Öffentliches Register
Software-GesundheitsberichtSchema 0.26.0 · Metriken 1.13.0 · 2026-07-22 08:17 UTC

pulumi / pulumi-docker-build

A Pulumi native provider for Docker

GoApache-2.0★ 12 Sterne⑂ 12 Forksseit März 2024Auf GitHub ansehen ↗

pulumi/pulumi-docker-build erreicht einen Gesundheitsindex von 69 von 100 und liegt damit im Bereich Mittel. Am stärksten schneidet es bei Vitality (91/100) ab, am schwächsten bei Community & Adoption (47/100). Zuletzt heute aktualisiert. Ein einzelner Mitwirkender trägt den Großteil der jüngsten Arbeit.

69
gesamt / 100
Mittel

Software-Gesundheitsindex

Metriken werden auf einer Skala von 1–100 in gewichtete Kategorien gruppiert. Der Gesamtwert beginnt als ihr Mittel; sobald öffentliche Evidenz die Richtlinie für Hochrisikojurisdiktionen auslöst, wird die Bewertung angepasst und erhält die Obergrenze 49 (Gefährdet). AI Readiness liegt außerhalb.

69
Exzellent85-100Vorbildlich; erfüllt im Wesentlichen alle geprüften Kriterien
Gut70-84Gesund; geringfügige Lücken
Mittel50-69Akzeptabel mit deutlichen Lücken; Überprüfung empfohlen
Gefährdet30-49Erhebliche Schwächen; eine Übernahme erfordert Vorsicht
Kritisch1-29Schwerwiegende Probleme (aufgegeben, nur ein Maintainer, keine Hygiene)
VitalitätCommunity &VerbreitungNachhaltigkeit &GovernanceEngineering-QualitätSicherheitAI Readiness

Bewertungsprofil

Jede Achse ist eine Kategorie. Die Form zählt mehr als der Durchschnitt — ein gesundes Projekt füllt die gesamte Fläche, während ein Profil aus Spitzen und Kratern bedeutet, dass Stärke in einer Dimension Risiken in einer anderen verdeckt.

Eigentümerschaft

PulumiOrganisation
1.310 Follower428 öffentliche Reposseit Sept. 2016

Dieses Repository wird von einer Organisation getragen — geteilte, rechenschaftspflichtige Trägerschaft, die jeden einzelnen Maintainer überdauern kann.

Paket-Ökosysteme

RegistryPaketVersionDownloads / MonatVersionenZuletzt veröffentlicht
Gogithub.com/pulumi/pulumi-docker-buildv0.0.21-28vor 4 Tagen

Metriken nach Kategorie

Vitalität

Lebt das Projekt — wird Code geschrieben und werden Releases ausgeliefert?

91Exzellent · 22 % des Gesamtindex
Wie die Bewertung erfolgt
36/36Push-Aktualität — letzter Push vor 0 Tagen
32.5/36Commit-Rhythmus — 47/52 Wochen mit Commits
18/18Commit-Volumen — 200 Commits im letzten Jahr
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 25 issue activity found in the last 90 days -- score normalized to 10
Verwendete Eingangsdaten
commits_last_year200
human_commit_share0,14
days_since_last_push0
active_weeks_last_year47
Wie die Bewertung erfolgt
27/27Liefert Releases aus — 21 Releases veröffentlicht
36/36Release-Aktualität — letztes Release vor 4 Tagen
19.8/27Release-Rhythmus — ein Release etwa alle 47,4 Tage
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Verwendete Eingangsdaten
releases_count21
latest_release_tagv0.0.21
releases_from_tagsnein
days_since_latest_release4
mean_days_between_releases47,4

Community & Verbreitung

Hat das Projekt Nutzer, Downloads, Aufmerksamkeit und ein einladendes Umfeld für Beitragende?

47Gefährdet · 18 % des Gesamtindex
Wie die Bewertung erfolgt
16.9/60Stars — 12 Stars
8.7/25Forks — 12 Forks
5.8/15Watcher — 12 Watcher
Verwendete Eingangsdaten
forks12
stars12
watchers12
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonbelow_threshold
Wie die Bewertung erfolgt
22.5/22.5README
22.5/22.5Lizenz — anerkannte Lizenz (Apache-2.0)
0/18CONTRIBUTING-Leitfaden
13.5/13.5Verhaltenskodex
0/7.2Issue-Vorlage
0/6.3PR-Vorlage
Verwendete Eingangsdaten
has_readmeja
has_licenseja
has_contributingnein
has_issue_templatenein
has_code_of_conductja
has_pull_request_templatenein

Nachhaltigkeit & Governance

Überdauert das Projekt die Menschen, die es tragen — Bus-Faktor, Reaktionsfähigkeit, Trägerschaft und Paketpflege?

67Mittel · 24 % des Gesamtindex
Wie die Bewertung erfolgt
9/54Bus-Faktor — 1 Beitragende decken die Hälfte aller Commits ab
10.5/22.5Commit-Verteilung — wichtigste beitragende Person verfasste 53 % der Commits
13.5/13.5Breite der Beitragenden — 16 Beitragende
10/10OpenSSF Scorecard: Contributors — project has 6 contributing companies or organizations
Verwendete Eingangsdaten
bus_factor1
contributors_sampled16
top_contributor_share0,533
Wie die Bewertung erfolgt
39.2/46.8Issue-Lösungsquote — 84 % der Issues geschlossen
16.3/38.3PR-Annahme — 343/805 entschiedene PRs gemergt
3/15OpenSSF Scorecard: Code-Review — Found 6/25 approved changesets -- score normalized to 2
Verwendete Eingangsdaten
merged_prs343
open_issues24
closed_issues124
issue_closed_ratio0,838
closed_unmerged_prs462
Wie die Bewertung erfolgt
30/30Organisatorische Trägerschaft — im Besitz einer Organisation
0/20Verifizierte Domain
22.4/25Reichweite des Inhabers — 1.310 Follower von pulumi
25/25Kontohistorie — 428 öffentliche Repos, Kontoalter ca. 9 Jahre
Verwendete Eingangsdaten
followers1.310
owner_typeOrganization
is_verified
owner_loginpulumi
public_repos428
account_age_days3.607

Paketpflege

100Exzellent
Wie die Bewertung erfolgt
25/25Veröffentlicht & auflösbar — 1 Paket(e) auf go
35/35Veröffentlichungsaktualität — letzte Veröffentlichung vor 4 Tagen
20/20Versionshistorie — 28 veröffentlichte Versionen
20/20Nicht veraltet — aktiv, nicht veraltet oder zurückgezogen
Verwendete Eingangsdaten
packagesgithub.com/pulumi/pulumi-docker-build
ecosystemsgo
any_deprecatednein
min_days_since_publish4

Engineering-Qualität

Sind grundlegende Engineering- und Dokumentationspraktiken vorhanden?

80Gut · 20 % des Gesamtindex
Wie die Bewertung erfolgt
24/24CI-Workflows — 12 Workflow(s)
24/24Tests vorhanden
16/16Linter-Konfiguration — .golangci.yml
0/9.6Pre-Commit-Hooks
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 29 out of 29 merged PRs checked by a CI test -- score normalized to 10
Verwendete Eingangsdaten
has_cija
has_testsja
has_editorconfignein
has_linter_configja
has_precommit_confignein
Wie die Bewertung erfolgt
30/30README
25/25Dokumentationsverzeichnis
0/15Dokumentations-/Homepage-Site
10/10Repository-Beschreibung
0/10Topics
10/10Wiki
Verwendete Eingangsdaten
topics
has_wikija
homepage
has_readmeja
has_docs_dirja
has_descriptionja

Sicherheit

Sind die sichtbaren Sicherheits- und Lieferkettenpraktiken belastbar, ohne ungeklärte Exposition gegenüber Hochrisikojurisdiktionen?

51Mittel · 16 % des Gesamtindex
Wie die Bewertung erfolgt
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — keine Daten
2.5/2.5CI-Tests — 29 out of 29 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
1.5/7.5Code-Review — Found 6/25 approved changesets -- score normalized to 2
2.5/2.5Contributors — project has 6 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5Lizenz — license file detected
7.5/7.5Maintained — 30 commit(s) and 25 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
2/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 4
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 35 existing vulnerabilities detected
Verwendete Eingangsdaten
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate5,5
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): branch_protection. Die verbleibenden Gewichte wurden renormalisiert.
Wie die Bewertung erfolgt
3.8/35Direkte Abhängigkeiten ohne bekannte Advisories — 6 betroffen: golang.org/x/crypto v0.51.0 (critical 10.0), github.com/docker/cli v28.0.4+incompatible (high), github.com/docker/docker v28.0.1+incompatible (high 8.8), +3 weitere
0/25Indirekte Abhängigkeiten ohne bekannte Advisories — transitive Menge in diesem Bereich nicht von Entwicklungs- und Test-Abhängigkeiten trennbar
23.8/40Keine offenen Advisories — 4 Paket(e) mit Advisory seit über 90 Tagen unbehandelt; ältestes vor 1.621 Tagen veröffentlicht
Verwendete Eingangsdaten
sourceosv
advisories100
affected_packages28
assessed_packages573
unassessed_packages14
affected_by_severitycritical 3, high 13, moderate 9, unknown 3
direct_affected_packages6
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Indirekte Abhängigkeiten ohne bekannte Advisories. Die verbleibenden Gewichte wurden renormalisiert. 573 aufgelöste Abhängigkeiten wurden mit OSV abgeglichen. 14 konnten nicht bewertet werden — keine aufgelöste Version, ein nicht unterstütztes Ökosystem oder außerhalb der ausgewiesenen Paketliste. Dieses Repository veröffentlicht kein Paket, das der Index auflöst; bewertet wurde daher der Abhängigkeitsgraph des Repositorys. Dieser Graph vermischt Entwicklungs- und Test-Pins mit ausgelieferten Abhängigkeiten, daher werden nur die deklarierten Laufzeit-Abhängigkeiten bewertet; transitive Befunde werden als Kontext ausgewiesen und fließen nicht in die Bewertung ein. Erreichbarkeit wird nicht analysiert.

