direct:production\n update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump kubernetes-sigs/release-actions from 0.4.0 to 0.4.3",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-16T04:38:43Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bb12b8cfcacb2279df6f5c48619e905dd1d8af44",
"body": "ci: add sbom workflow",
"is_bot": false,
"headline": "Merge pull request #39 from motooka79/feature/motooka79-patch-2",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-04-16T01:40:49Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6582395070f083d234b7a5c63a08e186c6332177",
"body": null,
"is_bot": false,
"headline": "Merge branch 'main' into feature/motooka79-patch-2",
"author_name": "motooka79",
"author_login": "motooka79",
"committed_at": "2026-04-14T04:55:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "722650026695371474e72022f15dad0cfd0d3145",
"body": "Signed-off-by: Motoka Makoto <m.motoka@nec.com>",
"is_bot": false,
"headline": "Add metadata, checksum, and security improvements",
"author_name": "Motoka Makoto",
"author_login": "motooka79",
"committed_at": "2026-04-14T04:49:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "53125aeba1461a9d20d6c7f0c4fec771018afcf6",
"body": "* fix: resolve make test failures\n\nSigned-off-by: kokai <ko.kai@jp.fujitsu.com>\n\n* ci: add GitHub Actions workflow for CRO tests\n\nSigned-off-by: kokai <ko.kai@jp.fujitsu.com>\n\n---------\n\nSigned-off-by: kokai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "ci: add GitHub Actions workflow for CRO tests (#38)",
"author_name": "kokai",
"author_login": "NekoHK",
"committed_at": "2026-04-13T08:22:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bb6a38ba7334dcd878de5e26ebffe67094fec79c",
"body": "Signed-off-by: Motoka Makoto <m.motoka@nec.com>",
"is_bot": false,
"headline": "feat: Create sbom.yaml",
"author_name": "Motoka Makoto",
"author_login": "motooka79",
"committed_at": "2026-04-13T07:01:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2a6fa361657fb7cd27283cf684413987344db675",
"body": "Signed-off-by: kokai <ko.kai@jp.fujitsu.com>",
"is_bot": false,
"headline": "fix: resolve make test failures (#36)",
"author_name": "kokai",
"author_login": "NekoHK",
"committed_at": "2026-04-10T07:44:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "146cb235f89499073180bdd37755325ebe18dff4",
"body": "chore: replace OWNERS.md file with CODEOWNERS",
"is_bot": false,
"headline": "Merge pull request #35 from tmkymst/tmkymst-dev",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-24T00:28:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2bcde3f7408dfc310d1d196fe7be2e4bc1595a13",
"body": "Signed-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "chore: replace OWNERS.md file with CODEOWNERS",
"author_name": "Tomoki Yamashita",
"author_login": "tmkymst",
"committed_at": "2026-03-23T09:35:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bdc259df68dd1780c30201ba402a34305aa278df",
"body": "docs: enhance project documentation",
"is_bot": false,
"headline": "Merge pull request #21 from mgazz/docs",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-23T00:12:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7a59653b967184680bf4b28c081b1124964ab04c",
"body": "Signed-off-by: Michele Gazzetti <michele.gazzetti1@ibm.com>",
"is_bot": false,
"headline": "fix docs",
"author_name": "Michele Gazzetti",
"author_login": "mgazz",
"committed_at": "2026-03-19T13:33:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8df48fbd3767cb63d5264a8c5c06dcb27fbbdbd4",
"body": "Signed-off-by: Michele Gazzetti <michele.gazzetti1@ibm.com>",
"is_bot": false,
"headline": "docs: enhance project documentation",
"author_name": "Michele Gazzetti",
"author_login": "mgazz",
"committed_at": "2026-03-19T13:33:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "73fb37f69f73462eab531131378f5a24a4d93f41",
"body": "Add license scan report and status",
"is_bot": false,
"headline": "Merge pull request #15 from fossabot/add-license-scan-badge",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-19T08:10:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "51271ede8136bcf5bf6bbe3ac085ef017ac015d9",
"body": null,
"is_bot": false,
"headline": "Merge branch 'main' into add-license-scan-badge",
"author_name": "Tomoki Y.",
"author_login": "tmkymst",
"committed_at": "2026-03-19T08:07:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6a27d0024f20127c8af198f2473ae71a7a4b634b",
"body": "Signed-off-by: kokai <ko.kai@jp.fujitsu.com>\nSigned-off-by: kokai <nekohk666@gmail.com>\nSigned-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "chore: downgrade OpenTelemetry to v1.32.0 and remove auto/sdk (#23)",
"author_name": "kokai",
"author_login": "NekoHK",
"committed_at": "2026-03-19T08:00:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c5bcd9c4e0635cddb5cdec1b2a8a16c3267a87e7",
"body": "Signed-off-by: kokai <ko.kai@jp.fujitsu.com>\nSigned-off-by: kokai <nekohk666@gmail.com>\nSigned-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "chore: upgrade OpenTelemetry to v1.2.1",
"author_name": "kokai",
"author_login": "NekoHK",
"committed_at": "2026-03-19T08:00:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bda8bfa60a929e09560bb25445f603c8e151479b",
"body": "Add the following badges.\n - Artifact Hub\n - OpenSSF ScoreCard\n - OpenSSF Best Practice\n\nSigned-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "Add several badges (#18)",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-19T08:00:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4efb3c3f34bf7e783936599e6ee5fc7dc5389bae",
"body": "Signed-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "Create scorecard.yml",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-19T08:00:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1f8c4e570a1a343048935c33e0ada2c198d440b3",
"body": "Signed off by: fossabot <badges@fossa.com>\n\nSigned-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "Add license scan report and status",
"author_name": "fossabot",
"author_login": "fossabot",
"committed_at": "2026-03-19T08:00:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fe5a4aeb216fe0acfdb7c9f58c1b69e992f2e073",
"body": "…ndling (#14)\n\n* fix: avoid duplicate addition of desiredTaint\n\nSigned-off-by: kokai <ko.kai@jp.fujitsu.com>\n\n* fix: allow error messages to be reported in ComposableResource\n\nSigned-off-by: kokai <ko.kai@jp.fujitsu.com>\n\n* feat: update support for RKE2 and K8S\n\nSigned-off-by: kokai <ko.kai@jp.fujit\n[…]\nhita_tomo@jp.fujitsu.com>\nCo-authored-by: kokai <ko.kai@jp.fujitsu.com>\nCo-authored-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>\nSigned-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "Fix multiple issues related to API responses and GPU attach/detach ha…",
"author_name": "黄",
"author_login": "NekoHK",
"committed_at": "2026-03-19T08:00:28Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bcf87294a25df3ccd7af8a5477152dac4123bb0b",
