Öffentliches Register
Software-GesundheitsberichtSchema 0.30.0 · Metriken 2.5.0 · 2026-08-03 00:15 UTC

DevEstacion / light-mem

JavaScript · TypeScriptApache-2.0★ 0 Sterne⑂ 0 Forksseit Juni 2026Auf GitHub ansehen ↗
ArtKommandozeilenwerkzeugBibliothekMCP-ServerNetzwerkdienstWeboberflächewie das ermittelt wird

DevEstacion/light-mem erreicht einen Gesundheitsindex von 53 von 100 und liegt damit im Bereich Mittel. Am stärksten schneidet es bei Vitality (70/100) ab, am schwächsten bei Community & Adoption (32/100). Zuletzt vor 10 Tagen aktualisiert. Ein einzelner Mitwirkender trägt den Großteil der jüngsten Arbeit.

53
gesamt / 100
Mittel

Software-Gesundheitsindex

Metriken werden auf einer standardisierten Skala von 1–100 in gewichtete Kategorien gruppiert. Der Gesamtwert beginnt als ihr gewichtetes Mittel, kalibriert auf die Verteilung des öffentlichen Registers, sodass die Stufen Perzentilbedeutung tragen; sobald öffentliche Evidenz die Richtlinie für Hochrisikojurisdiktionen auslöst, wird die Bewertung angepasst und erhält die Obergrenze Gefährdet von 34.

53
Außergewöhnlich93-100Die Spitzengruppe des Registers (≈ obere 5 %); erfüllt im Wesentlichen alle geprüften Kriterien
Exzellent80-92Durchgehend stark; geringfügige Lücken
Gut65-79Gesund; Lücken sind begrenzt und beherrschbar
Mittel50-64Akzeptabel mit deutlichen Lücken; Überprüfung empfohlen
Schwach35-49Wesentliche Schwächen in mehreren Bereichen
Gefährdet20-34Erhebliche Schwächen; eine Übernahme erfordert Vorsicht
Kritisch1-19Schwerwiegende Probleme (aufgegeben, nur ein Maintainer, keine Hygiene)
VitalitätCommunity &VerbreitungNachhaltigkeit &GovernanceEngineering-QualitätSicherheitAI Readiness

Bewertungsprofil

Jede Achse ist eine Kategorie. Die Form zählt mehr als der Durchschnitt — ein gesundes Projekt füllt die gesamte Fläche, während ein Profil aus Spitzen und Kratern bedeutet, dass Stärke in einer Dimension Risiken in einer anderen verdeckt.

Der gewichtete Gesamtwert 52 wird auf der veröffentlichten Indexskala auf 53 kalibriert (Register-Kalibrierung 2026-08-02).

Eigentümerschaft

Ronald EstacionPersönliches Konto
0 Follower33 öffentliche Reposseit Sept. 2013

Dieses Repository gehört einem persönlichen Konto. Ein Projekt mit nur einem Eigentümer trägt ein höheres Kontinuitätsrisiko als ein organisationsgetragenes.

Paket-Ökosysteme

RegistryPaketVersionDownloads / MonatVersionenZuletzt veröffentlichtTags
npmlight-mem0.2.262.17835vor 10 Tagenclaudeclaude-codeopencodeclaude-agent-sdkmcppluginmemoryembeddingsmodel2vecsqlitetranscripttypescriptnodejs

Metriken nach Kategorie

Vitalität

Lebt das Projekt — wird Code geschrieben und werden Releases ausgeliefert?

70Gut · 21 % des Gesamtindex
Wie die Bewertung erfolgt
28.8/36Push-Aktualität — letzter Push vor 10 Tagen
4.2/36Commit-Rhythmus — 6/52 Wochen mit Commits
17.1/18Commit-Volumen — 79 Commits im letzten Jahr
0/10OpenSSF Scorecard: Maintained — project was created within the last 90 days. Please review its contents carefully
Verwendete Eingangsdaten
commits_last_year79
human_commit_share0,684
days_since_last_push10
active_weeks_last_year6

Release-Disziplin

100Außergewöhnlich
Wie die Bewertung erfolgt
27/27Liefert Releases aus — 35 Releases veröffentlicht
36/36Release-Aktualität — letztes Release vor 10 Tagen
27/27Release-Rhythmus — ein Release etwa alle 0,4 Tage
0/10OpenSSF Scorecard: Signed-Releases — keine Daten
Verwendete Eingangsdaten
releases_count35
latest_release_tagv0.2.26
releases_from_tagsnein
days_since_latest_release10
mean_days_between_releases0,4
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): OpenSSF Scorecard: Signed-Releases. Die verbleibenden Gewichte wurden renormalisiert.

Community & Verbreitung

Hat das Projekt Nutzer, Downloads, Aufmerksamkeit und ein einladendes Umfeld für Beitragende?

32Gefährdet · 17 % des Gesamtindex
Wie die Bewertung erfolgt
0/60Stars — 0 Stars
0/25Forks — 0 Forks
0/15Watcher — 0 Watcher
Verwendete Eingangsdaten
forks0
stars0
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
Wie die Bewertung erfolgt
22.5/22.5README
22.5/22.5Lizenz — anerkannte Lizenz (Apache-2.0)
0/18CONTRIBUTING-Leitfaden
0/13.5Verhaltenskodex
0/7.2Issue-Vorlage
0/6.3PR-Vorlage
Verwendete Eingangsdaten
has_readmeja
has_licenseja
readme_badges3
has_contributingnein
has_issue_templatenein
has_code_of_conductnein
readme_badge_servicesshields.io
has_pull_request_templatenein
Wie die Bewertung erfolgt
44.5/80Downloads pro Monat — 2.178 Downloads/Monat über npm
0/20Abhängige in der Registry — von diesem Ökosystem nicht ausgewiesen
Verwendete Eingangsdaten
packageslight-mem
dependents
ecosystemsnpm
total_downloads
monthly_downloads2.178
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Abhängige in der Registry. Die verbleibenden Gewichte wurden renormalisiert.

Nachhaltigkeit & Governance

Überdauert das Projekt die Menschen, die es tragen — Bus-Faktor, Reaktionsfähigkeit, Trägerschaft und Paketpflege?

50Mittel · 23 % des Gesamtindex
Wie die Bewertung erfolgt
9/54Bus-Faktor — 1 Beitragende decken die Hälfte aller Commits ab
0/22.5Commit-Verteilung — wichtigste beitragende Person verfasste 100 % der Commits
1.4/13.5Breite der Beitragenden — 1 Beitragende
0/10OpenSSF Scorecard: Contributors — project has 0 contributing companies or organizations -- score normalized to 0
Verwendete Eingangsdaten
bus_factor1
contributors_sampled1
top_contributor_share1
Wie die Bewertung erfolgt
0/42Issue-Lösungsquote — keine Issues oder keine Daten
30/30PR-Annahme — 3/3 entschiedene PRs gemergt
0/13Newcomer PR acceptance — kein PR eines Erstbeitragenden in 30 Tagen entschieden
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Verwendete Eingangsdaten
merged_prs3
open_issues0
closed_issues0
prs_merged_7d0
prs_decided_7d0
prs_merged_30d0
prs_decided_30d0
issue_closed_ratio
closed_unmerged_prs0
first_time_authors_30d0
first_time_prs_merged_30d0
first_time_prs_decided_30d0
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Issue-Lösungsquote, newcomer_pr_acceptance. Die verbleibenden Gewichte wurden renormalisiert.
Wie die Bewertung erfolgt
10/30Organisatorische Trägerschaft — persönliches (Nutzer-)Konto
0/20Verifizierte Domain — für Nutzerkonten nicht anwendbar
0/25Reichweite des Inhabers — 0 Follower von DevEstacion
23.2/25Kontohistorie — 33 öffentliche Repos, Kontoalter ca. 12 Jahre
Verwendete Eingangsdaten
followers0
owner_typeUser
is_verified
owner_loginDevEstacion
public_repos33
account_age_days4.699
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Verifizierte Domain. Die verbleibenden Gewichte wurden renormalisiert.