AI Readiness

Wie gut ist das Repository dafür ausgestattet, mit KI-Coding-Agenten entwickelt und gepflegt zu werden? Ein unabhängiges, experimentelles Badge — Gewicht 0,0, es wird eigenständig ausgewiesen und verändert den Gesamt-Gesundheitswert nicht.

55Mittel · 0 % des Gesamtindex
Wie die Bewertung erfolgt
0/45Agentenanweisungen — keine CLAUDE.md / AGENTS.md / Editor-Regeln
0/15Maschinenlesbare Doku (llms.txt)
0/40Lesbare Commit-Historie — keine Daten
Verwendete Eingangsdaten
has_llms_txtnein
legible_history_share
agent_instruction_files
agent_instruction_max_bytes
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Lesbare Commit-Historie. Die verbleibenden Gewichte wurden renormalisiert.
Wie die Bewertung erfolgt
18/18Bootstrap mit einem Befehl — .config/mise.toml, Makefile
22/22Automatisierte Tests
11/11Lint-/Format-Konfiguration — .golangci.yml
11/11Statische Typprüfung — examples/nodejs/tsconfig.json, examples/upgrade-node/tsconfig.json, sdk/nodejs/tsconfig.json, sdk/python/pulumi_docker_build/py.typed
10/10Reproduzierbare Umgebung — Dockerfile, lockfile
8/10Belegte Agentenpraxis — 4 der letzten 100 Commits von Agenten verfasst oder ihnen zugeschrieben
0/8Automatisierte Wartung — keine automatisierten Abhängigkeits-Updates beobachtet
4/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 4
Verwendete Eingangsdaten
has_nixnein
has_testsja
lockfilesgo.sum, yarn.lock
has_dockerfileja
typed_languageja
bootstrap_files.config/mise.toml, Makefile
has_devcontainernein
has_linter_configja
typecheck_configsexamples/nodejs/tsconfig.json, examples/upgrade-node/tsconfig.json, sdk/nodejs/tsconfig.json, sdk/python/pulumi_docker_build/py.typed
agent_commit_share0,04
toolchain_manifestsexamples/dotnet/provider-docker-build.csproj, examples/go/go.mod, examples/java/pom.xml, go.mod, sdk/dotnet/Pulumi.DockerBuild.csproj, sdk/go/dockerbuild/go.mod
dependency_bot_commit_share0
Wie die Bewertung erfolgt
45/45Typprüfbarer Code — Go (statisch typisiert)
53.8/55Handhabbare Dateigrößen — 5/230 Quelldateien über 60 KB
Verwendete Eingangsdaten
primary_languageGo
largest_source_bytes227.196
source_files_sampled230
oversized_source_files5
Wie die Bewertung erfolgt
0/40API-Schema (OpenAPI/GraphQL/proto)
0/20MCP-Server
40/40Lauffähige Beispiele — examples
Verwendete Eingangsdaten
example_dirsexamples
has_mcp_signalnein
api_schema_files

Eckdaten

12GitHub-Sterne
16Mitwirkende
200Commits, letzte 12 Monate
0Tage seit letztem Push
21Releases
1Bus-Faktor
24offene Issues
Go, PyPIPaket-Ökosysteme

Weitere Details

Stern- und Fork-Verlauf 12 ★ / 12 ⇿
12Sterne
12Forks
20Releases

Wann jeder Stern und Fork hinzugefügt wurde, von GitHub erfasst und nach Tagen gruppiert. Das kumulierte Wachstum steht direkt über den täglichen Zugängen, aus denen es besteht, sodass beide gegeneinander lesbar sind: stetiger organischer Zuwachs sieht ganz anders aus als ein abrupter, kurzlebiger Ausschlag. Wo dieser Unterschied messbar ist, wird er als Wachstumsauthentizität ausgewiesen.

024681012121222024-032025-052026-07
Major 0Minor 0Patch 20

Jeder Punkt umfasst 3 Tage.

OpenSSF Scorecard 5.5 / 10
5.5Gesamtwert

Unabhängige, werkzeugneutrale Sicherheitsbewertung durch das quelloffene OpenSSF Scorecard. Jede Prüfung honoriert eine Sicherheits-Praxis, nicht das Werkzeug eines bestimmten Anbieters. Prüfungen, die Scorecard nicht ermitteln konnte, sind mit k. A. markiert und vom Sicherheitswert ausgeschlossen (nie als null gezählt).Scorecard v5.5.0 · 2026-07-22 08:16 UTC

10Binary-Artifactsno binaries found in the repo
k. A.Branch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
10CI-Tests29 out of 29 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
2Code-ReviewFound 6/25 approved changesets -- score normalized to 2
10Contributorsproject has 6 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 25 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
4Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 4
0SASTSAST tool is not run on all commits -- score normalized to 0
10Security-Policysecurity policy file detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities35 existing vulnerabilities detected
Direkte Abhängigkeiten 31
RegistryPaketVersionsvorgabeManifest
Gogithub.com/aws/aws-sdk-gov1.55.8go.mod
Gogithub.com/blang/semverv3.5.1+incompatiblego.mod
Gogithub.com/containerd/errdefsv1.0.0go.mod
Gogithub.com/distribution/referencev0.6.0go.mod
Gogithub.com/docker/buildxv0.22.0go.mod
Gogithub.com/docker/cliv28.0.4+incompatiblego.mod
Gogithub.com/docker/dockerv28.0.1+incompatiblego.mod
Gogithub.com/moby/buildkitv0.20.1go.mod
Gogithub.com/moby/patternmatcherv0.6.0go.mod
Gogithub.com/muesli/reflowv0.3.0go.mod
Gogithub.com/otiai10/copyv1.14.0go.mod
Gogithub.com/pulumi/providertestv0.7.0go.mod
Gogithub.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/v3v3.107.0go.mod
Gogithub.com/pulumi/pulumi-go-providerv1.3.2go.mod
Gogithub.com/pulumi/pulumi-javav1.29.0go.mod
Gogithub.com/pulumi/pulumi/pkg/v3v3.245.0go.mod
Gogithub.com/pulumi/pulumi/sdk/v3v3.245.0go.mod
Gogithub.com/regclient/regclientv0.7.1go.mod
Gogithub.com/sirupsen/logrusv1.9.3go.mod
Gogithub.com/spf13/aferov1.15.0go.mod
Gogithub.com/stretchr/testifyv1.11.1go.mod
Gogithub.com/tonistiigi/fsutilv0.0.0-20250113203817-b14e27f4135ago.mod
Gogithub.com/tonistiigi/go-csvvaluev0.0.0-20240710180619-ddb21b71c0b4go.mod
Gogo.opentelemetry.io/otel/metricv1.44.0go.mod
Gogo.opentelemetry.io/otel/sdkv1.44.0go.mod
Gogo.opentelemetry.io/otel/tracev1.44.0go.mod
Gogo.uber.org/mockv0.6.0go.mod
Gogolang.org/x/cryptov0.51.0go.mod
Gogolang.org/x/expv0.0.0-20260410095643-746e56fc9e2fgo.mod
Gogoogle.golang.org/protobufv1.36.11go.mod
Gogopkg.in/yaml.v3v3.0.1go.mod
Alle Abhängigkeiten 587

Vollständig aufgelöster Abhängigkeitssatz aus dem GitHub-Abhängigkeitsgraphen: 35 direkte und 552 indirekte (transitive) Pakete. Die transitive Hülle ist vollständig, wenn das Repository eine Lockfile eincheckt.