"body": "Signed-off-by: gaoa <gaoa@fujitsu.com>\nSigned-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "reflactor: update Go module path to CoHDI",
"author_name": "gaoa",
"author_login": "gaoaF",
"committed_at": "2026-03-19T08:00:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "05a0754bfb4e4cdb08b2e8ddc7232d0376ac66dc",
"body": "* refactor: upgrade operator framework\n\nUse the files automatically generated by the new version of operator-sdk command.\n\nSigned-off-by: gaoa <gaoa@fujitsu.com>\n\n* feat: update api definitions\n\nUpdate api ComposabilityRequest and create api ComposableResource.\n\nSigned-off-by: gaoa <gaoa@fujitsu.com\n[…]\ntatus.device_uuid and .status.cdi_device_uuid\n\nSigned-off-by: gaoa <gaoa@fujitsu.com>\n\n---------\n\nSigned-off-by: gaoa <gaoa@fujitsu.com>\nSigned-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "feat: make architectural changes and implement FTI Client (#12)",
"author_name": "gaoaF",
"author_login": "gaoaF",
"committed_at": "2026-03-19T08:00:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5014252ca0785630dfc0356cd4447af5d197432e",
"body": "Add SECURITY-INSIGHTS.yml for project security details",
"is_bot": false,
"headline": "Merge pull request #19 from motooka79/motooka79-patch-1",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-19T03:24:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "78fbda64e871006159912fcf78385edd8690c052",
"body": null,
"is_bot": false,
"headline": "Merge branch 'main' into motooka79-patch-1",
"author_name": "motooka79",
"author_login": "motooka79",
"committed_at": "2026-03-19T03:16:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "171bb71fe3cf2f3b32cca38c4c51a412bafe78b5",
"body": "for CLO monitor score\n\nSigned-off-by: Motoka Makoto <m.motoka@nec.com>",
"is_bot": false,
"headline": "Add SECURITY-INSIGHTS.yml for project security details",
"author_name": "motooka79",
"author_login": "motooka79",
"committed_at": "2026-03-19T03:11:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "703fcb1fe2ffbe1735734d0668b4c8c0baf12108",
"body": "Bumps [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo) from 2.23.4 to 2.28.1.\n- [Release notes](https://github.com/onsi/ginkgo/releases)\n- [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/onsi/ginkgo/compare/v2.23.4...v2.28.1)\n\n---\nupdate\n[…]\ncy-name: github.com/onsi/ginkgo/v2\n dependency-version: 2.28.1\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump github.com/onsi/ginkgo/v2 from 2.23.4 to 2.28.1",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-19T01:45:28Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "60c06ca40f62da304521c32fa2d624fa5dc81475",
"body": "Bumps [github.com/agiledragon/gomonkey/v2](https://github.com/agiledragon/gomonkey) from 2.11.0 to 2.14.0.\n- [Release notes](https://github.com/agiledragon/gomonkey/releases)\n- [Commits](https://github.com/agiledragon/gomonkey/compare/v2.11.0...v2.14.0)\n\n---\nupdated-dependencies:\n- dependency-name: github.com/agiledragon/gomonkey/v2\n dependency-version: 2.14.0\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump github.com/agiledragon/gomonkey/v2",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-19T01:45:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "28fc116d078a2a2c6328f1c9ab97268d9dc97fe1",
"body": "Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3 to 4.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action/compare/v3...v4)\n\n-\n[…]\ndependency-name: github/codeql-action\n dependency-version: '4'\n dependency-type: direct:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump github/codeql-action from 3 to 4",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-19T01:45:04Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7ede4ee04bfd91b8e4d806c84c5bea7e1e42f6fd",
"body": "Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.4.1 to 2.4.3.\n- [Release notes](https://github.com/ossf/scorecard-action/releases)\n- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)\n- [Commits](https://github.com/ossf/scorecard-action/compare/\n[…]\nendency-name: ossf/scorecard-action\n dependency-version: 2.4.3\n dependency-type: direct:production\n update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.3",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-19T01:44:58Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "18126ce3971d141c9d4f73996aa55a41408fa09c",
"body": "Bumps golang from 1.24 to 1.26.\n\n---\nupdated-dependencies:\n- dependency-name: golang\n dependency-version: '1.26'\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump golang from 1.24 to 1.26",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-19T01:44:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "337e5546873b02044217329ad66df5ee6825bcab",
"body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.2 to 6.0.2.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/11bd71901bbe5b1630ceea7\n[…]\n- dependency-name: actions/checkout\n dependency-version: 6.0.2\n dependency-type: direct:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump actions/checkout from 4.2.2 to 6.0.2",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-19T01:44:50Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "910bacf229450d56e95a32e5dbc034a748a7dde8",
"body": "add dependabot configuration and OWNERS file",
"is_bot": false,
"headline": "Merge pull request #24 from tmkymst/Improving-CLOMonitor-Score",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-19T01:44:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d35aba57ae9947e843e5038295e6354dd2534923",
"body": "Signed-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "add dependabot configuration and OWNERS file",
"author_name": "Tomoki Yamashita",
"author_login": "tmkymst",
"committed_at": "2026-03-19T01:25:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e142f3b3269943f450476c7b13f1d90266b258c5",
"body": "Signed-off-by: kokai <ko.kai@jp.fujitsu.com>\nSigned-off-by: kokai <nekohk666@gmail.com>",
"is_bot": false,
"headline": "chore: downgrade OpenTelemetry to v1.32.0 and remove auto/sdk (#23)",
"author_name": "kokai",
"author_login": "NekoHK",
"committed_at": "2026-03-18T09:09:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "316294de96b0e1a025de945e209ce7d238d74bb2",
"body": "chore: upgrade OpenTelemetry to v1.2.1",
"is_bot": false,
"headline": "Merge pull request #20 from NekoHK/upgrade-otel-1.2.1",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-10T09:55:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "82bf89401a25f8b0b900120f5dfffeb9652f0c35",
"body": "Signed-off-by: kokai <ko.kai@jp.fujitsu.com>\nSigned-off-by: kokai <nekohk666@gmail.com>",
"is_bot": false,
"headline": "chore: upgrade OpenTelemetry to v1.2.1",
"author_name": "kokai",
"author_login": "NekoHK",
"committed_at": "2026-03-10T09:52:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b13792367093909f1e199abc505dca0ea1067dbd",
"body": "Add the following badges.\r\n - Artifact Hub\r\n - OpenSSF ScoreCard\r\n - OpenSSF Best Practice",
"is_bot": false,