Paketpflege

100Außergewöhnlich
Wie die Bewertung erfolgt
25/25Veröffentlicht & auflösbar — 1 Paket(e) auf npm
35/35Veröffentlichungsaktualität — letzte Veröffentlichung vor 10 Tagen
20/20Versionshistorie — 35 veröffentlichte Versionen
20/20Nicht veraltet — aktiv, nicht veraltet oder zurückgezogen
Verwendete Eingangsdaten
packageslight-mem
ecosystemsnpm
any_deprecatednein
min_days_since_publish10

Engineering-Qualität

Sind grundlegende Engineering- und Dokumentationspraktiken vorhanden?

58Mittel · 19 % des Gesamtindex
Wie die Bewertung erfolgt
24/24CI-Workflows — 1 Workflow(s)
24/24Tests vorhanden
0/16Linter-Konfiguration
0/9.6Pre-Commit-Hooks
0/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — keine Daten
Verwendete Eingangsdaten
has_cija
has_testsja
has_editorconfignein
has_linter_confignein
has_precommit_confignein
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): OpenSSF Scorecard: CI-Tests. Die verbleibenden Gewichte wurden renormalisiert.
Wie die Bewertung erfolgt
30/30README
25/25Dokumentationsverzeichnis
0/15Dokumentations-/Homepage-Site
0/10Repository-Beschreibung
0/10Topics
0/10Wiki
Verwendete Eingangsdaten
topics
has_wikinein
homepage
has_readmeja
has_docs_dirja
has_descriptionnein

Sicherheit

Sind die sichtbaren Sicherheits- und Lieferkettenpraktiken belastbar, ohne ungeklärte Exposition gegenüber Hochrisikojurisdiktionen?

42Schwach · 16 % des Gesamtindex

Sicherheitslage

27Gefährdet
Wie die Bewertung erfolgt
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — keine Daten
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
0/2.5Contributors — project has 0 contributing companies or organizations -- score normalized to 0
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5Lizenz — license file detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
0/5Packaging — keine Daten
2/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 4
0/5SAST — no SAST tool detected
2/5Security-Policy — security policy file detected
0/7.5Signed-Releases — keine Daten
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 13 existing vulnerabilities detected
Verwendete Eingangsdaten
sourceopenssf_scorecard
checks_evaluated15
scorecard_versionv5.5.0
checks_inconclusive3
scorecard_aggregate2,7
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): ci_tests, packaging, signed_releases. Die verbleibenden Gewichte wurden renormalisiert.

Abhängigkeits-Advisories

100Außergewöhnlich
Wie die Bewertung erfolgt
35/35Direkte Abhängigkeiten ohne bekannte Advisories — keine direkte Abhängigkeit trägt ein bekanntes Advisory
25/25Indirekte Abhängigkeiten ohne bekannte Advisories — keine indirekte Abhängigkeit trägt ein bekanntes Advisory
0/40Keine offenen Advisories — kein Advisory trägt ein Veröffentlichungsdatum
Verwendete Eingangsdaten
sourceosv
advisories0
affected_packages0
assessed_packages155
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Keine offenen Advisories. Die verbleibenden Gewichte wurden renormalisiert. Abgeglichen wurde die Laufzeit-Abhängigkeitshülle von npm:light-mem@0.2.26 — das, was die Installation des veröffentlichten Pakets nach sich zieht — mit 155 Paketen. Erreichbarkeit wird nicht analysiert.

AI Readiness

Wie gut ist das Repository dafür ausgestattet, mit KI-Coding-Agenten entwickelt und gepflegt zu werden? Trägt ein bewusst kleines Gewicht (4 %): Agenten-Tooling ist ein echtes Pflegesignal, doch ein Repository ohne jedes Signal kann weiterhin 100/100 erreichen.

63Mittel · 4 % des Gesamtindex
Wie die Bewertung erfolgt
45/45Agentenanweisungen — .github/copilot-instructions.md, AGENTS.md, CLAUDE.md
0/15Maschinenlesbare Doku (llms.txt)
40/40Lesbare Commit-Historie — 54 von 54 menschlichen Commits benennen ihre Absicht (strukturierter Betreff oder erläuternder Text)
Verwendete Eingangsdaten
has_llms_txtnein
legible_history_share1
agent_instruction_files.github/copilot-instructions.md, AGENTS.md, CLAUDE.md
agent_instruction_max_bytes5.192
Wie die Bewertung erfolgt
0/18Bootstrap mit einem Befehl
22/22Automatisierte Tests
0/11Lint-/Format-Konfiguration
11/11Statische Typprüfung — src/ui/viewer/tsconfig.json, tsconfig.json
10/10Reproduzierbare Umgebung — lockfile
10/10Belegte Agentenpraxis — 25 der letzten 79 Commits von Agenten verfasst oder ihnen zugeschrieben
0/8Automatisierte Wartung — keine automatisierten Abhängigkeits-Updates beobachtet
4/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 4
Verwendete Eingangsdaten
has_nixnein
has_testsja
lockfilespackage-lock.json
has_dockerfilenein
typed_languagenein
bootstrap_files
has_devcontainernein
has_linter_confignein
typecheck_configssrc/ui/viewer/tsconfig.json, tsconfig.json
agent_commit_share0,316
toolchain_manifests
dependency_bot_commit_share0
Wie die Bewertung erfolgt
27/45Typprüfbarer Code — JavaScript mit Typprüfungs-Konfiguration (src/ui/viewer/tsconfig.json, tsconfig.json)
54/55Handhabbare Dateigrößen — 9/477 Quelldateien über 60 KB
Verwendete Eingangsdaten
primary_languageJavaScript
largest_source_bytes2.349.721
source_files_sampled477
oversized_source_files9
Wie die Bewertung erfolgt
0/40API-Schema (OpenAPI/GraphQL/proto)
20/20MCP-Server
0/40Lauffähige Beispiele
Verwendete Eingangsdaten
example_dirs
has_mcp_signalja
api_schema_files

Eckdaten

0GitHub-Sterne
1Mitwirkende
79Commits, letzte 12 Monate
10Tage seit letztem Push
35Releases
1Bus-Faktor
0offene Issues
npmPaket-Ökosysteme

Warnungen zur Datenerhebung

  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Weitere Details

OpenSSF Scorecard 2.7 / 10
2.7Gesamtwert

Unabhängige, werkzeugneutrale Sicherheitsbewertung durch das quelloffene OpenSSF Scorecard. Jede Prüfung honoriert eine Sicherheits-Praxis, nicht das Werkzeug eines bestimmten Anbieters. Prüfungen, die Scorecard nicht ermitteln konnte, sind mit k. A. markiert und vom Sicherheitswert ausgeschlossen (nie als null gezählt).Scorecard v5.5.0 · 2026-08-03 00:15 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
k. A.CI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
0Contributorsproject has 0 contributing companies or organizations -- score normalized to 0
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
k. A.Packagingpackaging workflow not detected
4Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 4
0SASTno SAST tool detected
4Security-Policysecurity policy file detected
k. A.Signed-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities13 existing vulnerabilities detected
Direkte Abhängigkeiten 45
RegistryPaketVersionsvorgabeManifest
npm@anthropic-ai/claude-agent-sdk^0.3.172package.json
npm@better-auth/api-key^1.6.16package.json
npm@clack/prompts^1.3.0package.json
npm@modelcontextprotocol/sdk^1.29.0package.json
npmansi-to-html^0.7.2package.json
npmbetter-auth^1.6.16package.json
npmcors^2.8.6package.json
npmdompurify^3.4.9package.json
npmexpress^5.2.1package.json
npmglob^13.0.6package.json
npmhandlebars^4.7.9package.json
npmpicocolors^1.1.1package.json
npmreact^19.2.6package.json
npmreact-dom^19.2.6package.json
npmshell-quote^1.8.3package.json
npmyaml^2.8.4package.json
npmzod^4.4.3package.json
npmzod-to-json-schema^3.25.2package.json
npmzod^4.4.3plugin/package.json
npmtree-sitter-cli^0.26.5plugin/package.json
npmtree-sitter-c^0.24.1plugin/package.json
npmtree-sitter-cpp^0.23.4plugin/package.json
npmtree-sitter-go^0.25.0plugin/package.json
npmtree-sitter-java^0.23.5plugin/package.json
npmtree-sitter-javascript^0.25.0plugin/package.json
npmtree-sitter-python^0.25.0plugin/package.json
npmtree-sitter-ruby^0.23.1plugin/package.json
npmtree-sitter-rust^0.24.0plugin/package.json
npmtree-sitter-typescript^0.23.2plugin/package.json
npmtree-sitter-kotlin^0.3.8plugin/package.json
npmtree-sitter-swift^0.7.1plugin/package.json
npmtree-sitter-php^0.24.2plugin/package.json
npmtree-sitter-elixir^0.3.5plugin/package.json
npm@tree-sitter-grammars/tree-sitter-lua^0.4.1plugin/package.json
npmtree-sitter-scala^0.24.0plugin/package.json
npmtree-sitter-bash^0.25.1plugin/package.json
npmtree-sitter-haskell^0.23.1plugin/package.json
npm@tree-sitter-grammars/tree-sitter-zig^1.1.2plugin/package.json
npmtree-sitter-css^0.25.0plugin/package.json
npmtree-sitter-scss^1.0.0plugin/package.json
npm@tree-sitter-grammars/tree-sitter-toml^0.7.0plugin/package.json
npm@tree-sitter-grammars/tree-sitter-yaml^0.7.1plugin/package.json
npm@derekstride/tree-sitter-sql^0.3.11plugin/package.json
npm@tree-sitter-grammars/tree-sitter-markdown^0.3.2plugin/package.json
npmshell-quote^1.8.3plugin/package.json
Alle Abhängigkeiten nicht erhoben