RegistryPaketVersionBeziehung
Gogithub.com/aws/aws-sdk-gov1.55.8direkt
Gogithub.com/blang/semverv3.5.1+incompatibledirekt
Gogithub.com/containerd/errdefsv1.0.0direkt
Gogithub.com/distribution/referencev0.6.0direkt
Gogithub.com/docker/buildxv0.22.0direkt
Gogithub.com/docker/cliv28.0.4+incompatibledirekt
Gogithub.com/docker/dockerv28.0.1+incompatibledirekt
Gogithub.com/moby/buildkitv0.20.1direkt
Gogithub.com/moby/patternmatcherv0.6.0direkt
Gogithub.com/muesli/reflowv0.3.0direkt
Gogithub.com/otiai10/copyv1.14.0direkt
Gogithub.com/pulumi/providertestv0.7.0direkt
Gogithub.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/v3v3.107.0direkt
Gogithub.com/pulumi/pulumi-go-providerv1.3.2direkt
Gogithub.com/pulumi/pulumi-javav1.29.0direkt
Gogithub.com/pulumi/pulumi/pkg/v3v3.245.0direkt
Gogithub.com/pulumi/pulumi/sdk/v3v3.243.0direkt
Gogithub.com/pulumi/pulumi/sdk/v3v3.245.0direkt
Gogithub.com/regclient/regclientv0.7.1direkt
Gogithub.com/sirupsen/logrusv1.9.3direkt
Gogithub.com/spf13/aferov1.15.0direkt
Gogithub.com/stretchr/testifyv1.11.1direkt
Gogithub.com/tonistiigi/fsutilv0.0.0-20250113203817-b14e27f4135adirekt
Gogithub.com/tonistiigi/go-csvvaluev0.0.0-20240710180619-ddb21b71c0b4direkt
Gogo.opentelemetry.io/otel/metricv1.43.0direkt
Gogo.opentelemetry.io/otel/metricv1.44.0direkt
Gogo.opentelemetry.io/otel/sdkv1.43.0direkt
Gogo.opentelemetry.io/otel/sdkv1.44.0direkt
Gogo.opentelemetry.io/otel/tracev1.43.0direkt
Gogo.opentelemetry.io/otel/tracev1.44.0direkt
Gogo.uber.org/mockv0.6.0direkt
Gogolang.org/x/cryptov0.51.0direkt
Gogolang.org/x/expv0.0.0-20260410095643-746e56fc9e2fdirekt
Gogoogle.golang.org/protobufv1.36.11direkt
Gogopkg.in/yaml.v3v3.0.1direkt
Gocel.dev/exprv0.25.1indirekt
Gocloud.google.com/gov0.123.0indirekt
Gocloud.google.com/go/authv0.18.2indirekt
Gocloud.google.com/go/auth/oauth2adaptv0.2.8indirekt
Gocloud.google.com/go/compute/metadatav0.9.0indirekt
Gocloud.google.com/go/iamv1.5.3indirekt
Gocloud.google.com/go/kmsv1.26.0indirekt
Gocloud.google.com/go/loggingv1.13.2indirekt
Gocloud.google.com/go/longrunningv0.8.0indirekt
Gocloud.google.com/go/monitoringv1.24.3indirekt
Gocloud.google.com/go/storagev1.61.3indirekt
Godario.cat/mergov1.0.1indirekt
Gogithub.com/adalogics/go-fuzz-headersv0.0.0-20240806141605-e8a1dd7889d6indirekt
Gogithub.com/agext/levenshteinv1.2.3indirekt
Gogithub.com/apparentlymart/go-cidrv1.0.1indirekt
Gogithub.com/apparentlymart/go-textseg/v15v15.0.0indirekt
Gogithub.com/atotto/clipboardv0.1.4indirekt
Gogithub.com/aws/aws-sdk-go-v2v1.41.11indirekt
Gogithub.com/aws/aws-sdk-go-v2/aws/protocol/eventstreamv1.7.12indirekt
Gogithub.com/aws/aws-sdk-go-v2/configv1.32.20indirekt
Gogithub.com/aws/aws-sdk-go-v2/credentialsv1.19.19indirekt
Gogithub.com/aws/aws-sdk-go-v2/feature/ec2/imdsv1.18.25indirekt
Gogithub.com/aws/aws-sdk-go-v2/internal/configsourcesv1.4.27indirekt
Gogithub.com/aws/aws-sdk-go-v2/internal/endpoints/v2v2.7.27indirekt
Gogithub.com/aws/aws-sdk-go-v2/internal/v4av1.4.26indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/cloudwatchlogsv1.74.4indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/internal/accept-encodingv1.13.10indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/internal/checksumv1.9.18indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/internal/presigned-urlv1.13.25indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/internal/s3sharedv1.19.25indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/kmsv1.50.3indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/s3v1.102.2indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/signinv1.1.1indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/ssov1.30.19indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/ssooidcv1.36.2indirekt
Gogithub.com/aws/aws-sdk-go-v2/service/stsv1.42.3indirekt
Gogithub.com/aws/smithy-gov1.27.0indirekt
Gogithub.com/aymanbagabas/go-osc52/v2v2.0.1indirekt
Gogithub.com/azure/azure-sdk-for-go/sdk/azcorev1.21.0indirekt
Gogithub.com/azure/azure-sdk-for-go/sdk/azidentityv1.13.1indirekt
Gogithub.com/azure/azure-sdk-for-go/sdk/internalv1.11.2indirekt
Gogithub.com/azure/azure-sdk-for-go/sdk/security/keyvault/azkeysv1.4.0indirekt
Gogithub.com/azure/azure-sdk-for-go/sdk/security/keyvault/internalv1.2.0indirekt
Gogithub.com/azure/go-ansitermv0.0.0-20250102033503-faa5f7b0171cindirekt
Gogithub.com/azuread/microsoft-authentication-library-for-gov1.7.0indirekt
Gogithub.com/bazelbuild/buildtoolsv0.0.0-20260211083412-859bfffeef82indirekt
Gogithub.com/beorn7/perksv1.0.1indirekt
Gogithub.com/burntsushi/tomlv1.6.0indirekt
Gogithub.com/cenkalti/backoff/v4v4.3.0indirekt
Gogithub.com/cenkalti/backoff/v5v5.0.3indirekt
Gogithub.com/cespare/xxhash/v2v2.3.0indirekt
Gogithub.com/charmbracelet/bubblesv1.0.0indirekt
Gogithub.com/charmbracelet/bubbleteav1.3.10indirekt
Gogithub.com/charmbracelet/colorprofilev0.4.3indirekt
Gogithub.com/charmbracelet/lipglossv1.1.0indirekt
Gogithub.com/charmbracelet/x/ansiv0.11.7indirekt
Gogithub.com/charmbracelet/x/cellbufv0.0.15indirekt
Gogithub.com/charmbracelet/x/termv0.2.2indirekt
Gogithub.com/cheggaaa/pbv1.0.29indirekt
Gogithub.com/clipperhouse/displaywidthv0.11.0indirekt
Gogithub.com/clipperhouse/uax29/v2v2.7.0indirekt
Gogithub.com/cloudflare/circlv1.6.3indirekt
Gogithub.com/cncf/xds/gov0.0.0-20260202195803-dba9d589def2indirekt
Gogithub.com/compose-spec/compose-go/v2v2.4.8indirekt
Gogithub.com/containerd/consolev1.0.4indirekt
Gogithub.com/containerd/containerd/apiv1.8.0indirekt
Gogithub.com/containerd/containerd/v2v2.0.7indirekt
Gogithub.com/containerd/continuityv0.4.5indirekt
Gogithub.com/containerd/errdefs/pkgv0.3.0indirekt
Gogithub.com/containerd/logv0.1.0indirekt
Gogithub.com/containerd/platformsv1.0.0-rc.1indirekt
Gogithub.com/containerd/ttrpcv1.2.7indirekt
Gogithub.com/containerd/typeurl/v2v2.2.3indirekt
Gogithub.com/cyphar/filepath-securejoinv0.6.1indirekt
Gogithub.com/davecgh/go-spewv1.1.2-0.20180830191138-d8f796af33ccindirekt
Gogithub.com/deckarep/golang-set/v2v2.5.0indirekt
Gogithub.com/djherbis/timesv1.6.0indirekt
Gogithub.com/docker/cli-docs-toolv0.9.0indirekt
Gogithub.com/docker/distributionv2.8.3+incompatibleindirekt
Gogithub.com/docker/docker-credential-helpersv0.8.2indirekt
Gogithub.com/docker/go-connectionsv0.5.0indirekt
Gogithub.com/docker/go-metricsv0.0.1indirekt
Gogithub.com/docker/go-unitsv0.5.0indirekt
Gogithub.com/docker/libtrustv0.0.0-20160708172513-aabc10ec26b7indirekt
Gogithub.com/edsrzf/mmap-gov1.2.0indirekt
Gogithub.com/emicklei/go-restful/v3v3.11.0indirekt