"headline": "Add several badges (#18)",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-05T08:01:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1b29e92a00f7fd3e3be569b2e634fe63ab7ac861",
"body": "Create scorecard.yml",
"is_bot": false,
"headline": "Merge pull request #17 from CoHDI/hase1128-patch-1",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-03-04T08:00:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "97f916d1fc23a0088f34d1989a2055f7c781a080",
"body": null,
"is_bot": false,
"headline": "Create scorecard.yml",
"author_name": "Jin Hase",
"author_login": "hase1128",
"committed_at": "2026-02-18T01:38:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "858f6f0f0fda334347e3b56be7c0f62bab60b70d",
"body": "…ndling (#14)\n\n* fix: avoid duplicate addition of desiredTaint\n\nSigned-off-by: kokai <ko.kai@jp.fujitsu.com>\n\n* fix: allow error messages to be reported in ComposableResource\n\nSigned-off-by: kokai <ko.kai@jp.fujitsu.com>\n\n* feat: update support for RKE2 and K8S\n\nSigned-off-by: kokai <ko.kai@jp.fujit\n[…]\ni <ko.kai@jp.fujitsu.com>\nSigned-off-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>\nCo-authored-by: kokai <ko.kai@jp.fujitsu.com>\nCo-authored-by: Tomoki Yamashita <yamashita_tomo@jp.fujitsu.com>",
"is_bot": false,
"headline": "Fix multiple issues related to API responses and GPU attach/detach ha…",
"author_name": "黄",
"author_login": "NekoHK",
"committed_at": "2026-02-05T07:09:50Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b7f30b944ccca604079c0f8407613a67234c3887",
"body": "reflactor: update Go module path to CoHDI",
"is_bot": false,
"headline": "Merge pull request #13 from gaoaF/main",
"author_name": "Zhou Hao",
"author_login": "zhouhao3",
"committed_at": "2025-09-18T05:24:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "206200ca5f642432246ffae1e90af5bcf5df2568",
"body": "Signed-off-by: gaoa <gaoa@fujitsu.com>",
"is_bot": false,
"headline": "reflactor: update Go module path to CoHDI",
"author_name": "gaoa",
"author_login": "gaoaF",
"committed_at": "2025-09-18T13:20:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "28d487c64a48e41896ba848ed7109da4c6c2413a",
"body": "* refactor: upgrade operator framework\n\nUse the files automatically generated by the new version of operator-sdk command.\n\nSigned-off-by: gaoa <gaoa@fujitsu.com>\n\n* feat: update api definitions\n\nUpdate api ComposabilityRequest and create api ComposableResource.\n\nSigned-off-by: gaoa <gaoa@fujitsu.com\n[…]\nd-off-by: gaoa <gaoa@fujitsu.com>\n\n* fix: distinguish between .status.device_uuid and .status.cdi_device_uuid\n\nSigned-off-by: gaoa <gaoa@fujitsu.com>\n\n---------\n\nSigned-off-by: gaoa <gaoa@fujitsu.com>",
"is_bot": false,
"headline": "feat: make architectural changes and implement FTI Client (#12)",
"author_name": "gaoaF",
"author_login": "gaoaF",
"committed_at": "2025-09-16T10:16:25Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "939231d259b88debec6724de57f7cd89d8a9a518",
"body": "Added DCO certificate",
"is_bot": false,
"headline": "Merge pull request #7 from IBM/DCO",
"author_name": "mgazz",
"author_login": "mgazz",
"committed_at": "2024-09-23T12:47:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0de12da576456b9da00ad378be6fdc64317f8dbf",
"body": "Signed-off-by: Christian Pinto <christian.pinto@ibm.com>",
"is_bot": false,
"headline": "Added DCO certificate",
"author_name": "Christian Pinto",
"author_login": "christian-pinto",
"committed_at": "2024-09-05T08:54:05Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b26599eef15c419936457ead4242d471def27c02",
"body": "Signed-off-by: MICHELE GAZZETTI <Michele.Gazzetti1@ibm.com>",
"is_bot": false,
"headline": "bump protobuf version",
"author_name": "MICHELE GAZZETTI",
"author_login": "mgazz",
"committed_at": "2024-03-14T10:41:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "882a49f3e6fa0c6be6ed4afd249e32000c12deb7",
"body": "Signed-off-by: MICHELE GAZZETTI <Michele.Gazzetti1@ibm.com>",
"is_bot": false,
"headline": "update headers",
"author_name": "MICHELE GAZZETTI",
"author_login": "mgazz",
"committed_at": "2024-03-14T10:31:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3dfc4252abf0b52c0d67feddb698b57932b3d97c",
"body": "Signed-off-by: MICHELE GAZZETTI <Michele.Gazzetti1@ibm.com>",
"is_bot": false,
"headline": "migrate to a new repo",
"author_name": "MICHELE GAZZETTI",
"author_login": "mgazz",
"committed_at": "2024-03-14T10:22:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ca592aafaad81a36180db9fc79a7104befac50d0",
"body": null,
"is_bot": false,
"headline": "Initial commit",
"author_name": "IBM Open Source Bot",
"author_login": "ibm-open-source-bot",
"committed_at": "2024-03-11T11:50:08Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 4,
"commits_last_year": 89,
"latest_release_at": "2026-07-21T04:27:07Z",
"latest_release_tag": "v0.2.1",
"releases_from_tags": false,
"days_since_last_push": 2,
"active_weeks_last_year": 14,
"days_since_latest_release": 11,
"mean_days_between_releases": 94.9
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": true,
"health_percentage": 87,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "github.com/CoHDI/composable-resource-operator",
"exists": true,
"license": null,
"keywords": [],
"ecosystem": "go",
"matches_repo": true,
"registry_url": "https://pkg.go.dev/github.com/CoHDI/composable-resource-operator",
"is_deprecated": false,
"latest_version": "v0.2.1",
"repository_url": "https://github.com/CoHDI/composable-resource-operator",
"versions_count": 4,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": null,
"first_published_at": null,
"latest_published_at": "2026-07-21T03:20:11Z",
"latest_version_yanked": null,
"days_since_latest_publish": 11
}
]
},
"popularity": {
"forks": 9,
"stars": 26,
"watchers": 5,
"fork_history": {
"days": [
{
"date": "2025-07-01",
"count": 1
},
{
"date": "2025-09-18",
"count": 1
},
{
"date": "2026-02-13",
"count": 1
},
{
"date": "2026-03-12",
"count": 1
},
{
"date": "2026-03-23",
"count": 1
},
{
"date": "2026-06-03",
"count": 1
},
{
"date": "2026-06-15",
"count": 1
},
{
"date": "2026-07-16",
"count": 1
}
],
"complete": true,
"collected": 8,
"total_forks": 9
},
"star_history": null,
"open_issues_and_prs": 21
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [
"examples",
"samples"
],
"has_llms_txt": false,
"has_dockerfile": true,
"has_mcp_signal": false,
"bootstrap_files": [
"Makefile"
],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [],
"toolchain_manifests": [
"go.mod"
],
"largest_source_bytes": 381713,
"source_files_sampled": 30,
"oversized_source_files": 2,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"dependencies": {
"manifests": [
"go.mod"
],
"advisories": {
"error": null,
"scope": "repository_graph",
"source": "osv",
"findings": [
{
"name": "google.golang.org/grpc",
"direct": false,
"version": "v1.80.0",
"severity": "critical",
"ecosystem": "go",
"cvss_score": 9.1,
"advisory_ids": [
"GHSA-hrxh-6v49-42gf",
"GO-2026-6061"
],
"fixed_version": "1.82.1",
"advisory_count": 2,