Der aufgelöste Abhängigkeitssatz konnte für diesen Bericht nicht erhoben werden: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Abhängigkeits-Advisories 0

Die Installation von npm:light-mem@0.2.26 zieht 155 Pakete nach sich, direkt und transitiv: 0 tragen bekannte Advisories, davon 0 direkte Abhängigkeiten.

Keine bekannten Advisories betreffen die bewerteten Abhängigkeiten.

Ein Advisory bedeutet, dass die im Abhängigkeitsgraphen erfasste Version in den betroffenen Bereich eines Advisories fällt. Erreichbarkeit wird nicht analysiert, und der Graph enthält Entwicklungs- und Test-Pins — ein Fund kann das Werkzeug betreffen und nicht die ausgelieferte Software.

JSON-Rohbericht maschinenlesbar
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 37468,
      "has_wiki": false,
      "homepage": null,
      "languages": {
        "HTML": 153790,
        "Shell": 21372,
        "JavaScript": 3497600,
        "TypeScript": 2778566
      },
      "pushed_at": "2026-07-23T20:50:45Z",
      "created_at": "2026-06-16T21:26:42Z",
      "owner_type": "User",
      "updated_at": "2026-07-23T20:50:39Z",
      "description": null,
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "JavaScript",
      "significant_languages": [
        "JavaScript",
        "TypeScript"
      ]
    },
    "owner": {
      "blog": null,
      "name": "Ronald Estacion",
      "type": "User",
      "login": "DevEstacion",
      "company": null,
      "location": "Somewhere",
      "followers": 0,
      "avatar_url": "https://avatars.githubusercontent.com/u/5501145?v=4",
      "created_at": "2013-09-20T11:28:43Z",
      "is_verified": null,
      "public_repos": 33,
      "account_age_days": 4699
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.2.26",
          "kind": "patch",
          "published_at": "2026-07-23T20:50:49Z"
        },
        {
          "tag": "v0.2.25",
          "kind": "patch",
          "published_at": "2026-07-21T15:59:22Z"
        },
        {
          "tag": "v0.2.24",
          "kind": "patch",
          "published_at": "2026-07-21T15:52:20Z"
        },
        {
          "tag": "v0.2.23",
          "kind": "patch",
          "published_at": "2026-07-21T08:17:06Z"
        },
        {
          "tag": "v0.2.22",
          "kind": "patch",
          "published_at": "2026-07-21T08:05:43Z"
        },
        {
          "tag": "v0.2.21",
          "kind": "patch",
          "published_at": "2026-07-21T07:53:34Z"
        },
        {
          "tag": "v0.2.20",
          "kind": "patch",
          "published_at": "2026-07-21T07:51:10Z"
        },
        {
          "tag": "v0.2.19",
          "kind": "patch",
          "published_at": "2026-07-21T07:45:48Z"
        },
        {
          "tag": "v0.2.18",
          "kind": "patch",
          "published_at": "2026-07-21T00:51:55Z"
        },
        {
          "tag": "v0.2.17",
          "kind": "patch",
          "published_at": "2026-07-19T21:09:48Z"
        },
        {
          "tag": "v0.2.16",
          "kind": "patch",
          "published_at": "2026-07-19T17:15:01Z"
        },
        {
          "tag": "v0.2.15",
          "kind": "patch",
          "published_at": "2026-07-19T08:48:40Z"
        },
        {
          "tag": "v0.2.14",
          "kind": "patch",
          "published_at": "2026-07-19T08:23:01Z"
        },
        {
          "tag": "v0.2.13",
          "kind": "patch",
          "published_at": "2026-07-12T07:11:56Z"
        },
        {
          "tag": "v0.2.12",
          "kind": "patch",
          "published_at": "2026-06-30T16:45:14Z"
        },
        {
          "tag": "v0.2.11",
          "kind": "patch",
          "published_at": "2026-06-26T23:34:54Z"
        },
        {
          "tag": "v0.2.10",
          "kind": "patch",
          "published_at": "2026-06-19T20:33:00Z"
        },
        {
          "tag": "v0.2.9",
          "kind": "patch",
          "published_at": "2026-06-19T19:53:21Z"
        },
        {
          "tag": "v0.2.8",
          "kind": "patch",
          "published_at": "2026-06-19T19:20:57Z"
        },
        {
          "tag": "v0.2.7",
          "kind": "patch",
          "published_at": "2026-06-19T19:02:40Z"
        },
        {
          "tag": "v0.2.6",
          "kind": "patch",
          "published_at": "2026-06-18T05:44:11Z"
        },
        {
          "tag": "v0.2.5",
          "kind": "patch",
          "published_at": "2026-06-18T05:11:25Z"
        },
        {
          "tag": "v0.2.4",
          "kind": "patch",
          "published_at": "2026-06-17T21:48:08Z"
        },
        {
          "tag": "v0.2.3",
          "kind": "patch",
          "published_at": "2026-06-17T21:39:11Z"
        },
        {
          "tag": "v0.2.2",
          "kind": "patch",
          "published_at": "2026-06-17T21:03:42Z"
        },
        {
          "tag": "v0.2.1",
          "kind": "patch",
          "published_at": "2026-06-17T20:57:14Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2026-06-17T20:09:32Z"
        },
        {
          "tag": "v0.1.7",
          "kind": "patch",
          "published_at": "2026-06-17T19:08:42Z"
        },
        {
          "tag": "v0.1.6",
          "kind": "patch",
          "published_at": "2026-06-17T16:06:09Z"
        },
        {
          "tag": "v0.1.5",
          "kind": "patch",
          "published_at": "2026-06-17T15:46:08Z"
        },
        {
          "tag": "v0.1.4",
          "kind": "patch",
          "published_at": "2026-06-17T15:39:42Z"
        },
        {
          "tag": "v0.1.3",
          "kind": "patch",
          "published_at": "2026-06-17T15:21:29Z"
        },
        {
          "tag": "v0.1.2",
          "kind": "patch",
          "published_at": "2026-06-17T08:32:40Z"
        },
        {
          "tag": "v0.1.1",
          "kind": "patch",
          "published_at": "2026-06-17T08:10:34Z"
        },
        {
          "tag": "v0.1.0",
          "kind": "minor",
          "published_at": "2026-06-17T08:05:07Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "540c0e54b9e85dd8dc65021f06b929d750c69406",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.26 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-23T20:50:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0ae234fb066f954d1038b6965fe6bd7a2b0600c",
          "body": "Reduce light-mem to exactly four supported platforms and introduce a\nper-platform installer strategy registry so shared code is composed and\ndivergent code is split cleanly.\n\nRemoved:\n- Cursor + Windsurf: dead types.ts (zero importers), unused logger\n  Component members, stale comments/compat code.\n\n[…]\nreen. Build-output .cjs bundles intentionally not\ncommitted (regenerated by the release/build-and-sync step, per repo\nconvention).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "refactor(platforms): reduce supported set to claude/grok/codex/opencode",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-07-23T20:48:38Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "8838d243faf360f1ee590c0ca74843b737a75c39",
          "body": "CodexInstaller.ts (landed with the Codex integration) logs with the\n'CODEX' component, but it was never added to the Component union, so\n`npm run typecheck` failed with two TS2345 errors. This blocked the\nhook-launcher branch's Task 3 verification gate. Add 'CODEX' to the\nunion alphabetically.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(logger): add missing 'CODEX' Component so typecheck passes",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-07-23T19:38:14Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "d0e376c257f242ecccba2f7b97363ab80d8524e9",
          "body": "Co-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "test(mcp): lock pure launcher contract",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-23T16:46:11Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "f139273fe429eb9bddc161400706ebbdd0550941",
          "body": "Co-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "test(mcp): lock pure launcher contract",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-23T16:43:54Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "602235a8927e991a745f79cac112d44e0b53c478",
          "body": "Co-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(hooks): restore pure Node launchers",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-23T16:42:41Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "5b2b7dce0243e85274024500b8f7b006a32879fc",
          "body": "Co-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "test(mcp): lock pure launcher contract",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-23T16:38:30Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "aa01e5bc76a83dac5316b7644d5db2f193688fd0",
          "body": "Co-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "test(mcp): lock pure launcher contract",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-23T16:36:27Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "7153325465c4b5d1830c83e8e084390bf0c91ede",
          "body": "Co-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: plan hook launcher regression fix",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-23T16:33:43Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "be9d4ccb1c1b1e691b62d57a9e462849e1b25670",
          "body": "Co-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: specify hook launcher regression fix",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-23T16:33:00Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "a9b6bf4eb9050babebb16dfffae42cc1c0f1ff3f",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.25 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-21T15:59:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b76d749e567b86eca27fabe14f683ea871c8cc5a",
          "body": "…ight_mem_search tool)",
          "is_bot": false,
          "headline": "fix(opencode): drop MCP server registration (plugin already exposes l…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T15:57:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59c07055e7bac4ee420ff44464631e44be029149",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.24 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-21T15:52:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3e0c991cd0205731a51794e1c31dd8bb7d327152",
          "body": "…n entry",
          "is_bot": false,