Gogithub.com/emirpasic/godsv1.18.1indirekt
Gogithub.com/envoyproxy/go-control-plane/envoyv1.37.0indirekt
Gogithub.com/envoyproxy/protoc-gen-validatev1.3.3indirekt
Gogithub.com/erikgeiser/coninputv0.0.0-20211004153227-1c3628e74d0findirekt
Gogithub.com/fatih/colorv1.18.0indirekt
Gogithub.com/felixge/httpsnoopv1.0.4indirekt
Gogithub.com/fsnotify/fsnotifyv1.9.0indirekt
Gogithub.com/fvbommel/sortorderv1.0.1indirekt
Gogithub.com/fxamacker/cbor/v2v2.7.0indirekt
Gogithub.com/git-pkgs/manifestsv0.4.1indirekt
Gogithub.com/git-pkgs/packageurl-gov0.3.1indirekt
Gogithub.com/git-pkgs/purlv0.1.10indirekt
Gogithub.com/git-pkgs/versv0.2.4indirekt
Gogithub.com/go-git/gcfgv1.5.1-0.20230307220236-3a3c6141e376indirekt
Gogithub.com/go-git/go-billy/v5v5.9.0indirekt
Gogithub.com/go-git/go-git/v5v5.19.1indirekt
Gogithub.com/go-jose/go-jose/v4v4.1.4indirekt
Gogithub.com/go-logr/logrv1.4.3indirekt
Gogithub.com/go-logr/stdrv1.2.2indirekt
Gogithub.com/go-openapi/jsonpointerv0.19.6indirekt
Gogithub.com/go-openapi/jsonreferencev0.20.2indirekt
Gogithub.com/go-openapi/swagv0.22.4indirekt
Gogithub.com/go-test/deepv1.1.1indirekt
Gogithub.com/go-viper/mapstructure/v2v2.4.0indirekt
Gogithub.com/gofrs/flockv0.12.1indirekt
Gogithub.com/gofrs/uuidv4.2.0+incompatibleindirekt
Gogithub.com/gogo/protobufv1.3.2indirekt
Gogithub.com/golang-jwt/jwt/v5v5.3.1indirekt
Gogithub.com/golang/glogv1.2.5indirekt
Gogithub.com/golang/groupcachev0.0.0-20241129210726-2c02b8208cf8indirekt
Gogithub.com/golang/protobufv1.5.4indirekt
Gogithub.com/google/gnostic-modelsv0.6.8indirekt
Gogithub.com/google/go-cmpv0.7.0indirekt
Gogithub.com/google/go-querystringv1.1.0indirekt
Gogithub.com/google/gofuzzv1.2.0indirekt
Gogithub.com/google/s2a-gov0.1.9indirekt
Gogithub.com/google/shlexv0.0.0-20191202100458-e7afc7fbc510indirekt
Gogithub.com/google/uuidv1.6.0indirekt
Gogithub.com/google/wirev0.7.0indirekt
Gogithub.com/googleapis/enterprise-certificate-proxyv0.3.14indirekt
Gogithub.com/googleapis/gax-go/v2v2.19.0indirekt
Gogithub.com/googlecloudplatform/opentelemetry-operations-go/detectors/gcpv1.31.0indirekt
Gogithub.com/googlecloudplatform/opentelemetry-operations-go/exporter/metricv0.55.0indirekt
Gogithub.com/googlecloudplatform/opentelemetry-operations-go/internal/resourcemappingv0.55.0indirekt
Gogithub.com/gorilla/muxv1.8.1indirekt
Gogithub.com/gorilla/websocketv1.5.0indirekt
Gogithub.com/grpc-ecosystem/grpc-gateway/v2v2.29.0indirekt
Gogithub.com/grpc-ecosystem/grpc-opentracingv0.0.0-20180507213350-8e809c8a8645indirekt
Gogithub.com/hashicorp/errwrapv1.1.0indirekt
Gogithub.com/hashicorp/go-cleanhttpv0.5.2indirekt
Gogithub.com/hashicorp/go-cty-funcsv0.0.0-20241120183456-c51673e0b3ddindirekt
Gogithub.com/hashicorp/go-multierrorv1.1.1indirekt
Gogithub.com/hashicorp/go-retryablehttpv0.7.8indirekt
Gogithub.com/hashicorp/go-rootcertsv1.0.2indirekt
Gogithub.com/hashicorp/go-secure-stdlib/parseutilv0.2.0indirekt
Gogithub.com/hashicorp/go-secure-stdlib/strutilv0.1.2indirekt
Gogithub.com/hashicorp/go-sockaddrv1.0.7indirekt
Gogithub.com/hashicorp/go-versionv1.9.0indirekt
Gogithub.com/hashicorp/hclv1.0.1-vault-7indirekt
Gogithub.com/hashicorp/hcl/v2v2.24.0indirekt
Gogithub.com/hashicorp/vault/apiv1.22.0indirekt
Gogithub.com/iancoleman/strcasev0.3.0indirekt
Gogithub.com/imdario/mergov0.3.16indirekt
Gogithub.com/in-toto/in-toto-golangv0.5.0indirekt
Gogithub.com/inconshreveable/mousetrapv1.1.0indirekt
Gogithub.com/iwdgo/sigintwindowsv0.2.2indirekt
Gogithub.com/jbenet/go-contextv0.0.0-20150711004518-d14ea06fba99indirekt
Gogithub.com/jmespath/go-jmespathv0.4.0indirekt
Gogithub.com/josharian/internv1.0.0indirekt
Gogithub.com/json-iterator/gov1.1.12indirekt
Gogithub.com/kevinburke/ssh_configv1.2.0indirekt
Gogithub.com/klauspost/compressv1.18.0indirekt
Gogithub.com/klauspost/cpuid/v2v2.3.0indirekt
Gogithub.com/kylelemons/godebugv1.1.0indirekt
Gogithub.com/lucasb-eyer/go-colorfulv1.4.0indirekt
Gogithub.com/mailru/easyjsonv0.7.7indirekt
Gogithub.com/mattn/go-colorablev0.1.14indirekt
Gogithub.com/mattn/go-isattyv0.0.22indirekt
Gogithub.com/mattn/go-localereaderv0.0.1indirekt
Gogithub.com/mattn/go-runewidthv0.0.23indirekt
Gogithub.com/mattn/go-runewidthv0.0.24indirekt
Gogithub.com/mattn/go-shellwordsv1.0.12indirekt
Gogithub.com/microsoft/go-winiov0.6.2indirekt
Gogithub.com/mitchellh/copystructurev1.2.0indirekt
Gogithub.com/mitchellh/go-homedirv1.1.0indirekt
Gogithub.com/mitchellh/go-psv1.0.0indirekt
Gogithub.com/mitchellh/go-wordwrapv1.0.1indirekt
Gogithub.com/mitchellh/hashstructure/v2v2.0.2indirekt
Gogithub.com/mitchellh/mapstructurev1.5.0indirekt
Gogithub.com/mitchellh/reflectwalkv1.0.2indirekt
Gogithub.com/moby/docker-image-specv1.3.1indirekt
Gogithub.com/moby/lockerv1.0.1indirekt
Gogithub.com/moby/spdystreamv0.4.0indirekt
Gogithub.com/moby/sys/mountinfov0.7.2indirekt
Gogithub.com/moby/sys/sequentialv0.6.0indirekt
Gogithub.com/moby/sys/signalv0.7.1indirekt
Gogithub.com/moby/sys/userv0.3.0indirekt
Gogithub.com/moby/sys/usernsv0.1.0indirekt
Gogithub.com/moby/termv0.5.2indirekt
Gogithub.com/modern-go/concurrentv0.0.0-20180306012644-bacd9c7ef1ddindirekt
Gogithub.com/modern-go/reflect2v1.0.3-0.20250322232337-35a7c28c31eeindirekt
Gogithub.com/morikuni/aecv1.0.0indirekt
Gogithub.com/muesli/ansiv0.0.0-20230316100256-276c6243b2f6indirekt
Gogithub.com/muesli/cancelreaderv0.2.2indirekt
Gogithub.com/muesli/termenvv0.16.0indirekt
Gogithub.com/munnerz/goautonegv0.0.0-20191010083416-a7dc8b61c822indirekt
Gogithub.com/mxk/go-flowratev0.0.0-20140419014527-cca7078d478findirekt
Gogithub.com/natefinch/atomicv1.0.1indirekt
Gogithub.com/nxadm/tailv1.4.11indirekt
Gogithub.com/opencontainers/go-digestv1.0.0indirekt
Gogithub.com/opencontainers/image-specv1.1.0indirekt
Gogithub.com/opentracing/basictracer-gov1.1.0indirekt
Gogithub.com/opentracing/opentracing-gov1.2.0indirekt
Gogithub.com/pelletier/go-tomlv1.9.5indirekt
Gogithub.com/pgavlin/fxv0.1.6indirekt
Gogithub.com/pgavlin/fx/v2v2.0.12indirekt
Gogithub.com/pgavlin/goldmarkv1.1.33-0.20200616210433-b5eb04559386indirekt
Gogithub.com/pjbgf/sha1cdv0.6.0indirekt
Gogithub.com/pkg/browserv0.0.0-20240102092130-5ac0b6a4141cindirekt
Gogithub.com/pkg/errorsv0.9.1indirekt
Gogithub.com/pkg/termv1.1.0indirekt
Gogithub.com/planetscale/vtprotobufv0.6.1-0.20240319094008-0393e58bdf10indirekt
Gogithub.com/pmezard/go-difflibv1.0.1-0.20181226105442-5d4384ee4fb2indirekt
Gogithub.com/prometheus/client_golangv1.20.5indirekt
Gogithub.com/prometheus/client_modelv0.6.2indirekt
Gogithub.com/prometheus/commonv0.55.0indirekt