"oldest_advisory_days": 10
},
{
"name": "github.com/google/cel-go",
"direct": false,
"version": "v0.26.0",
"severity": "moderate",
"ecosystem": "go",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-gcjh-h69q-9w9g"
],
"fixed_version": "0.29.0",
"advisory_count": 1,
"oldest_advisory_days": 7
},
{
"name": "go.opentelemetry.io/otel",
"direct": false,
"version": "v1.43.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5158"
],
"fixed_version": "1.44.0",
"advisory_count": 1,
"oldest_advisory_days": 7
},
{
"name": "golang.org/x/net",
"direct": false,
"version": "v0.55.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5942"
],
"fixed_version": "0.56.0",
"advisory_count": 1,
"oldest_advisory_days": 17
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.37.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5970"
],
"fixed_version": "0.39.0",
"advisory_count": 1,
"oldest_advisory_days": 17
}
],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {
"unknown": 3,
"critical": 1,
"moderate": 1
},
"advisory_count": 6,
"affected_count": 5,
"assessed_count": 100,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 0,
"direct_affected_count": 0
},
"ecosystems": [
"go"
],
"dependencies": [
{
"name": "github.com/NVIDIA/gpu-operator",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.11.1"
},
{
"name": "github.com/agiledragon/gomonkey/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.14.0"
},
{
"name": "github.com/google/go-cmp",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.7.0"
},
{
"name": "github.com/google/uuid",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.6.0"
},
{
"name": "github.com/metal3-io/baremetal-operator/apis",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.13.1"
},
{
"name": "github.com/metal3-io/cluster-api-provider-metal3/api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.13.1"
},
{
"name": "github.com/onsi/ginkgo/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.29.0"
},
{
"name": "github.com/onsi/gomega",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.41.0"
},
{
"name": "golang.org/x/oauth2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.36.0"
},
{
"name": "k8s.io/api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.35.6"
},
{
"name": "k8s.io/apiextensions-apiserver",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.35.6"
},
{
"name": "k8s.io/apimachinery",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.36.2"
},
{
"name": "k8s.io/client-go",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.35.6"
},
{
"name": "k8s.io/utils",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20260210185600-b8788abfbbc2"
},
{
"name": "sigs.k8s.io/controller-runtime",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.23.3"
}
],
"all_dependencies": {
"error": null,
"source": "github-sbom",
"packages": [
{
"name": "github.com/agiledragon/gomonkey/v2",
"direct": true,
"version": "v2.14.0",
"ecosystem": "go"
},
{
"name": "github.com/google/go-cmp",
"direct": true,
"version": "v0.7.0",
"ecosystem": "go"
},
{
"name": "github.com/google/uuid",
"direct": true,
"version": "v1.6.0",
"ecosystem": "go"
},
{
"name": "github.com/metal3-io/baremetal-operator/apis",
"direct": true,
"version": "v0.13.1",
"ecosystem": "go"
},
{
"name": "github.com/metal3-io/cluster-api-provider-metal3/api",
"direct": true,
"version": "v1.13.1",
"ecosystem": "go"
},
{
"name": "github.com/nvidia/gpu-operator",
"direct": true,
"version": "v1.11.1",
"ecosystem": "go"
},
{
"name": "github.com/onsi/ginkgo/v2",
"direct": true,
"version": "v2.29.0",
"ecosystem": "go"
},
{
"name": "github.com/onsi/gomega",
"direct": true,
"version": "v1.41.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/oauth2",
"direct": true,
"version": "v0.36.0",
"ecosystem": "go"
},
{
"name": "k8s.io/apiextensions-apiserver",
"direct": true,
"version": "v0.35.6",
"ecosystem": "go"
},
{
"name": "k8s.io/apimachinery",
"direct": true,
"version": "v0.36.2",
"ecosystem": "go"
},
{
"name": "k8s.io/utils",
"direct": true,
"version": "v0.0.0-20260210185600-b8788abfbbc2",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/controller-runtime",
"direct": true,
"version": "v0.23.3",
"ecosystem": "go"
},
{
"name": "cel.dev/expr",
"direct": false,
"version": "v0.25.1",
"ecosystem": "go"
},
{
"name": "github.com/antlr4-go/antlr/v4",
"direct": false,
"version": "v4.13.0",
"ecosystem": "go"
},
{
"name": "github.com/beorn7/perks",
"direct": false,
"version": "v1.0.1",
"ecosystem": "go"
},
{
"name": "github.com/blang/semver/v4",
"direct": false,
"version": "v4.0.0",
"ecosystem": "go"
},
{
"name": "github.com/cenkalti/backoff/v5",
"direct": false,
"version": "v5.0.3",
"ecosystem": "go"
},
{
"name": "github.com/cespare/xxhash/v2",
"direct": false,
"version": "v2.3.0",
"ecosystem": "go"
},
{
"name": "github.com/davecgh/go-spew",
"direct": false,
"version": "v1.1.2-0.20180830191138-d8f796af33cc",
"ecosystem": "go"
},
{
"name": "github.com/emicklei/go-restful/v3",
"direct": false,
"version": "v3.13.0",
"ecosystem": "go"
},
{
"name": "github.com/evanphx/json-patch/v5",
"direct": false,
"version": "v5.9.11",
"ecosystem": "go"
},
{
"name": "github.com/felixge/httpsnoop",
"direct": false,
"version": "v1.0.4",
"ecosystem": "go"
},
{
"name": "github.com/fsnotify/fsnotify",
"direct": false,
"version": "v1.9.0",
"ecosystem": "go"
},
{
"name": "github.com/fxamacker/cbor/v2",
"direct": false,
"version": "v2.9.0",
"ecosystem": "go"
},
{
"name": "github.com/go-logr/logr",
"direct": false,
"version": "v1.4.3",
"ecosystem": "go"
},
{
"name": "github.com/go-logr/stdr",
"direct": false,
"version": "v1.2.2",
"ecosystem": "go"
},
{
"name": "github.com/go-logr/zapr",
"direct": false,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/jsonpointer",
"direct": false,
"version": "v0.21.0",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/jsonreference",
"direct": false,
"version": "v0.21.0",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/swag",
"direct": false,
"version": "v0.23.0",
"ecosystem": "go"
},
{
"name": "github.com/go-task/slim-sprig/v3",
"direct": false,
"version": "v3.0.0",
"ecosystem": "go"
},
{
"name": "github.com/gogo/protobuf",
"direct": false,
"version": "v1.3.2",
"ecosystem": "go"
},
{
"name": "github.com/google/btree",
"direct": false,
"version": "v1.1.3",
"ecosystem": "go"
},
{
"name": "github.com/google/cel-go",
"direct": false,
"version": "v0.26.0",
"ecosystem": "go"
},
{
"name": "github.com/google/gnostic-models",
"direct": false,
"version": "v0.7.0",
"ecosystem": "go"
},
{
"name": "github.com/google/pprof",
"direct": false,
"version": "v0.0.0-20260402051712-545e8a4df936",
"ecosystem": "go"
},
{
"name": "github.com/gorilla/websocket",
"direct": false,
"version": "v1.5.4-0.20250319132907-e064f32e3674",
"ecosystem": "go"
},
{
"name": "github.com/grpc-ecosystem/grpc-gateway/v2",
"direct": false,
"version": "v2.28.0",
"ecosystem": "go"
},
{
"name": "github.com/inconshreveable/mousetrap",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/josharian/intern",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/json-iterator/go",