          "headline": "fix(opencode): single source of truth — local shim only, no npm plugi…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T15:50:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "805c88e65e5b14460e0257a1ffb367a74c512ee9",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.23 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-21T08:16:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "468a7a23dff5ac50199302bccfa60a10981bc69e",
          "body": "… bundle",
          "is_bot": false,
          "headline": "fix(opencode): use .bundle.mjs so plugin auto-loader skips the 322 KB…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T08:15:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "13e57bcd6eeae45a9b01927eeb103258fcc3f17d",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.22 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-21T08:05:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "48cbf3ac873d884ba500caa9b2fe1524dfaddc46",
          "body": "….22)",
          "is_bot": false,
          "headline": "feat(opencode): register MCP search server alongside custom tool (0.2…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T08:04:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f9903727b6d4ebd5b0169a89d56b20eeee95748",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.21 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-21T07:53:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1a239877119e813b0e5e3a533d6e0a396662f1bf",
          "body": "…d) (0.2.21)",
          "is_bot": false,
          "headline": "fix(opencode): silence worker-unreachable logs (cold start is expecte…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T07:51:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "17fc3adfc84f8e77bce989657c9ff2cb4c789248",
          "body": "…d) (0.2.21)",
          "is_bot": false,
          "headline": "fix(opencode): silence worker-unreachable logs (cold start is expecte…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T07:51:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fce3938d1db6c4d06749b487e44b669702fb1510",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.20 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-21T07:50:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f13e982d932c99cfc55c90559a96e9fc0158e00d",
          "body": "…le log (0.2.20)",
          "is_bot": false,
          "headline": "fix(opencode): remove legacy single-file install to stop double conso…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T07:49:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad4d4d06b49f0a31d351dd4d1f03e87dd40615b1",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.19 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-21T07:45:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "df5c12e374ec67da4ea043a5dcc31e86d8f7351b",
          "body": null,
          "is_bot": false,
          "headline": "chore: ignore host runtime state (.omo, .opencode, .agents, .codegraph)",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T07:44:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f8eecb1021f173d35aac5b4195c1c844ab6c8c30",
          "body": "…on (0.2.19)",
          "is_bot": false,
          "headline": "fix(opencode): emit tiny plugin shim so OpenCode shows short annotati…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T07:43:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3ec19e872b98d78be404a10b9f9188566912db35",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.18 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-21T00:51:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "30b541f0e55cb996ce773f2594de4e9b249cfde7",
          "body": "….2.17)\n\nGrok on Windows (and fresh nvm setups) can't find node in the\nhook-inherited PATH. Prepend export PATH=\"$(\\$SHELL -lc 'echo\n\\$PATH' 2>/dev/null):\\$PATH\" — same pattern claude-mem used for\n2 years. Standard env vars ($SHELL, $PATH) are safe for Grok's\n$VAR pre-expansion; only shell-locals trigger the fail-skip bug.\n\nRegenerated plugin/hooks/hooks.json, plugin/.mcp.json, and\nplugin/hooks/codex-hooks.json from canonical shell-template manifest.",
          "is_bot": false,
          "headline": "fix(hooks): add login-shell PATH bootstrap before node -e launcher (0…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-21T00:50:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "23b07ea1cac7f293cf1d9a8e08ad2a0b698bedce",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.17 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-19T21:09:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0c052f67d81174b8f594ddb36c3b37dc4f2cad1d",
          "body": "Grok expands both $VAR and ${VAR} in hook commands and fail-skips when\nunset. Shell-local $_R survived the brace-only fix and still blocked\nPostToolUse. Emit node -e discovery/spawn with zero $ characters so\nClaude, Codex, and Grok all run the same launcher.",
          "is_bot": false,
          "headline": "fix(hooks): pure node -e launcher for Grok (no shell $ vars)",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-19T21:08:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "279c1ead5c0f799ca78dd775aa794fdf2ee3657d",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.16 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-19T17:14:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9f2cf8b5556dff93ff6f4f529770d98dc4b8223b",
          "body": "Grok Build pre-expands ${VAR} in hook command strings and fail-skips when\nunset. ${_R%/} (trailing-slash strip) was reported as \"required env var(s)\nnot set: ${_R}\", so PostToolUse never ran. Replace with sed, flatten nested\nplugin-root defaults, and accept $GROK_PLUGIN_ROOT in the fallback chain.",
          "is_bot": false,
          "headline": "fix(hooks): stop Grok from treating shell locals as required env vars",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-19T17:13:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b0b0b49926a329a0b09200ac3e76dc7530c16c3",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.15 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-19T08:48:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "498e27b6347e262b8597d314c171d87a4c2de023",
          "body": "Wire full capture paths across hosts using each platform's documented\ncontract: Claude/Codex snake_case hooks, Grok camelCase toolResult,\nOpenCode tool.execute.after with platformSource=opencode. Generate\nplugin/hooks/codex-hooks.json, install into ~/.codex/hooks.json, and\ntag platform_source for search filtering.",
          "is_bot": false,
          "headline": "feat(hooks): multi-host parity for Claude, Codex, OpenCode, and Grok",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-19T08:47:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2da76dbda9dd9b54aba60982f8b3de9911da5aec",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.14 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-19T08:22:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "82a534b66b7d28bbcf4f8c1434ad1a4fe27d2cc2",
          "body": "Grok loads the Claude light-mem plugin but feeds camelCase stdin\n(toolName/toolInput/toolResult). The Claude adapter only read\nsnake_case, so observations silently no-op'd under Grok. Dual-read\nfields, tag platformSource as grok via GROK_* env, and accept\nread_file target_file for PreToolUse file context.",
          "is_bot": false,
          "headline": "fix(hooks): accept Grok Build PostToolUse camelCase envelopes",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-19T08:21:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f884f796851f0a7fea06545af4c57099e1f0d33c",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.13 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-12T07:11:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "86dc2f7745266e680838c24646163aa65d368af4",
          "body": null,
          "is_bot": false,
          "headline": "fix(opencode): load Bun-safe memory plugin",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-07-12T07:10:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc7c9fa14c128576e9a90e428aa922049afeeca0",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.12 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-30T16:45:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "188a5857a07cce40116434086979ddccdf408423",
          "body": "Ultraworked with [Sisyphus](https://github.com/code-yeongyu/oh-my-openagent)\n\nCo-authored-by: Sisyphus <clio-agent@sisyphuslabs.ai>",
          "is_bot": false,
          "headline": "fix(claude-marketplace): use local source and ensure cache dir",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-30T16:43:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e5b672a9fc0b32c7c639ce9a4c40a7a6554728e",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.11 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-26T23:34:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b6f0bf17fe03e47b337746af1879b41d1dd4cb5",
          "body": "Record the 2026-06-26 review of upstream thedotmack/claude-mem at\n3fe0725a (v13.8.1): nothing brought over. Worker-restart hardening\nalready present pre-rewrite, bun dependency-closure inapplicable\n(Node-based), codex fix N/A, what-the skill left out by choice.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: track upstream claude-mem sync review (v13.8.1, 3fe0725a)",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-26T23:33:18Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "6735c7183274b1f86548c6796cb4df417d308b6e",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.10 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-19T20:32:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "71964ee3f0cd4405c267030f0b6aab4df6f0ecbc",
          "body": "…ment\n\nAdds a /light-mem:statusline skill that inspects the user's existing Claude\nCode statusLine, proposes a surgical \"📚 light-mem: N obs\" segment, and applies\nit on confirmation. Handles three cases (no statusLine, custom script, inline)\nwithout clobbering existing config. The shipped statusline-\n[…]\ngv cwd in, JSON out) rather than wired directly, matching CC's\nstdin→plain-text contract; install version is resolved dynamically.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(skills): add light-mem:statusline to add a persistent memory seg…",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-19T20:31:03Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "5c0eca42e90f2c772197b428b75bc5bb65084440",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.9 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-19T19:53:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "21dc939c66391f3ec0106201bca3937b663fdb2a",