Gogithub.com/prometheus/procfsv0.15.1indirekt
Gogithub.com/protonmail/go-cryptov1.2.0indirekt
Gogithub.com/pulumi/appdashv0.0.0-20231130102222-75f619a67231indirekt
Gogithub.com/pulumi/escv0.25.0indirekt
Gogithub.com/pulumi/inflectorv0.2.1indirekt
Gogithub.com/pulumi/pulumi-docker-build/sdk/go/dockerbuildv0.0.18indirekt
Gogithub.com/rivo/unisegv0.4.7indirekt
Gogithub.com/rogpeppe/go-internalv1.14.1indirekt
Gogithub.com/ryanuber/go-globv1.0.0indirekt
Gogithub.com/sabhiram/go-gitignorev0.0.0-20210923224102-525f6e181f06indirekt
Gogithub.com/santhosh-tekuri/jsonschema/v5v5.3.1indirekt
Gogithub.com/secure-systems-lab/go-securesystemslibv0.4.0indirekt
Gogithub.com/segmentio/asmv1.2.0indirekt
Gogithub.com/segmentio/encodingv0.4.1indirekt
Gogithub.com/sergi/go-diffv1.4.0indirekt
Gogithub.com/serialx/hashringv0.0.0-20200727003509-22c0c7ab6b1bindirekt
Gogithub.com/shibumi/go-pathspecv1.3.0indirekt
Gogithub.com/skeema/knownhostsv1.3.1indirekt
Gogithub.com/spf13/castv1.5.0indirekt
Gogithub.com/spf13/cobrav1.10.2indirekt
Gogithub.com/spf13/pflagv1.0.10indirekt
Gogithub.com/spiffe/go-spiffe/v2v2.6.0indirekt
Gogithub.com/stretchr/objxv0.5.2indirekt
Gogithub.com/texttheater/golang-levenshteinv1.0.1indirekt
Gogithub.com/tonistiigi/dchapes-modev0.0.0-20241001053921-ca0759fec205indirekt
Gogithub.com/tonistiigi/jaeger-ui-restv0.0.0-20250211190051-7d4944a45bb6indirekt
Gogithub.com/tonistiigi/unitsv0.0.0-20180711220420-6950e57a87eaindirekt
Gogithub.com/tonistiigi/vt100v0.0.0-20240514184818-90bafcd6ababindirekt
Gogithub.com/uber/jaeger-client-gov2.30.0+incompatibleindirekt
Gogithub.com/uber/jaeger-libv2.4.1+incompatibleindirekt
Gogithub.com/ulikunitz/xzv0.5.15indirekt
Gogithub.com/x448/float16v0.8.4indirekt
Gogithub.com/xanzy/ssh-agentv0.3.3indirekt
Gogithub.com/xeipuuv/gojsonpointerv0.0.0-20190905194746-02993c407bfbindirekt
Gogithub.com/xeipuuv/gojsonreferencev0.0.0-20180127040603-bd5ef7bd5415indirekt
Gogithub.com/xeipuuv/gojsonschemav1.2.0indirekt
Gogithub.com/xo/terminfov0.0.0-20220910002029-abceb7e1c41eindirekt
Gogithub.com/zclconf/go-ctyv1.17.0indirekt
Gogo.opentelemetry.io/auto/sdkv1.2.1indirekt
Gogo.opentelemetry.io/collector/featuregatev1.58.0indirekt
Gogo.opentelemetry.io/collector/featuregatev1.59.0indirekt
Gogo.opentelemetry.io/collector/pdatav1.58.0indirekt
Gogo.opentelemetry.io/collector/pdatav1.59.0indirekt
Gogo.opentelemetry.io/contrib/detectors/gcpv1.42.0indirekt
Gogo.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpcv0.67.0indirekt
Gogo.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptracev0.56.0indirekt
Gogo.opentelemetry.io/contrib/instrumentation/net/http/otelhttpv0.67.0indirekt
Gogo.opentelemetry.io/otelv1.43.0indirekt
Gogo.opentelemetry.io/otelv1.44.0indirekt
Gogo.opentelemetry.io/otel/bridge/opentracingv1.33.0indirekt
Gogo.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpcv1.42.0indirekt
Gogo.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttpv1.31.0indirekt
Gogo.opentelemetry.io/otel/exporters/otlp/otlptracev1.43.0indirekt
Gogo.opentelemetry.io/otel/exporters/otlp/otlptracev1.44.0indirekt
Gogo.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpcv1.43.0indirekt
Gogo.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpcv1.44.0indirekt
Gogo.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttpv1.31.0indirekt
Gogo.opentelemetry.io/otel/sdk/metricv1.44.0indirekt
Gogo.opentelemetry.io/proto/otlpv1.10.0indirekt
Gogo.uber.org/atomicv1.11.0indirekt
Gogo.uber.org/multierrv1.11.0indirekt
Gogocloud.devv0.46.0indirekt
Gogocloud.dev/secrets/hashivaultv0.46.0indirekt
Gogolang.org/x/modv0.35.0indirekt
Gogolang.org/x/netv0.55.0indirekt
Gogolang.org/x/oauth2v0.36.0indirekt
Gogolang.org/x/syncv0.20.0indirekt
Gogolang.org/x/sysv0.45.0indirekt
Gogolang.org/x/termv0.43.0indirekt
Gogolang.org/x/textv0.37.0indirekt
Gogolang.org/x/timev0.15.0indirekt
Gogolang.org/x/toolsv0.44.0indirekt
Gogolang.org/x/xerrorsv0.0.0-20240903120638-7835f813f4daindirekt
Gogoogle.golang.org/apiv0.272.0indirekt
Gogoogle.golang.org/genprotov0.0.0-20260316180232-0b37fe3546d5indirekt
Gogoogle.golang.org/genproto/googleapis/apiv0.0.0-20260522204824-7f3bc5b78da9indirekt
Gogoogle.golang.org/genproto/googleapis/apiv0.0.0-20260526163538-3dc84a4a5aaaindirekt
Gogoogle.golang.org/genproto/googleapis/rpcv0.0.0-20260522204824-7f3bc5b78da9indirekt
Gogoogle.golang.org/genproto/googleapis/rpcv0.0.0-20260526163538-3dc84a4a5aaaindirekt
Gogoogle.golang.org/grpcv1.81.1indirekt
Gogopkg.in/inf.v0v0.9.1indirekt
Gogopkg.in/tomb.v1v1.0.0-20141024135613-dd632973f1e7indirekt
Gogopkg.in/warnings.v0v0.1.2indirekt
Gogopkg.in/yaml.v2v2.4.0indirekt
Gok8s.io/apiv0.31.2indirekt
Gok8s.io/apimachineryv0.31.2indirekt
Gok8s.io/client-gov0.31.2indirekt
Gok8s.io/klog/v2v2.130.1indirekt
Gok8s.io/kube-openapiv0.0.0-20240228011516-70dd3763d340indirekt
Gok8s.io/utilsv0.0.0-20240711033017-18e509b52bc8indirekt
Golukechampine.com/frandv1.5.1indirekt
Gosigs.k8s.io/jsonv0.0.0-20221116044647-bc3834ca7abdindirekt
Gosigs.k8s.io/structured-merge-diff/v4v4.4.1indirekt
Gosigs.k8s.io/yamlv1.4.0indirekt
Mavencom.pulumi:docker-buildindirekt
Mavencom.pulumi:pulumiindirekt
Mavenorg.apache.maven.plugins:maven-assembly-plugin3.4.2indirekt
Mavenorg.apache.maven.plugins:maven-jar-plugin3.2.2indirekt
Mavenorg.apache.maven.plugins:maven-wrapper-plugin3.1.1indirekt
Mavenorg.codehaus.mojo:exec-maven-plugin3.1.0indirekt
npm@grpc/grpc-js1.14.3indirekt
npm@grpc/proto-loader0.8.0indirekt
npm@isaacs/balanced-match4.0.1indirekt
npm@isaacs/brace-expansion5.0.1indirekt
npm@isaacs/fs-minipass4.0.1indirekt
npm@isaacs/string-locale-compare1.1.0indirekt
npm@js-sdsl/ordered-map4.4.2indirekt
npm@logdna/tail-file2.2.0indirekt
npm@npmcli/agent4.0.0indirekt
npm@npmcli/arborist9.2.0indirekt
npm@npmcli/fs5.0.0indirekt
npm@npmcli/git7.0.1indirekt
npm@npmcli/installed-package-contents4.0.0indirekt
npm@npmcli/map-workspaces5.0.3indirekt
npm@npmcli/metavuln-calculator9.0.3indirekt
npm@npmcli/name-from-folder4.0.0indirekt
npm@npmcli/node-gyp5.0.0indirekt
npm@npmcli/package-json7.0.4indirekt
npm@npmcli/promise-spawn9.0.1indirekt
npm@npmcli/query5.0.0indirekt
npm@npmcli/redact4.0.0indirekt
npm@npmcli/run-script10.0.3indirekt
npm@opentelemetry/api1.9.0indirekt
npm@opentelemetry/api-logs0.57.2indirekt
npm@opentelemetry/context-async-hooks1.30.1indirekt
npm@opentelemetry/core1.30.1indirekt
npm@opentelemetry/exporter-trace-otlp-grpc0.57.2indirekt
npm@opentelemetry/exporter-zipkin1.30.1indirekt
npm@opentelemetry/instrumentation0.57.2indirekt