"direct": false,
"version": "v1.1.12",
"ecosystem": "go"
},
{
"name": "github.com/mailru/easyjson",
"direct": false,
"version": "v0.7.7",
"ecosystem": "go"
},
{
"name": "github.com/masterminds/semver/v3",
"direct": false,
"version": "v3.4.0",
"ecosystem": "go"
},
{
"name": "github.com/metal3-io/ip-address-manager/api",
"direct": false,
"version": "v1.13.1",
"ecosystem": "go"
},
{
"name": "github.com/moby/spdystream",
"direct": false,
"version": "v0.5.1",
"ecosystem": "go"
},
{
"name": "github.com/modern-go/concurrent",
"direct": false,
"version": "v0.0.0-20180306012644-bacd9c7ef1dd",
"ecosystem": "go"
},
{
"name": "github.com/modern-go/reflect2",
"direct": false,
"version": "v1.0.3-0.20250322232337-35a7c28c31ee",
"ecosystem": "go"
},
{
"name": "github.com/munnerz/goautoneg",
"direct": false,
"version": "v0.0.0-20191010083416-a7dc8b61c822",
"ecosystem": "go"
},
{
"name": "github.com/pkg/errors",
"direct": false,
"version": "v0.9.1",
"ecosystem": "go"
},
{
"name": "github.com/pmezard/go-difflib",
"direct": false,
"version": "v1.0.1-0.20181226105442-5d4384ee4fb2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/client_golang",
"direct": false,
"version": "v1.23.2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/client_model",
"direct": false,
"version": "v0.6.2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/common",
"direct": false,
"version": "v0.66.1",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/procfs",
"direct": false,
"version": "v0.16.1",
"ecosystem": "go"
},
{
"name": "github.com/spf13/cobra",
"direct": false,
"version": "v1.10.2",
"ecosystem": "go"
},
{
"name": "github.com/spf13/pflag",
"direct": false,
"version": "v1.0.10",
"ecosystem": "go"
},
{
"name": "github.com/stoewer/go-strcase",
"direct": false,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/x448/float16",
"direct": false,
"version": "v0.8.4",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/auto/sdk",
"direct": false,
"version": "v1.2.1",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp",
"direct": false,
"version": "v0.65.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel",
"direct": false,
"version": "v1.43.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace",
"direct": false,
"version": "v1.43.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc",
"direct": false,
"version": "v1.43.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/metric",
"direct": false,
"version": "v1.43.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/sdk",
"direct": false,
"version": "v1.43.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/trace",
"direct": false,
"version": "v1.43.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/proto/otlp",
"direct": false,
"version": "v1.10.0",
"ecosystem": "go"
},
{
"name": "go.uber.org/multierr",
"direct": false,
"version": "v1.11.0",
"ecosystem": "go"
},
{
"name": "go.uber.org/zap",
"direct": false,
"version": "v1.27.1",
"ecosystem": "go"
},
{
"name": "go.yaml.in/yaml/v2",
"direct": false,
"version": "v2.4.3",
"ecosystem": "go"
},
{
"name": "go.yaml.in/yaml/v3",
"direct": false,
"version": "v3.0.4",
"ecosystem": "go"
},
{
"name": "golang.org/x/exp",
"direct": false,
"version": "v0.0.0-20240719175910-8a7402abbf56",
"ecosystem": "go"
},
{
"name": "golang.org/x/mod",
"direct": false,
"version": "v0.35.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/net",
"direct": false,
"version": "v0.55.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sync",
"direct": false,
"version": "v0.20.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sys",
"direct": false,
"version": "v0.45.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/term",
"direct": false,
"version": "v0.43.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.37.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/time",
"direct": false,
"version": "v0.14.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/tools",
"direct": false,
"version": "v0.44.0",
"ecosystem": "go"
},
{
"name": "gomodules.xyz/jsonpatch/v2",
"direct": false,
"version": "v2.5.0",
"ecosystem": "go"
},
{
"name": "google.golang.org/genproto/googleapis/api",
"direct": false,
"version": "v0.0.0-20260401024825-9d38bb4040a9",
"ecosystem": "go"
},
{
"name": "google.golang.org/genproto/googleapis/rpc",
"direct": false,
"version": "v0.0.0-20260401024825-9d38bb4040a9",
"ecosystem": "go"
},
{
"name": "google.golang.org/grpc",
"direct": false,
"version": "v1.80.0",
"ecosystem": "go"
},
{
"name": "google.golang.org/protobuf",
"direct": false,
"version": "v1.36.12-0.20260120151049-f2248ac996af",
"ecosystem": "go"
},
{
"name": "gopkg.in/evanphx/json-patch.v4",
"direct": false,
"version": "v4.13.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/inf.v0",
"direct": false,
"version": "v0.9.1",
"ecosystem": "go"
},
{
"name": "gopkg.in/yaml.v3",
"direct": false,
"version": "v3.0.1",
"ecosystem": "go"
},
{
"name": "k8s.io/apiserver",
"direct": false,
"version": "v0.35.6",
"ecosystem": "go"
},
{
"name": "k8s.io/component-base",
"direct": false,
"version": "v0.35.6",
"ecosystem": "go"
},
{
"name": "k8s.io/klog/v2",
"direct": false,
"version": "v2.140.0",
"ecosystem": "go"
},
{
"name": "k8s.io/kube-openapi",
"direct": false,
"version": "v0.0.0-20260317180543-43fb72c5454a",
"ecosystem": "go"
},
{
"name": "k8s.io/streaming",
"direct": false,
"version": "v0.36.2",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/apiserver-network-proxy/konnectivity-client",
"direct": false,
"version": "v0.31.2",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/cluster-api",
"direct": false,
"version": "v1.13.3",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/json",
"direct": false,
"version": "v0.0.0-20250730193827-2d320260d730",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/randfill",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/structured-merge-diff/v6",
"direct": false,
"version": "v6.4.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/yaml",
"direct": false,
"version": "v1.6.0",
"ecosystem": "go"
}
],
"collected": true,
"truncated": false,
"total_count": 100,
"direct_count": 13,
"indirect_count": 87
}
},
"maintainership": {
"issues": {
"open_prs": 10,
"merged_prs": 32,
"open_issues": 11,
"closed_ratio": 0.154,
"closed_issues": 2,
"closed_unmerged_prs": 4
},
"bus_factor": 2,
"bot_contributors": 1,
"top_contributors": [
{
"type": "User",
"login": "NekoHK",
"commits": 25,
"avatar_url": "https://avatars.githubusercontent.com/u/171052788?v=4"
},
{
"type": "User",
"login": "shogom2",
"commits": 20,
"avatar_url": "https://avatars.githubusercontent.com/u/51180396?v=4"
},
{
"type": "User",
"login": "hase1128",
"commits": 15,
"avatar_url": "https://avatars.githubusercontent.com/u/12468999?v=4"
},
{
"type": "User",
"login": "motooka79",
"commits": 6,
"avatar_url": "https://avatars.githubusercontent.com/u/243475664?v=4"
},
{
"type": "User",
"login": "mgazz",
"commits": 6,
"avatar_url": "https://avatars.githubusercontent.com/u/7439261?v=4"
},
{