          "body": "light-mem's hooks all returned suppressOutput:true, so their work was\ninvisible — no sign in the Claude Code UI that memory capture/recall was\nhappening. Add a statusMessage to each operational hook: it's a \"Common\nfields\" config value (per the CC hooks docs) that labels the spinner Claude\nCode alre\n[…]\nsMessage is outside Rule A's command-string verification\nand no test asserts hook-object shape, so the build/tests are unaffected.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(hooks): show \"light-mem is running\" via statusMessage spinners",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-19T19:51:52Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4029e1f203dd1cb70805a5b31ad18b95e71637ee",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.8 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-19T19:20:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d5d70fae92074a942a61bc42a2e238677ebcc4a1",
          "body": "…nces\n\nTwo-part docs cleanup, all tracing to the inherited claude-mem squash:\n\nRemoved (orphaned, unmaintained, superseded):\n- docs/public/ — the inherited Mintlify site (37 files, ~13.6k lines).\n  Referenced by nothing: not the build, package.json files[], or CI; no\n  Mintlify deploy. Described the\n[…]\n\nfires; per-launch work belongs on SessionStart, backgrounded via nohup)\nand refreshed BETTER-DOCS-META. Pointers validated 15/15.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: remove inherited public site and fix stale pre-migration refere…",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-19T19:19:04Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "12d503057ce7e9667504b16753612cdae498bd99",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.7 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-19T19:02:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d20e20aefb85ec4a61d034248ff6052d027f67e",
          "body": "Commit fa143465 reworked OpenCodeInstaller (file-path refs ->\nnpm-style \"light-mem\" refs, global config dir, register/deregister made\nprivate) but left the test on the removed API, so it failed to import\n(getOpenCodeConfigPath is not a function) — 7 failures on main.\n\nRewrite against the rework's pu\n[…]\n/ preserve-siblings / string-normalize / remove) and adding\ncoverage for the new version-pinned entry semantics (light-mem@x.y.z).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "test(opencode): align installer test with npm-ref registration rework",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-19T19:00:56Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "b6c6abaad27deec8a07db22eaca623a33bec9591",
          "body": "The tree-sitter CLI binary backfill (and missing-dep install) lived only\nin the Setup hook. Per the Claude Code hooks docs, Setup fires ONLY under\n`claude --init-only` / `-p --init` — never on normal launch, plugin\ninstall, update, or /reload-plugins. So version-check.js never ran in\npractice, and t\n[…]\nnd-authored byte-exact and verified by the build. Adds a regression\ntest asserting SessionStart invokes version-check.js detached.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(install): run version-check.js on SessionStart, not just Setup",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-19T19:00:55Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "414c1864b69287a5b373a13029d938ae9a64da8c",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.6 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-18T05:43:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f5580204d939e77b46995d3d4aa23abe13d5384d",
          "body": "Document the layered install path (local-file plugin + npm package\nname + OPENCODE_CONFIG_DIR mirror) that lets the same\n`npx light-mem install --ide opencode` work across plain opencode,\nocx-managed profiles, and any toolchain that sets\nOPENCODE_CONFIG_DIR / OPENCODE_CONFIG_CONTENT.\n\nCovers verific\n[…]\nk log shape, uninstall, the OpenCode\nhook subscription list, and the caveats around ocx purging its\nmerged config dir on each launch.\n\nAdd a one-line pointer in AGENTS.md under the architecture links.",
          "is_bot": false,
          "headline": "docs(opencode): add cross-IDE install guide",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-18T05:42:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3df89236bc4c48d42f664ada4f652628ecc6e242",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.5 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-18T05:11:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa14346518afe7b4192c890252d70efdb8876837",
          "body": "Refactor OpenCodeInstaller.ts so the install works the same regardless of\nhow the user runs OpenCode (plain binary, ocx merge dir, OPENCODE_CONFIG_CONTENT).\n\nInstall strategy now layers three independent load paths so OpenCode picks\nup the plugin no matter which one survives the user's toolchain:\n\n1\n[…]\nw cleans all three locations.\n\nCloses the gap where light-mem would silently fail to load when the\nuser ran OpenCode via ocx (or any tool that sets OPENCODE_CONFIG_DIR\nand/or OPENCODE_CONFIG_CONTENT).",
          "is_bot": false,
          "headline": "fix(opencode): seamless install across plain opencode and ocx setups",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-18T05:09:43Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "238692233c7a0bf5f5704298881aae29cce8e920",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.4 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-17T21:47:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ffbc68626265cf3bb4c4befe2b2c2010741b4d08",
          "body": "better-docs re-execution. Update the workflows RELEASE section from the old\nmanual version-bump flow to the auto-bump-on-every-merge CI pipeline; fix a\nstale research pointer (deleted bedrock spec → live API-provider-resilience\nspec); add the version single-source / pre-commit-verifier rule to AI\nInstructions; refresh better-docs metadata. Docs-only — no code change.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: refresh AGENTS.md + RELEASE for the auto-release pipeline",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T21:46:33Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "8b161e16b087b481bfc2b6400f04fbb5fe2dc074",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.3 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-17T21:38:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7c8faebe7a6942aa62485574349edac35b7f0ae9",
          "body": "…e-binary\n\nfix(install): backfill tree-sitter CLI binary on the marketplace path",
          "is_bot": false,
          "headline": "Merge pull request #3 from DevEstacion/fix/tree-sitter-cli-marketplac…",
          "author_name": "Ronald Estacion",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T21:37:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "567f5ba8055961848120212851430829d40bbb16",
          "body": "PR #2 fixed the npx path; this fixes the Claude Code marketplace/hook path,\nwhich has a distinct root cause. On the marketplace install, node_modules is\npopulated by the host's own plugin install WITHOUT the tree-sitter CLI binary\n(its GitHub-releases download was skipped or failed silently). versio\n[…]\nlation that reproduces the broken state then runs the real version-check.js\nand confirms the binary downloads + runs (idempotent).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(install): backfill tree-sitter CLI binary on the marketplace path",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T21:35:07Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4cf7b59d50f519165bd90b722da1baaf16d9dbb0",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): auto-bump to 0.2.2 [skip ci]",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-17T21:03:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f2c33acbbf748a64f5e6c52a680bdac729143bbf",
          "body": "Policy change: every merge to main now cuts a release. If package.json's\nversion is already on npm (a plain merge that didn't bump), the workflow\nauto-bumps the patch, rebuilds so the worker .cjs version matches, commits the\nbump back to main, and publishes — all in one run (a GITHUB_TOKEN push does\n[…]\nis. Also fixes the prior \"skip\" step that exit-0'd\ninside a step without gating publish, causing 403s on already-published merges.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci(publish): auto-bump patch on every push to main",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T21:02:05Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "0ee3f015f31bd729eb0f52256ecc7aabf7484654",
          "body": "Patch release for PR #2: backfill the tree-sitter CLI binary on the npx\ninstall path (--ignore-scripts skipped its download), fixing smart-explore\nfor npx users.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(release): bump to 0.2.1 for npx tree-sitter CLI binary fix",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T20:55:46Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "23c92a3e23c0168786f1ba5468a3bec3b46f7bd5",
          "body": "fix(install): fetch tree-sitter CLI binary on the npx path",
          "is_bot": false,
          "headline": "Merge pull request #2 from DevEstacion/fix/tree-sitter-cli-npx-binary",
          "author_name": "Ronald Estacion",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T20:54:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e8596c273fa6ec50fcde98bde3a35fbc5bbe23b7",
          "body": "The npx install runs `npm install --ignore-scripts` (to dodge a\ntree-sitter-swift postinstall hang). That also skips tree-sitter-cli's own\ninstall script, which downloads the `tree-sitter` CLI binary from GitHub\nreleases — so the smart-explore skill (which shells out to that binary) was\nbroken on ev\n[…]\nlation that reproduces the missing binary after --ignore-scripts then\nconfirms the fix downloads + runs it (idempotent on re-run).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(install): fetch tree-sitter CLI binary on the npx path",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T20:51:34Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "0ce34e165bbeaea53fa5e755bd29bc4c216a01d0",
          "body": "Minor bump for the ClaudeApiProvider resilience feature (PR #1): SSE\nmax_tokens truncation detection, bounded retry/backoff with Retry-After,\n4xx classification, and a concurrency cap. Rebuilt so the version baked into\nthe worker .cjs matches all manifests.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(release): bump to 0.2.0 for API-provider resilience parity",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T20:08:11Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "4b9aeefa0a65e484f7e3c23176eac1c7a88e1fbc",