npm@opentelemetry/instrumentation-grpc0.57.2indirekt
npm@opentelemetry/otlp-exporter-base0.57.2indirekt
npm@opentelemetry/otlp-grpc-exporter-base0.57.2indirekt
npm@opentelemetry/otlp-transformer0.57.2indirekt
npm@opentelemetry/propagator-b31.30.1indirekt
npm@opentelemetry/propagator-jaeger1.30.1indirekt
npm@opentelemetry/resources1.30.1indirekt
npm@opentelemetry/sdk-logs0.57.2indirekt
npm@opentelemetry/sdk-metrics1.30.1indirekt
npm@opentelemetry/sdk-trace-base1.30.1indirekt
npm@opentelemetry/sdk-trace-node1.30.1indirekt
npm@opentelemetry/semantic-conventions1.28.0indirekt
npm@protobufjs/aspromise1.1.2indirekt
npm@protobufjs/base641.1.2indirekt
npm@protobufjs/codegen2.0.4indirekt
npm@protobufjs/eventemitter1.1.0indirekt
npm@protobufjs/fetch1.1.0indirekt
npm@protobufjs/float1.0.2indirekt
npm@protobufjs/inquire1.1.0indirekt
npm@protobufjs/path1.1.2indirekt
npm@protobufjs/pool1.1.0indirekt
npm@protobufjs/utf81.1.0indirekt
npm@pulumi/pulumi3.245.0indirekt
npm@pulumi/pulumi^3.142.0indirekt
npm@sigstore/bundle4.0.0indirekt
npm@sigstore/core3.1.0indirekt
npm@sigstore/protobuf-specs0.5.0indirekt
npm@sigstore/sign4.1.0indirekt
npm@sigstore/tuf4.0.1indirekt
npm@sigstore/verify3.1.0indirekt
npm@tufjs/canonical-json2.0.0indirekt
npm@tufjs/models4.1.0indirekt
npm@types/google-protobuf3.15.12indirekt
npm@types/node20.14.14indirekt
npm@types/node22.1.0indirekt
npm@types/node^18indirekt
npm@types/node^20indirekt
npm@types/node^20.0.0indirekt
npm@types/semver7.5.8indirekt
npm@types/shimmer1.2.0indirekt
npm@types/tmp0.2.6indirekt
npmabbrev4.0.0indirekt
npmacorn8.12.1indirekt
npmacorn-import-attributes1.9.5indirekt
npmagent-base7.1.1indirekt
npmansi-regex5.0.1indirekt
npmansi-styles4.3.0indirekt
npmargparse1.0.10indirekt
npmbin-links6.0.0indirekt
npmbuffer-from1.1.2indirekt
npmcacache20.0.3indirekt
npmchownr3.0.0indirekt
npmcjs-module-lexer1.3.1indirekt
npmcliui8.0.1indirekt
npmcmd-shim8.0.0indirekt
npmcolor-convert2.0.1indirekt
npmcolor-name1.1.4indirekt
npmcommon-ancestor-path2.0.0indirekt
npmcross-spawn7.0.3indirekt
npmcssesc3.0.0indirekt
npmdebug4.4.3indirekt
npmemoji-regex8.0.0indirekt
npmencoding0.1.13indirekt
npmenv-paths2.2.1indirekt
npmerr-code2.0.3indirekt
npmescalade3.1.2indirekt
npmesprima4.0.1indirekt
npmexeca5.1.1indirekt
npmexponential-backoff3.1.1indirekt
npmfdir6.5.0indirekt
npmfs-minipass3.0.3indirekt
npmfunction-bind1.1.2indirekt
npmget-caller-file2.0.5indirekt
npmget-stream6.0.1indirekt
npmglob13.0.1indirekt
npmgoogle-protobuf3.21.4indirekt
npmgraceful-fs4.2.11indirekt
npmhasown2.0.2indirekt
npmhosted-git-info7.0.2indirekt
npmhosted-git-info9.0.2indirekt
npmhttp-cache-semantics4.1.1indirekt
npmhttp-proxy-agent7.0.2indirekt
npmhttps-proxy-agent7.0.5indirekt
npmhuman-signals2.1.0indirekt
npmiconv-lite0.6.3indirekt
npmignore-walk8.0.0indirekt
npmimport-in-the-middle1.11.0indirekt
npmimurmurhash0.1.4indirekt
npmini2.0.0indirekt
npmini6.0.0indirekt
npmip-address9.0.5indirekt
npmis-core-module2.15.0indirekt
npmis-fullwidth-code-point3.0.0indirekt
npmis-stream2.0.1indirekt
npmisexe2.0.0indirekt
npmisexe3.1.1indirekt
npmjs-yaml3.14.2indirekt
npmjsbn1.1.0indirekt
npmjson-parse-even-better-errors5.0.0indirekt
npmjson-stringify-nice1.1.4indirekt
npmjsonparse1.3.1indirekt
npmjust-diff6.0.2indirekt
npmjust-diff-apply5.5.0indirekt
npmlodash.camelcase4.3.0indirekt
npmlong5.2.3indirekt
npmlru-cache10.4.3indirekt
npmlru-cache11.2.5indirekt
npmmake-fetch-happen15.0.3indirekt
npmmerge-stream2.0.0indirekt
npmmimic-fn2.1.0indirekt
npmminimatch10.1.2indirekt
npmminimist1.2.8indirekt
npmminipass3.3.6indirekt
npmminipass7.1.2indirekt
npmminipass-collect2.0.1indirekt
npmminipass-fetch5.0.1indirekt
npmminipass-flush1.0.5indirekt
npmminipass-pipeline1.2.4indirekt
npmminipass-sized2.0.0indirekt
npmminizlib3.1.0indirekt
npmmodule-details-from-path1.0.3indirekt
npmms2.1.3indirekt
npmnegotiator1.0.0indirekt
npmnode-gyp12.2.0indirekt
npmnopt9.0.0indirekt
npmnormalize-package-data6.0.2indirekt
npmnpm-bundled5.0.0indirekt
npmnpm-install-checks8.0.0indirekt
npmnpm-normalize-package-bin5.0.0indirekt
npmnpm-package-arg13.0.2indirekt
npmnpm-packlist10.0.3indirekt
npmnpm-pick-manifest11.0.3indirekt
npmnpm-registry-fetch19.1.1indirekt
npmnpm-run-path4.0.1indirekt
npmonetime5.1.2indirekt
npmp-map7.0.4indirekt
npmpacote21.2.0indirekt
npmparse-conflict-json5.0.1indirekt
npmpath-key3.1.1indirekt
npmpath-parse1.0.7indirekt
npmpath-scurry2.0.1indirekt
npmpicomatch4.0.4indirekt
npmpostcss-selector-parser7.1.1indirekt
npmproc-log6.1.0indirekt
npmproggy4.0.0indirekt
npmpromise-all-reject-late1.0.1indirekt
npmpromise-call-limit3.0.1indirekt
npmpromise-retry2.0.1indirekt
npmprotobufjs7.5.4indirekt
npmread-cmd-shim6.0.0indirekt
npmrequire-directory2.1.1indirekt
npmrequire-from-string2.0.2indirekt
npmrequire-in-the-middle7.4.0indirekt
npmresolve1.22.8indirekt
npmretry0.12.0indirekt
npmsafer-buffer2.1.2indirekt
npmsemver7.6.3indirekt
npmshebang-command2.0.0indirekt
npmshebang-regex3.0.0indirekt
npmshimmer1.2.1indirekt
npmsignal-exit3.0.7indirekt
npmsignal-exit4.1.0indirekt
npmsigstore4.1.0indirekt
npmsmart-buffer4.2.0indirekt
npmsocks2.8.3indirekt
npmsocks-proxy-agent8.0.4indirekt
npmsource-map0.6.1indirekt
npmsource-map-support0.5.21indirekt
npmspdx-correct3.2.0indirekt
npmspdx-exceptions2.5.0indirekt
npmspdx-expression-parse3.0.1indirekt
npmspdx-license-ids3.0.18indirekt
npmsprintf-js1.0.3indirekt
npmsprintf-js1.1.3indirekt
npmssri13.0.0indirekt
npmstring-width4.2.3indirekt
npmstrip-ansi6.0.1indirekt
npmstrip-final-newline2.0.0indirekt
npmsupports-preserve-symlinks-flag1.0.0indirekt
npmtar7.5.7indirekt
npmtinyglobby0.2.15indirekt
npmtmp0.2.5indirekt
npmtreeverse3.0.0indirekt
npmtuf-js4.1.0indirekt
npmtypescript^4.0.0indirekt
npmtypescript^4.7.0indirekt
npmundici-types5.26.5indirekt
npmundici-types6.13.0indirekt
npmunique-filename5.0.0indirekt
npmunique-slug6.0.0indirekt
npmupath1.2.0indirekt
npmutil-deprecate1.0.2indirekt
npmvalidate-npm-package-license3.0.4indirekt
npmvalidate-npm-package-name7.0.2indirekt
npmwalk-up-path4.0.0indirekt
npmwhich2.0.2indirekt
npmwhich6.0.0indirekt
npmwrap-ansi7.0.0indirekt
npmwrite-file-atomic7.0.0indirekt
npmy18n5.0.8indirekt
npmyallist4.0.0indirekt
npmyallist5.0.0indirekt
npmyargs17.7.2indirekt
npmyargs-parser21.1.1indirekt
NuGetMicrosoft.SourceLink.GitHub1.0.0indirekt
NuGetPulumiindirekt
NuGetPulumi.Dockerbuildindirekt
PyPIparverindirekt
PyPIpulumiindirekt
PyPIsemverindirekt
PyPIsetuptoolsindirekt
Abhängigkeits-Advisories 28