"type": "User",
"login": "gaoaF",
"commits": 4,
"avatar_url": "https://avatars.githubusercontent.com/u/202602791?v=4"
},
{
"type": "User",
"login": "tmkymst",
"commits": 3,
"avatar_url": "https://avatars.githubusercontent.com/u/191110139?v=4"
},
{
"type": "User",
"login": "wilkowskia",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/107406329?v=4"
},
{
"type": "User",
"login": "christian-pinto",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/55737893?v=4"
},
{
"type": "User",
"login": "ibm-open-source-bot",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/66631603?v=4"
}
],
"contributors_sampled": 12,
"top_contributor_share": 0.298
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"ci.yaml",
"sbom.yml",
"scorecard.yml"
],
"has_docs_dir": false,
"linter_configs": [
".golangci.yml"
],
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"go.sum"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 5,
"reason": "branch protection is not maximal on development and all release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 8,
"reason": "12 out of 15 merged PRs checked by a CI test -- score normalized to 8",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 2,
"reason": "badge detected: InProgress",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 10,
"reason": "all changesets reviewed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 10,
"reason": "project has 3 contributing companies or organizations -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 10,
"reason": "update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 4,
"reason": "dependency not pinned by hash detected -- score normalized to 4",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "SAST tool is not run on all commits -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 10,
"reason": "security policy file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": 8,
"reason": "1 out of the last 1 releases have a total of 1 signed artifacts.",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 10,
"reason": "GitHub workflow tokens follow principle of least privilege",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 1,
"reason": "9 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "38251b7f94ea6719492c0ea186fad4d21ec3f962",
"ran_at": "2026-08-01T10:39:59Z",
"aggregate_score": 7.2,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": true,
"has_dependabot_config": true
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-31T10:08:34Z",
"oldest_open_prs": [
{
"number": 47,
"created_at": "2026-07-16T04:33:23Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 49,
"created_at": "2026-07-16T04:33:39Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 50,
"created_at": "2026-07-16T04:33:47Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 51,
"created_at": "2026-07-16T04:33:54Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 52,
"created_at": "2026-07-16T04:33:58Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 53,
"created_at": "2026-07-16T05:21:28Z",
"last_comment_at": "2026-07-16T12:37:43Z",
"last_comment_author": "wilkowskia"
},
{
"number": 56,
"created_at": "2026-07-23T04:33:16Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 57,
"created_at": "2026-07-23T04:33:21Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 58,
"created_at": "2026-07-23T04:33:31Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 59,
"created_at": "2026-07-30T04:33:31Z",
"last_comment_at": null,
"last_comment_author": null
}
],
"last_merged_pr_at": "2026-07-21T03:20:12Z",
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": [
{
"number": 2,
"created_at": "2024-06-17T05:18:23Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 3,
"created_at": "2024-06-17T05:23:02Z",
"last_comment_at": "2024-06-19T04:51:04Z",
"last_comment_author": "hase1128"
},
{
"number": 4,
"created_at": "2024-06-17T05:26:55Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 5,
"created_at": "2024-06-17T05:34:48Z",
"last_comment_at": "2024-06-28T13:32:32Z",
"last_comment_author": "hase1128"
},
{
"number": 6,
"created_at": "2024-09-04T12:03:06Z",
"last_comment_at": "2024-09-19T08:21:15Z",
"last_comment_author": "hase1128"
},
{
"number": 8,
"created_at": "2024-09-23T13:43:04Z",
"last_comment_at": "2024-09-24T07:51:37Z",
"last_comment_author": "fj-zhang-lei"
},
{
"number": 9,
"created_at": "2024-09-23T15:16:45Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 11,
"created_at": "2025-03-10T07:36:58Z",
"last_comment_at": "2025-05-12T05:51:43Z",
"last_comment_author": "gaoaF"
},
{
"number": 16,
"created_at": "2026-02-17T11:54:25Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 22,
"created_at": "2026-03-12T09:59:23Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 37,
"created_at": "2026-04-07T09:04:13Z",
"last_comment_at": "2026-04-08T02:57:36Z",
"last_comment_author": "shogom2"
}
]
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/CoHDI/composable-resource-operator",
"host": "github.com",
"name": "composable-resource-operator",
"owner": "CoHDI"
},
"metrics": {
"overall": {
"key": "overall",
"band": "excellent",
"name": "Overall health",
"note": "The weighted overall 69 is calibrated to 81 on the published index scale (record calibration 2026-08-02).",
"notes": [
{
"code": "overall_calibration",
"params": {
"raw": 69,
"calibrated": 81,
"calibration": "2026-08-02"
}
}
],
"value": 81,
"inputs": {
"security": 78,
"vitality": 80,
"community": 58,
"governance": 64,
"calibration": "2026-08-02",
"engineering": 68,
"ai_readiness": 65,
"weighted_overall_raw": 69
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "excellent",
"name": "Vitality",
"value": 80,
"weight": 0.21,
"metrics": [
{
"key": "development_activity",
"band": "good",
"name": "Development activity",
"note": null,
"notes": [],
"value": 73,
"inputs": {
"commits_last_year": 89,
"human_commit_share": 0.884,
"days_since_last_push": 2,
"active_weeks_last_year": 14
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 2 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 2
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "14/52 weeks with commits",
"points": 9.7,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 14
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "89 commits in the last year",
"points": 17.6,
"status": "partial",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 89
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": null,
"notes": [],
"value": 91,
"inputs": {
"releases_count": 4,
"latest_release_tag": "v0.2.1",
"releases_from_tags": false,
"days_since_latest_release": 11,
"mean_days_between_releases": 94.9
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "4 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 4
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 11 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 11
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~94.9 days",
"points": 19.8,
"status": "partial",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 94.9