          "body": "feat(api-provider): resilience parity with the SDK path",
          "is_bot": false,
          "headline": "Merge pull request #1 from DevEstacion/feat/api-provider-resilience",
          "author_name": "Ronald Estacion",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T20:05:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cef2a1433c1cc04bb9fcf7daf30508191e961d1e",
          "body": "Brings ClaudeApiProvider (the direct Messages API compression path) to\nSDK-level resilience, per docs/superpowers/specs/2026-06-17-claude-api-provider-resilience-design.md.\n\n- Truncation detection (the shape bug): parse the SSE message_delta event for\n  stop_reason. On max_tokens, salvage what parse\n[…]\n(chronic truncation never escalated), two abort-listener\nleaks on the long-lived session signal, and a wasted final-attempt sleep.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(api-provider): resilience parity with the SDK path",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T20:02:23Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4cd7aa85c52013b1144892d98a5036b748f67691",
          "body": "Brings the direct Messages API compression path to SDK-level resilience:\ndetect max_tokens truncation via the SSE message_delta event (the shape bug),\nadd bounded retry/backoff honoring Retry-After, fix the dead-code 4xx checks,\nand add a lightweight concurrency cap. Reuses classifyClaudeError; reimplements\nthe cap (process-less path) and honors Retry-After instead of the SDK-only\nRateLimitStore.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: design spec for ClaudeApiProvider resilience parity",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T19:37:39Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "67970bbc315d7eaf8f487b0e7b717526a62d354e",
          "body": "The version drifted: package.json + marketplace.json read 0.1.6 but\n.claude-plugin/plugin.json, plugin/.claude-plugin/plugin.json, and\nplugin/package.json stayed at 0.1.4, and the build-time version baked into\nworker-service.cjs disagreed too. The worker serves its built-in version on\nGET /api/healt\n[…]\nnpm run build`.\n\nEnforced by the existing tests/infrastructure/version-consistency.test.ts,\nwhich was failing on the drifted tree.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(versioning): single source of truth across all plugin manifests",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-17T19:05:43Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "8cec10dbb8ab3ea7af8bb47ecec1ae92bc7df794",
          "body": "- docs/claude-providers.md: new doc covering ClaudeProvider (SDK)\n  vs ClaudeApiProvider (direct Messages API) — auth matrix, when to use\n  each, failure modes, switching instructions.\n- docs/architecture.md: components block now lists both providers.\n- AGENTS.md: updated for the second provider; new-model-wiring instruction\n  now also points at ClaudeApiProvider.",
          "is_bot": false,
          "headline": "docs: add claude-providers.md, update architecture and AGENTS",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T16:04:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c47e0ddeb4eebc457428670e3487c5b1425e6b1b",
          "body": "processAgentResponse short-circuits storage when\nsession.memorySessionId is null (lines 91-100 of ResponseProcessor.ts).\nThe SDK-backed ClaudeProvider captures the id from the SDK's first\nresponse; the API provider has no SDK, so without this fix every\nparsed observation was deferred to a 'next round' that never comes,\nand observations stayed at zero.\n\nUse the content_session_id as the memory_session_id — it's already\nunique per editor session and the schema is just TEXT UNIQUE (no\nUUID type).",
          "is_bot": false,
          "headline": "fix(api-provider): synthesize memory_session_id so observations persist",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T15:44:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2675dddf6fa2f7b088765c3dd9110f80aed0f699",
          "body": "Two related fixes that together make the ClaudeApiProvider produce\nparseable observations:\n\n1. src/sdk/prompts.ts — embed a complete <observation> schema spec\n   in buildObservationPrompt. Previously, only the init prompt\n   (buildInitPrompt) carried the schema; subsequent observation\n   prompts had\n[…]\n the first\n   user message, doubling the model's input. Observed to make the\n   schema issue worse. Now sends the prompt as a single user\n   message; the system role is implicit in the prompt content.",
          "is_bot": false,
          "headline": "fix(observer): inline observation schema; stop duplicating prompt to API",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T15:37:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c934286e9b27f0f99099baf6eda98d22c6973f43",
          "body": "ClaudeProvider spawns a `claude` subprocess via the Agent SDK, which\nfails on hosts without Claude Code installed (e.g. OpenCode-only or\nAPI-only setups). The hook captures the event but compression never\nhappens, so observations are never written.\n\nClaudeApiProvider is a structural sibling that POS\n[…]\nse (acceptable: observation\ncompression is single-turn).\n\nSelected when LIGHT_MEM_CLAUDE_PROVIDER=api. Default 'sdk' preserves\nexisting behavior. WorkerService picks at construction based on\nsettings.",
          "is_bot": false,
          "headline": "feat(worker): add ClaudeApiProvider for direct Messages API calls",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T15:19:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "71b62c47c5130f5bfb3d657af943e26582d675ce",
          "body": "importSdkSession previously only accepted 9 fields and dropped\nplatform_source, silently downgrading all rows to 'claude' on import.\nFor users migrating from claude-mem, this lost the source-platform\ndistinction for any non-claude session.\n\nAdd platform_source as an optional field on the input and p\n[…]\nnbook for\nmoving an existing claude-mem SQLite database into light-mem. Covers\nthe per-uid port collision workaround, the bridge script, the\npromote-to-live step, and the OpenCode plugin install path.",
          "is_bot": false,
          "headline": "feat(import): preserve platform_source on /api/import",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T08:31:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7e01c7d6ed3a0c25119eec8690918233aa6d3ce8",
          "body": null,
          "is_bot": false,
          "headline": "chore: release v0.1.1",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T08:08:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "29f7944e3d55dfeae08e9874bbb50556bea9b9b2",
          "body": "…ution)\n\nnpm >=10 reads credentials from a project-local .npmrc, not from the\nNODE_AUTH_TOKEN env var. The previous workflow set NODE_AUTH_TOKEN only\nand got ENEEDAUTH. Writing a one-shot .npmrc that points at the\nregistry with the auth token, then removing it after publish, fixes it.\n\nAlso drops the redundant env block from the tag step — GITHUB_TOKEN is\nauto-injected.",
          "is_bot": false,
          "headline": "fix(ci): write temp .npmrc for npm publish (npm >=10 credential resol…",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T07:54:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "38eb4867f49c785e525278c0f561d65ecc94f259",
          "body": "- package.json: first-publish version 0.1.0, fixed repo URL, added publishConfig\n- .github/workflows/publish.yml: auto-publish on main push, idempotent version check, manual dispatch\n- scripts/bump-version.cjs: pre-commit auto-bump + manual CLI (patch/minor/major)\n- scripts/install-hooks.sh: idempotent .git/hooks/pre-commit installer\n- docs/publishing.md: npm Automation token walkthrough + troubleshooting\n- .gitignore: track package-lock.json for reproducible CI installs",
          "is_bot": false,
          "headline": "chore: publish v0.1.0 — initial npm release",
          "author_name": "ron",
          "author_login": "DevEstacion",
          "committed_at": "2026-06-17T07:46:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "78f3bf7708a4137c1f9c3a70fc8ece25cb387740",
          "body": "A Claude Code + OpenCode plugin that captures tool-usage observations via\nlifecycle hooks, compresses them into searchable summaries with the Claude\nAgent SDK, embeds them in-process (potion-base-8M + BM25 hybrid search), and\ninjects relevant context into future sessions. TypeScript, Node ≥24,\nesbuild-bundled worker, SQLite via the built-in node:sqlite.\n\nHistory collapsed to a single root commit: the project is light-mem.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "light-mem: lightweight cross-session memory for Claude Code and OpenCode",
          "author_name": "“ron”",
          "author_login": null,
          "committed_at": "2026-06-16T21:47:23Z",
          "body_truncated": false,
          "is_coding_agent": true
        }
      ],
      "releases_count": 35,
      "commits_last_year": 79,
      "latest_release_at": "2026-07-23T20:50:49Z",
      "latest_release_tag": "v0.2.26",
      "releases_from_tags": false,
      "days_since_last_push": 10,
      "active_weeks_last_year": 6,
      "days_since_latest_release": 10,
      "mean_days_between_releases": 0.4
    },
    "artifacts": {
      "collected": true,
      "structure": [
        "tree.cargo_main",
        "tree.migrations"
      ],
      "declarations": [
        {
          "name": "light-mem",
          "path": "package.json",
          "tokens": [
            "npm.bin",
            "npm.entry"
          ],
          "ecosystem": "npm"
        },
        {
          "name": null,
          "path": "plugin/package.json",
          "tokens": [
            "npm.private"
          ],
          "ecosystem": "npm"
        }
      ]
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "readme_badges": {
        "hosts": [
          "shields.io"
        ],
        "total": 3,
        "header": 3,
        "collected": true,
        "has_inspect_badge": false
      },
      "has_description": false,
      "has_contributing": false,
      "health_percentage": 57,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "light-mem",
          "exists": true,
          "license": "Apache-2.0",
          "keywords": [
            "claude",
            "claude-code",
            "opencode",
            "claude-agent-sdk",
            "mcp",
            "plugin",
            "memory",