Dieses Repository veröffentlicht kein vom Index auflösbares Paket, daher wurde sein eigener Abhängigkeitsgraph bewertet – 573 Pakete, darunter auch Entwicklungs- und Test-Pins, die nie ausgeliefert werden: 28 tragen bekannte Advisories, davon 6 direkte. 14 konnten nicht bewertet werden – keine aufgelöste Version, ein nicht unterstütztes Ökosystem, oder außerhalb der ausgewiesenen Paketliste.

PaketVersionBeziehungSchweregradAdvisoriesBehoben in
golang.org/x/cryptov0.51.0direktkritisch270.52.0
google.golang.org/grpcv1.81.1indirektkritisch11.82.1
protobufjs7.5.4indirektkritisch128.6.6
github.com/docker/cliv28.0.4+incompatibledirekthoch229.2.0+incompatible
github.com/docker/dockerv28.0.1+incompatibledirekthoch1029.3.1
github.com/moby/buildkitv0.20.1direkthoch40.28.1
@grpc/grpc-js1.14.3indirekthoch21.14.4
@opentelemetry/propagator-jaeger1.30.1indirekthoch12.9.0
cross-spawn7.0.3indirekthoch17.0.5
github.com/containerd/containerd/v2v2.0.7indirekthoch62.3.2
github.com/moby/spdystreamv0.4.0indirekthoch20.5.1
js-yaml3.14.2indirekthoch24.3.0
minimatch10.1.2indirekthoch310.2.3
sigstore4.1.0indirekthoch14.1.1
tar7.5.7indirekthoch87.5.19
tmp0.2.5indirekthoch10.2.6
github.com/regclient/regclientv0.7.1direktmittel20.11.5
@opentelemetry/core1.30.1indirektmittel12.8.0
@protobufjs/utf81.1.0indirektmittel18.0.2
@sigstore/core3.1.0indirektmittel13.2.1
@sigstore/verify3.1.0indirektmittel13.1.1
github.com/in-toto/in-toto-golangv0.5.0indirektmittel20.11.0
go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttpv1.31.0indirektmittel21.43.0
go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttpv1.31.0indirektmittel21.43.0
ip-address9.0.5indirektmittel110.1.1
github.com/aws/aws-sdk-gov1.55.8direktunbekannt2
golang.org/x/netv0.55.0indirektunbekannt10.56.0
golang.org/x/textv0.37.0indirektunbekannt10.39.0