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "1 out of the last 1 releases have a total of 1 signed artifacts.",
"points": 8,
"status": "partial",
"details": [],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "exceptional",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 14,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 14 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 14
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "moderate",
"name": "Community & Adoption",
"value": 58,
"weight": 0.17,
"metrics": [
{
"key": "popularity",
"band": "at_risk",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 34,
"inputs": {
"forks": 9,
"stars": 26,
"watchers": 5,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "26 stars",
"points": 22.7,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 26
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "9 forks",
"points": 7.5,
"status": "partial",
"details": [
{
"code": "forks",
"params": {
"count": 9
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "5 watchers",
"points": 3.3,
"status": "partial",
"details": [
{
"code": "watchers",
"params": {
"count": 5
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "excellent",
"name": "Community health",
"note": null,
"notes": [],
"value": 85,
"inputs": {
"has_readme": true,
"has_license": true,
"readme_badges": null,
"has_contributing": true,
"has_issue_template": false,
"has_code_of_conduct": true,
"readme_badge_services": [],
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (Apache-2.0)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "Apache-2.0"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 18,
"status": "met",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 13.5,
"status": "met",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 64,
"weight": 0.23,
"metrics": [
{
"key": "maintainer_resilience",
"band": "moderate",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 64,
"inputs": {
"bus_factor": 2,
"contributors_sampled": 12,
"top_contributor_share": 0.298
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "2 contributor(s) cover half of all commits",
"points": 25.2,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 2
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 30% of commits",
"points": 15.8,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 30
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "12 contributors",
"points": 13.5,
"status": "met",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 12
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 3 contributing companies or organizations -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "moderate",
"name": "Issue & PR responsiveness",
"note": "Excluded from scoring (no data or not applicable): Newcomer PR acceptance. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"newcomer_pr_acceptance"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 55,
"inputs": {
"merged_prs": 32,
"open_issues": 11,
"closed_issues": 2,
"prs_merged_7d": null,
"prs_decided_7d": null,
"prs_merged_30d": null,
"prs_decided_30d": null,
"issue_closed_ratio": 0.154,
"closed_unmerged_prs": 4,
"first_time_authors_30d": null,
"first_time_prs_merged_30d": null,
"first_time_prs_decided_30d": null
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "15% of issues closed",
"points": 6.5,
"status": "partial",
"details": [
{
"code": "issues_closed_share",
"params": {
"share": 15
}
}
],
"max_points": 42
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "32/36 decided PRs merged",
"points": 26.7,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 32,
"decided": 36
}
}
],
"max_points": 30
},
{
"key": "newcomer_pr_acceptance",
"name": "Newcomer PR acceptance",
"detail": "no first-time contributor's PR decided in 30d",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_newcomer_prs",
"params": {
"days": 30
}
}
],
"max_points": 13
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "all changesets reviewed",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "moderate",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 51,
"inputs": {
"followers": 42,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "CoHDI",
"public_repos": 8,
"account_age_days": 406
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "42 followers of CoHDI",
"points": 11.7,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 42,
"login": "CoHDI"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "8 public repos, account ~1 yr old",
"points": 9.2,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 8
}
},
{
"code": "account_age_years",
"params": {
"years": 1
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 92,
"inputs": {
"packages": [
"github.com/CoHDI/composable-resource-operator"
],
"ecosystems": "go",
"any_deprecated": false,
"min_days_since_publish": 11
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on go",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "go"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 11 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 11
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "4 published versions",
"points": 12,
"status": "partial",
"details": [
{
"code": "published_versions",
"params": {
"count": 4
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "good",
"name": "Engineering Quality",
"value": 68,
"weight": 0.19,
"metrics": [
{
"key": "engineering_practices",
"band": "excellent",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 80,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "3 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 3
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": ".golangci.yml",
"points": 16,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".golangci.yml"
}
}
],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "12 out of 15 merged PRs checked by a CI test -- score normalized to 8",
"points": 16,
"status": "partial",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "moderate",
"name": "Documentation",
"note": null,
"notes": [],
"value": 50,
"inputs": {
"topics": [],
"has_wiki": true,
"homepage": null,
"has_readme": true,
"has_docs_dir": false,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "good",
"name": "Security",
"value": 78,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "good",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): Packaging. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"packaging"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 73,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 17,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 1,
"scorecard_aggregate": 7.2
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection is not maximal on development and all release branches",
"points": 3.8,
"status": "partial",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "12 out of 15 merged PRs checked by a CI test -- score normalized to 8",
"points": 2,
"status": "partial",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "badge detected: InProgress",