            "embeddings",
            "model2vec",
            "sqlite",
            "transcript",
            "typescript",
            "nodejs"
          ],
          "ecosystem": "npm",
          "categories": [],
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/light-mem",
          "declared_type": null,
          "is_deprecated": false,
          "latest_version": "0.2.26",
          "repository_url": "https://github.com/DevEstacion/light-mem",
          "versions_count": 35,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 2178,
          "first_published_at": "2026-06-17T08:05:01.258000Z",
          "latest_published_at": "2026-07-23T20:50:44.115000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 10
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 0,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_stars": 0,
        "collected_at": null
      },
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": true,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "src/ui/viewer/tsconfig.json",
        "tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 2349721,
      "source_files_sampled": 477,
      "oversized_source_files": 9,
      "agent_instruction_files": [
        ".github/copilot-instructions.md",
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 5192
    },
    "dependencies": {
      "manifests": [
        "package.json",
        "plugin/package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 155,
        "malicious_count": 0,
        "assessed_package": "npm:light-mem@0.2.26",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@anthropic-ai/claude-agent-sdk",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.3.172"
        },
        {
          "name": "@better-auth/api-key",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.6.16"
        },
        {
          "name": "@clack/prompts",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.3.0"
        },
        {
          "name": "@modelcontextprotocol/sdk",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.29.0"
        },
        {
          "name": "ansi-to-html",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.7.2"
        },
        {
          "name": "better-auth",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.6.16"
        },
        {
          "name": "cors",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.8.6"
        },
        {
          "name": "dompurify",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.4.9"
        },
        {
          "name": "express",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.2.1"
        },
        {
          "name": "glob",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.0.6"
        },
        {
          "name": "handlebars",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.7.9"
        },
        {
          "name": "picocolors",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.1"
        },
        {
          "name": "react",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.2.6"
        },
        {
          "name": "react-dom",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.2.6"
        },
        {
          "name": "shell-quote",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.8.3"
        },
        {
          "name": "yaml",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.8.4"
        },
        {
          "name": "zod",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.4.3"
        },
        {
          "name": "zod-to-json-schema",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.25.2"
        },
        {
          "name": "zod",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.4.3"
        },
        {
          "name": "tree-sitter-cli",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.26.5"
        },
        {
          "name": "tree-sitter-c",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.24.1"
        },
        {
          "name": "tree-sitter-cpp",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.23.4"
        },
        {
          "name": "tree-sitter-go",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.25.0"
        },
        {
          "name": "tree-sitter-java",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.23.5"
        },
        {
          "name": "tree-sitter-javascript",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.25.0"
        },
        {
          "name": "tree-sitter-python",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.25.0"
        },
        {
          "name": "tree-sitter-ruby",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.23.1"
        },
        {
          "name": "tree-sitter-rust",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.24.0"
        },
        {
          "name": "tree-sitter-typescript",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.23.2"
        },
        {
          "name": "tree-sitter-kotlin",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.3.8"
        },
        {
          "name": "tree-sitter-swift",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.7.1"
        },
        {
          "name": "tree-sitter-php",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.24.2"
        },
        {
          "name": "tree-sitter-elixir",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.3.5"
        },
        {
          "name": "@tree-sitter-grammars/tree-sitter-lua",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.4.1"
        },
        {
          "name": "tree-sitter-scala",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.24.0"
        },
        {
          "name": "tree-sitter-bash",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.25.1"
        },
        {
          "name": "tree-sitter-haskell",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.23.1"
        },
        {
          "name": "@tree-sitter-grammars/tree-sitter-zig",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.2"
        },
        {
          "name": "tree-sitter-css",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.25.0"
        },
        {
          "name": "tree-sitter-scss",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.0.0"
        },
        {
          "name": "@tree-sitter-grammars/tree-sitter-toml",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.7.0"
        },
        {
          "name": "@tree-sitter-grammars/tree-sitter-yaml",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.7.1"
        },
        {
          "name": "@derekstride/tree-sitter-sql",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.3.11"
        },
        {
          "name": "@tree-sitter-grammars/tree-sitter-markdown",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.3.2"
        },
        {
          "name": "shell-quote",
          "manifest": "plugin/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.8.3"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 3,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "DevEstacion",
          "commits": 36,
          "avatar_url": "https://avatars.githubusercontent.com/u/5501145?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "publish.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "package-lock.json"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 0,
            "reason": "project has 0 contributing companies or organizations -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 4,
            "reason": "dependency not pinned by hash detected -- score normalized to 4",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 4,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "13 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "540c0e54b9e85dd8dc65021f06b929d750c69406",
        "ran_at": "2026-08-03T00:15:23Z",
        "aggregate_score": 2.7,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "recent_prs": {
        "merged_7d": 0,
        "decided_7d": 0,
        "merged_30d": 0,
        "authors_30d": 0,
        "decided_30d": 0,
        "sample_size": 3,
        "window_days": 30,
        "sample_exhausted": false,
        "authors_probed_30d": 0,
        "newcomer_merged_30d": 0,
        "bot_prs_excluded_30d": 0,
        "newcomer_authors_30d": 0,
        "newcomer_decided_30d": 0
      },
      "ci_last_run_at": null,
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-06-17T21:37:53Z",
      "ci_last_conclusion": null,
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/DevEstacion/light-mem",
    "host": "github.com",
    "name": "light-mem",
    "owner": "DevEstacion"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": "The weighted overall 52 is calibrated to 53 on the published index scale (record calibration 2026-08-02).",
      "notes": [
        {
          "code": "overall_calibration",
          "params": {
            "raw": 52,
            "calibrated": 53,
            "calibration": "2026-08-02"
          }
        }
      ],
      "value": 53,
      "inputs": {
        "security": 42,
        "vitality": 70,
        "community": 32,
        "governance": 50,
        "calibration": "2026-08-02",
        "engineering": 58,
        "ai_readiness": 63,
        "weighted_overall_raw": 52
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 70,
        "weight": 0.21,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "commits_last_year": 79,
              "human_commit_share": 0.684,
              "days_since_last_push": 10,
              "active_weeks_last_year": 6
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 10 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "6/52 weeks with commits",
                "points": 4.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 6
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "79 commits in the last year",
                "points": 17.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 79
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "exceptional",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 35,
              "latest_release_tag": "v0.2.26",
              "releases_from_tags": false,
              "days_since_latest_release": 10,
              "mean_days_between_releases": 0.4
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "35 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 35
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 10 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~0.4 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 0.4
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "exceptional",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 32,
        "weight": 0.17,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 0,
              "stars": 0,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "0 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "readme_badges": 3,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "readme_badge_services": [
                "shields.io"
              ],
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 56,
            "inputs": {
              "packages": [
                "light-mem"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 2178
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "2,178 downloads/month across npm",
                "points": 44.5,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 2178,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 50,
        "weight": 0.23,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 10,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution, Newcomer PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution",
                    "newcomer_pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 67,
            "inputs": {
              "merged_prs": 3,
              "open_issues": 0,
              "closed_issues": 0,
              "prs_merged_7d": 0,
              "prs_decided_7d": 0,
              "prs_merged_30d": 0,
              "prs_decided_30d": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0,
              "first_time_authors_30d": 0,
              "first_time_prs_merged_30d": 0,
              "first_time_prs_decided_30d": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 42
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "3/3 decided PRs merged",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 3,
                      "decided": 3
                    }
                  }
                ],
                "max_points": 30
              },
              {
                "key": "newcomer_pr_acceptance",
                "name": "Newcomer PR acceptance",
                "detail": "no first-time contributor's PR decided in 30d",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_newcomer_prs",
                    "params": {
                      "days": 30
                    }
                  }
                ],
                "max_points": 13
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "weak",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 42,
            "inputs": {
              "followers": 0,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "DevEstacion",
              "public_repos": 33,
              "account_age_days": 4699
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "0 followers of DevEstacion",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 0,
                      "login": "DevEstacion"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "33 public repos, account ~12 yr old",
                "points": 23.2,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 33
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 12
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "exceptional",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "light-mem"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 10
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 10 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "35 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 35
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 58,
        "weight": 0.19,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 60,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "1 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "weak",
        "name": "Security",
        "value": 42,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests",
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 27,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 15,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 3,
              "scorecard_aggregate": 2.7
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 4",
                "points": 2,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 2,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "13 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "exceptional",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:light-mem@0.2.26 runtime dependency closure — what installing the published package pulls in — 155 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "npm:light-mem@0.2.26",
                  "assessed": 155
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 155,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "exceptional",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 155,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "exceptional",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "commit_weight_rule": {
                "min_commits": 50,
                "min_commit_share": 0.1
              },
              "review_only_matches": 0,
              "below_threshold_exposures": [],
              "assessed_self_published_locations": 2
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 63,
        "weight": 0.04,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [
                ".github/copilot-instructions.md",
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 5192
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "54 of 54 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 54,
                      "sampled": 54
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 57,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "package-lock.json"
              ],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [
                "src/ui/viewer/tsconfig.json",
                "tsconfig.json"
              ],
              "agent_commit_share": 0.316,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "src/ui/viewer/tsconfig.json, tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "src/ui/viewer/tsconfig.json, tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "25 of the last 79 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 25,
                      "sampled": 79
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 4",
                "points": 4,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 81,
            "inputs": {
              "primary_language": "JavaScript",
              "largest_source_bytes": 2349721,
              "source_files_sampled": 477,
              "oversized_source_files": 9
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "JavaScript with type-check config (src/ui/viewer/tsconfig.json, tsconfig.json)",
                "points": 27,
                "status": "partial",
                "details": [
                  {
                    "code": "typecheck_config_language",
                    "params": {
                      "files": "src/ui/viewer/tsconfig.json, tsconfig.json",
                      "language": "JavaScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "9/477 source files over 60KB",
                "points": 54,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 477,
                      "oversized": 9
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 20,
            "inputs": {
              "example_dirs": [],
              "has_mcp_signal": true,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight: agent tooling is a real maintenance signal, but its absence must never gate the top of the scale (calibration saturates at raw 91, so 100/100 remains reachable with AI Readiness at zero)."
      }
    ],
    "classification": {
      "top": [
        "library",
        "application"
      ],
      "labels": [
        "cli",
        "library",
        "mcp-server",
        "network-service",
        "web-ui"
      ],
      "scores": {
        "cli": 10,
        "plugin": 2,
        "web-ui": 4,
        "library": 10.4,
        "mcp-server": 7,
        "application": 3,
        "network-service": 4
      },
      "primary": "cli",
      "evidence": [
        {
          "tier": "declared",
          "label": "cli",
          "source": "npm.bin",
          "weight": 10
        },
        {
          "tier": "declared",
          "label": "library",
          "source": "npm.entry",
          "weight": 8
        },
        {
          "tier": "distribution",
          "label": "library",
          "source": "registry:npm",
          "weight": 6
        },
        {
          "tier": "dependencies",
          "label": "mcp-server",
          "source": "dep:@modelcontextprotocol/sdk",
          "weight": 4
        },
        {
          "tier": "dependencies",
          "label": "network-service",
          "source": "dep:express",
          "weight": 4
        },
        {
          "tier": "dependencies",
          "label": "web-ui",
          "source": "dep:react-dom",
          "weight": 4
        },
        {
          "tier": "declared",
          "label": "library",
          "source": "npm.private",
          "weight": -3.6
        },
        {
          "tier": "structure",
          "label": "application",
          "source": "tree.cargo_main",
          "weight": 3
        },
        {
          "tier": "structure",
          "label": "mcp-server",
          "source": "mcp_signal",
          "weight": 3
        },
        {
          "tier": "tags",
          "label": "plugin",
          "source": "tag:plugin",
          "weight": 2
        }
      ],
      "artifacts": [
        {
          "path": "package.json",
          "labels": [
            "cli",
            "library"
          ],
          "ecosystem": "npm"
        },
        {
          "path": "plugin/package.json",
          "labels": [],
          "ecosystem": "npm"
        }
      ],
      "confidence": "high",
      "host_extension": false,
      "runs_as_process": true,
      "consumed_by_code": true
    },
    "metrics_version": "2.5.0"
  },
  "warnings": [
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-08-03T00:15:31.981164Z",
  "schema_version": "0.30.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/d/DevEstacion/light-mem.svg",
  "full_name": "DevEstacion/light-mem",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Bewertungen sind Signale, keine Garantien. Sie spiegeln öffentlich sichtbare Praxis auf GitHub wider — kein Code-Audit und keine Sicherheitsgarantie.

Fehlende Daten werden ausgeschlossen und die Gewichte neu normiert, nie als null bewertet. Die Methodik ist versioniert und offen: Metriken v2.5.0, Schema v0.30.0 — vollständige Methodik · Metriken-Wiki.

Wie ein einzelnes Ergebnis im Gesamtregister steht: aggregierte Statistikennpm.