"points": 0.5,
"status": "partial",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "all changesets reviewed",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 3 contributing companies or organizations -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "update tool detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 4",
"points": 2,
"status": "partial",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is not run on all commits -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file detected",
"points": 5,
"status": "met",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "1 out of the last 1 releases have a total of 1 signed artifacts.",
"points": 6,
"status": "partial",
"details": [],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "GitHub workflow tokens follow principle of least privilege",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "9 existing vulnerabilities detected",
"points": 0.8,
"status": "partial",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "exceptional",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 100 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"indirect_dependencies_free_of_known_advisories",
"no_advisories_left_outstanding"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_repository",
"params": {
"assessed": 100
}
},
{
"code": "advisories_repo_graph_caveat",
"params": {}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 100,
"inputs": {
"source": "osv",
"advisories": 6,
"affected_packages": 5,
"assessed_packages": 100,
"unassessed_packages": 0,
"affected_by_severity": "critical 1, moderate 1, unknown 3",
"direct_affected_packages": 0
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "no direct dependency carries a known advisory",
"points": 35,
"status": "met",
"details": [
{
"code": "no_direct_advisories",
"params": {}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "transitive set not separable from development and test dependencies in this scope",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_scope_not_separable",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory carries a publication date",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_no_publication_date",
"params": {}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "exceptional",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 100,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "exceptional",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"commit_weight_rule": {
"min_commits": 50,
"min_commit_share": 0.1
},
"review_only_matches": 0,
"below_threshold_exposures": [],
"assessed_self_published_locations": 9
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "good",
"name": "AI Readiness",
"value": 65,
"weight": 0.04,
"metrics": [
{
"key": "ai_agent_context",
"band": "weak",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 38,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.714,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "no CLAUDE.md / AGENTS.md / editor rules",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_instructions",
"params": {}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "60 of 84 human commits state their intent (structured subject or explanatory body)",
"points": 38.1,
"status": "partial",
"details": [
{
"code": "legible_history",
"params": {
"legible": 60,
"sampled": 84
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "excellent",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 84,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"go.sum"
],
"has_dockerfile": true,
"typed_language": true,
"bootstrap_files": [
"Makefile"
],
"has_devcontainer": false,
"has_linter_config": true,
"typecheck_configs": [],
"agent_commit_share": 0,
"toolchain_manifests": [
"go.mod"
],
"dependency_bot_commit_share": 0.116
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": "Makefile",
"points": 18,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "Makefile"
}
}
],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": ".golangci.yml",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".golangci.yml"
}
}
],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "Go (statically typed)",
"points": 11,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "Dockerfile, lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "Dockerfile, lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "no agent-authored commits among the last 95",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_authored_commits",
"params": {
"sampled": 95
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "11 of the last 95 commits are automated dependency updates",
"points": 8,
"status": "met",
"details": [
{
"code": "dependency_bot_commits",
"params": {
"count": 11,
"sampled": 95
}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 4",
"points": 4,
"status": "partial",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "exceptional",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 96,
"inputs": {
"primary_language": "Go",
"largest_source_bytes": 381713,
"source_files_sampled": 30,
"oversized_source_files": 2
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "Go (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "2/30 source files over 60KB",
"points": 51.3,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 30,
"oversized": 2
}
}
],
"max_points": 55
}
]
},
{
"key": "ai_interfaces",
"band": "weak",
"name": "Machine-readable interfaces",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"example_dirs": [
"examples",
"samples"
],
"has_mcp_signal": false,
"api_schema_files": []
},
"components": [
{
"key": "api_schema_openapi_graphql_proto",
"name": "API schema (OpenAPI/GraphQL/proto)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 40
},
{
"key": "mcp_server",
"name": "MCP server",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "runnable_examples",
"name": "Runnable examples",
"detail": "examples, samples",
"points": 40,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "examples, samples"
}
}
],
"max_points": 40
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight: agent tooling is a real maintenance signal, but its absence must never gate the top of the scale (calibration saturates at raw 91, so 100/100 remains reachable with AI Readiness at zero)."
}
],
"classification": {
"top": [],
"labels": [],
"scores": {
"library": 3
},
"primary": null,
"evidence": [
{
"tier": "distribution",
"label": "library",
"source": "registry:go",
"weight": 3
}
],
"artifacts": [],
"confidence": "none",
"host_extension": false,
"runs_as_process": false,
"consumed_by_code": false
},
"metrics_version": "2.5.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
],
"report_type": "repository",
"generated_at": "2026-08-01T10:40:20.703595Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/c/CoHDI/composable-resource-operator.svg",
"full_name": "CoHDI/composable-resource-operator",
"license_state": "standard",
"license_spdx": "Apache-2.0"
}