Ein Advisory bedeutet, dass die im Abhängigkeitsgraphen erfasste Version in den betroffenen Bereich eines Advisories fällt. Erreichbarkeit wird nicht analysiert, und der Graph enthält Entwicklungs- und Test-Pins — ein Fund kann das Werkzeug betreffen und nicht die ausgelieferte Software.

JSON-Rohbericht maschinenlesbar
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 3217,
      "has_wiki": true,
      "homepage": null,
      "languages": {
        "Go": 240185,
        "Shell": 1384,
        "Python": 3757,
        "Makefile": 11200
      },
      "pushed_at": "2026-07-22T08:15:46Z",
      "created_at": "2024-03-07T19:17:12Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-22T06:39:43Z",
      "description": "A Pulumi native provider for Docker",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Go",
      "significant_languages": [
        "Go"
      ]
    },
    "owner": {
      "blog": "https://pulumi.com/",
      "name": "Pulumi",
      "type": "Organization",
      "login": "pulumi",
      "company": null,
      "location": "United States of America",
      "followers": 1310,
      "avatar_url": "https://avatars.githubusercontent.com/u/21992475?v=4",
      "created_at": "2016-09-05T00:08:26Z",
      "is_verified": null,
      "public_repos": 428,
      "account_age_days": 3607
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.0.21",
          "kind": "patch",
          "published_at": "2026-07-17T11:15:07Z"
        },
        {
          "tag": "v0.0.20",
          "kind": "patch",
          "published_at": "2026-06-24T20:07:46Z"
        },
        {
          "tag": "v0.0.19",
          "kind": "patch",
          "published_at": "2026-06-17T17:59:59Z"
        },
        {
          "tag": "v0.0.18",
          "kind": "patch",
          "published_at": "2026-05-27T17:04:13Z"
        },
        {
          "tag": "v0.0.17",
          "kind": "patch",
          "published_at": "2026-05-14T16:40:34Z"
        },
        {
          "tag": "v0.0.16",
          "kind": "patch",
          "published_at": "2026-05-12T18:33:56Z"
        },
        {
          "tag": "v0.0.15",
          "kind": "patch",
          "published_at": "2025-10-17T11:02:03Z"
        },
        {
          "tag": "v0.0.14",
          "kind": "patch",
          "published_at": "2025-10-01T16:29:20Z"
        },
        {
          "tag": "v0.0.13",
          "kind": "patch",
          "published_at": "2025-08-27T19:13:13Z"
        },
        {
          "tag": "v0.0.12",
          "kind": "patch",
          "published_at": "2025-05-16T19:29:13Z"
        },
        {
          "tag": "v0.0.11",
          "kind": "patch",
          "published_at": "2025-04-11T22:48:17Z"
        },
        {
          "tag": "v0.0.10",
          "kind": "patch",
          "published_at": "2025-01-27T22:57:10Z"
        },
        {
          "tag": "v0.0.9",
          "kind": "patch",
          "published_at": "2025-01-16T10:29:47Z"
        },
        {
          "tag": "v0.0.8",
          "kind": "patch",
          "published_at": "2024-12-10T18:03:25Z"
        },
        {
          "tag": "v0.0.7",
          "kind": "patch",
          "published_at": "2024-10-16T22:53:06Z"
        },
        {
          "tag": "v0.0.6",
          "kind": "patch",
          "published_at": "2024-08-13T22:41:52Z"
        },
        {
          "tag": "v0.0.5",
          "kind": "patch",
          "published_at": "2024-08-09T00:22:09Z"
        },
        {
          "tag": "v0.0.4",
          "kind": "patch",
          "published_at": "2024-07-15T16:39:14Z"
        },
        {
          "tag": "v0.0.3",
          "kind": "patch",
          "published_at": "2024-06-12T23:51:52Z"
        },
        {
          "tag": "v0.0.2",
          "kind": "patch",
          "published_at": "2024-04-25T17:48:21Z"
        },
        {
          "tag": "v0.0.1",
          "kind": "patch",
          "published_at": "2024-04-23T17:26:22Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "9ce55065cf4af98af92336434cbfb07ee6b2056f",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[8986209fcafff57b470901cc48f1cb2025b4caa1](https://github.com/pulumi/ci-mgmt/commit/8986209fcafff57b470901cc48f1cb2025b4caa1).\n\n## Rebasing this PR\n\nIf this PR falls\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#959)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-22T06:38:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7063206f1f7e4b2c5b859bef4f394cc299a791b0",
          "body": "This PR was triggered by @pose generated by the\nupdate-workflows-single-bridged-provider workflow in the pulumi/ci-mgmt\nrepo, from commit\n[86cf03b4e2086610427a49915ec3c2503c39aca0](https://github.com/pulumi/ci-mgmt/commit/86cf03b4e2086610427a49915ec3c2503c39aca0).\n\n## Rebasing this PR\n\nIf this PR fa\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#958)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-21T15:03:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d2256577232e5129d2ccca881b66291878f4671b",
          "body": "…955)\n\nFixes #929.\n\nImage.Read treated every cli.Inspect error as \"tag gone\" and continued. If all tags errored, it returned an empty ID and refresh deleted the resource from state. So an expired ECR token, a 401/403, or a transient network blip during pulumi refresh silently dropped a live resource\n[…]\nfresh (warn, no deletion), matching the existing Index.Read behavior.\n\n---------\n\nCo-authored-by: jschady <jlschady@gmail.com>\nCo-authored-by: Joseph Schady <62862774+jschady@users.noreply.github.com>",
          "is_bot": false,
          "headline": "fix: Image.Read no longer deletes state on non-404 registry errors (#…",
          "author_name": "Alberto Pose",
          "author_login": "pose",
          "committed_at": "2026-07-17T10:30:45Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1025706844af154835c9f77573d1f48843becc6c",
          "body": "…930)\n\nFixes #929.\n\nImage.Read treated every cli.Inspect error as \"tag gone\" and continued.\nIf all tags errored, it returned an empty ID and refresh deleted the\nresource from state. So an expired ECR token, a 401/403, or a transient\nnetwork blip during pulumi refresh silently dropped a live resource from\nthe statefile.\n\nA tag is only dropped on a definitive not-found. Any other error leaves\nstate untouched and skips the refresh (warn, no deletion), matching the\nexisting Index.Read behavior.",
          "is_bot": false,
          "headline": "fix: Image.Read no longer deletes state on non-404 registry errors (#…",
          "author_name": "Joseph Schady",
          "author_login": "jschady",
          "committed_at": "2026-07-17T10:30:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e2dd9a75937c6156a26bfea2a298d8d4c892cb91",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[9a5f81070e21fcf1c649d1b3277c298be0ec14f0](https://github.com/pulumi/ci-mgmt/commit/9a5f81070e21fcf1c649d1b3277c298be0ec14f0).\n\n## Rebasing this PR\n\nIf this PR falls\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#953)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-16T06:33:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2b1296ca2be0cb4588cd7b241f5740e22c73d6ea",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[691198e3865029b75eb6f6c86b89f9f05fbc083a](https://github.com/pulumi/ci-mgmt/commit/691198e3865029b75eb6f6c86b89f9f05fbc083a).\n\n## Rebasing this PR\n\nIf this PR falls\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#951)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-14T06:25:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d42a1b651aeee57ff78f6ffc54ced5414b4fb71a",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[d5aaff8307e1df32fc0450ecebfd6f105b69250e](https://github.com/pulumi/ci-mgmt/commit/d5aaff8307e1df32fc0450ecebfd6f105b69250e).\n\n## Rebasing this PR\n\nIf this PR falls\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#950)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-11T06:31:11Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bf9c04b99b158427c0efdfa5262dca5ca5462ec6",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[ff82bb338b9d8b0030a7142077628563aa60fc8f](https://github.com/pulumi/ci-mgmt/commit/ff82bb338b9d8b0030a7142077628563aa60fc8f).\n\n## Rebasing this PR\n\nIf this PR falls\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#949)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-10T07:00:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3f039c36c32105770bf6b41436b2525830a27e81",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[5c6c1dd43607f50a53677b95c6eaa29e73012af1](https://github.com/pulumi/ci-mgmt/commit/5c6c1dd43607f50a53677b95c6eaa29e73012af1).\n\n## Rebasing this PR\n\nIf this PR falls\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#947)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-09T07:14:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1ea1712c166d905cd4aaf4de079bc385b5d07abd",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[d291a07f54597038186af2c92c36f8324c2cfe57](https://github.com/pulumi/ci-mgmt/commit/d291a07f54597038186af2c92c36f8324c2cfe57).\n\n## Rebasing this PR\n\nIf this PR falls\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#946)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-05T06:53:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "69499481256982231ab2fc3282367ad345cd5223",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[c5cbc8d03c913f4d114a9c3d16d245bd1d80a8e7](https://github.com/pulumi/ci-mgmt/commit/c5cbc8d03c913f4d114a9c3d16d245bd1d80a8e7).\n\n## Rebasing this PR\n\nIf this PR falls\n[…]\nurrent ci-mgmt `master`, closes\nthis stale PR (via the \"obsolete PR\" cleanup step above), and opens a\nfresh one rebased on the provider's current `master`.\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#945)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-04T06:41:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8e67b241357a955c24aefc3654f23f2a769bcb0d",
          "body": "Gives each Windows-signing invocation its own `AZURE_CONFIG_DIR` (a\nfresh `mktemp -d`) so the concurrent amd64/arm64 signing runs don't\nshare `~/.azure` and race on `accounts.json`, and drops the explicit `az\nlogout` (cleanup on EXIT replaces it). Verified locally: the recipe\nexpands via `make -n` a\n[…]\nation\nreproduces the `ERROR: There are no active accounts.` failure that the\nisolated-dir version fixes.\n\nPart of pulumi/home#4671\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Isolate Azure CLI config dir when signing Windows binaries (#938)",
          "author_name": "Alberto Pose",
          "author_login": "pose",
          "committed_at": "2026-07-02T16:02:22Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "5951cb3f4543db1f7ae7807b4da4643129a309f1",
          "body": "This PR was triggered by @pose generated by the\nupdate-workflows-single-bridged-provider workflow in the pulumi/ci-mgmt\nrepo, from commit\n[b99c2328420f02ce1f15040dcc6e6c04a1ed4dfa](https://github.com/pulumi/ci-mgmt/commit/b99c2328420f02ce1f15040dcc6e6c04a1ed4dfa).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#941)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-07-02T12:58:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5641ad5df50374879440b26073bc2c48fb4d556f",
          "body": "… (#937)\n\nThe ci-mgmt workflow update bumps golangci-lint to 2.12.2, which enables\nstricter `goconst`/`gosec` checks. This hoists repeated string literals\ninto named constants and adds line-scoped `//nolint:gosec` annotations\n(with reasons) to the fake test-fixture credentials and build-time CLI\npath arguments. Verified locally with golangci-lint 2.12.2 (uncapped)\nreporting 0 issues.\n\nPart of #936\nPart of pulumi/home#4817\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Hoist repeated literals to constants and annotate gosec test fixtures…",
          "author_name": "Alberto Pose",
          "author_login": "pose",
          "committed_at": "2026-07-02T12:41:44Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "0b3ab4fe06deb5ac344e26074a445c353272ff2c",
          "body": "## Summary\n\nThe `secrets` input on the `Image` resource was not being marked as a\nPulumi secret in state, meaning secret values passed to builds could be\nstored in plaintext in the Pulumi state file. This PR adds the\n`provider:\"secret\"` annotation to `ImageArgs.Secrets` to fix that.\n\n## Changes\n\n- `\n[…]\n\n- [x] Example integration tests call `assertSecretsInputIsSecret` to\nconfirm secrets are encrypted in state after a real deployment\n\n---------\n\nCo-authored-by: guineveresaenger <guinevere@pulumi.com>",
          "is_bot": false,
          "headline": "fix(secrets): mark secrets input as secret in provider schema (#919)",
          "author_name": "Piers Karsenbarg",
          "author_login": "pierskarsenbarg",
          "committed_at": "2026-06-24T19:08:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6d9110e78c712389bbb2ff54991c907c18d19022",
          "body": "…t-lived secrets change (#683)\n\nArgument `IgnoreSecretsInDiffCalculation` has been added to avoid\nunnecessary rebuilds in case short-lived secrets change.\n(https://github.com/pulumi/pulumi-docker-build/issues/678)\n\n---------\n\nCo-authored-by: guineveresaenger <guinevere@pulumi.com>\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "add IgnoreSecretsInDiffCalculation argument to avoid rebuilds if shor…",
          "author_name": "Saad Ismail",
          "author_login": "saadismail",
          "committed_at": "2026-06-17T17:08:18Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "76c27ecc9980ae7c7b09041449331d3f4a95f596",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[eef3ccc2f7caa0d5952d443be2bed2b052ca453d](https://github.com/pulumi/ci-mgmt/commit/eef3ccc2f7caa0d5952d443be2bed2b052ca453d).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#903)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-17T07:13:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "68595075383a65d1bd7c3e4d640073cb695a22b0",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[pulumi/git-status-check-action](https://redirect.github.com/pulumi/git-status-check-action)\n| action | major | `v1.1.1` -> `v2.0.0` |\n|\n[pulumi/provider-version-action](https://redirect.github.com/pulu\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies to v2 (major) (#901)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-06-16T17:42:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "80e8f7bd725b76263959e00bec2ddb63ee81edcb",
          "body": "Duplicate from https://github.com/pulumi/pulumi-docker-build/pull/747 to\nget CI to run.\n\n---------\n\nCo-authored-by: Robert Smith <smith.rob.s@gmail.com>\nCo-authored-by: Ian Wahbe <me@iwahbe.com>",
          "is_bot": false,
          "headline": "Fix exec mode (#900)",
          "author_name": "Thomas Gummerer",
          "author_login": "tgummerer",
          "committed_at": "2026-06-16T17:09:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "30b0e237f0f1929dbb33646a02ad4d8d9b88ca0e",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[de6e84ff4137c103b8ed80865187ffbcf9bfd3be](https://github.com/pulumi/ci-mgmt/commit/de6e84ff4137c103b8ed80865187ffbcf9bfd3be).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#891)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-10T07:04:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c2b8998ecc831280dd19c18373192affe051d0b",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[535b90e06b6f6f8760a244435e2004b61c8b570e](https://github.com/pulumi/ci-mgmt/commit/535b90e06b6f6f8760a244435e2004b61c8b570e).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#890)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-09T06:55:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "30800f0129d1a011d2ac5f07227bd090ca885ac7",
          "body": "…v3 to v3.107.0 (#889)\n\nThis PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/v3](https://redirect.github.com/pulumi/pulumi-dotnet)\n| require | minor | `v3.106.2` -> `v3.107.0` |\n\n---\n\n> [!WARNING]\n> \n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/…",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-06-09T02:15:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ba7e698d0fedb19f95aa615c065d0f46cf18ac81",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-java](https://redirect.github.com/pulumi/pulumi-java)\n| require | minor | `v1.28.0` -> `v1.29.0` |\n\n---\n\n> [!WARNING]\n> Some dependencies could not be looked up. Check the Depe\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi-java to v1.29.0 (#888)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-06-08T16:40:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "40fb3df34c8c5350db2fd3a58b53fa3f06d2bbba",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[a44e065b34e5192e12fde3cc91d8c420862771af](https://github.com/pulumi/ci-mgmt/commit/a44e065b34e5192e12fde3cc91d8c420862771af).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#887)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-08T07:07:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "503aa07b8bb46ccfb7bd17555b2b9d0c320c0b0c",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[76166a130bae77f409e8fe041357d533d511922a](https://github.com/pulumi/ci-mgmt/commit/76166a130bae77f409e8fe041357d533d511922a).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#886)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-07T07:00:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "52229643cb33f8b9f257a074540eb77646311f1c",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[4abf06796aa79f1746039ee65140468314f36d02](https://github.com/pulumi/ci-mgmt/commit/4abf06796aa79f1746039ee65140468314f36d02).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#885)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-06T06:43:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "94882d8acc747acac04d33a53c2be3877901ffbc",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[c9016fba0268474d6bff6b6e4b01e851e816399f](https://github.com/pulumi/ci-mgmt/commit/c9016fba0268474d6bff6b6e4b01e851e816399f).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#884)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-05T07:02:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c53da67bde09134b4d095172587eced6bda9a980",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.244.0` ->\n`3.245.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies (#880)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-06-05T03:17:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f8dfaaffdaab8420c4b99682dde05220014d26f0",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[cdce005db88b2f2f295d86e0b33230cf435981bd](https://github.com/pulumi/ci-mgmt/commit/cdce005db88b2f2f295d86e0b33230cf435981bd).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#882)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-04T07:03:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "80c911c448ed525da373c2755e024fcb3309dc41",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[58ad1dbdccbda1f1351e2e990739b1311a90c6ac](https://github.com/pulumi/ci-mgmt/commit/58ad1dbdccbda1f1351e2e990739b1311a90c6ac).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#881)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-06-03T07:07:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e956539593f432c28a8a68bdec613c44d9a64087",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[b888a93605aab0d973777521a03763e13948d127](https://github.com/pulumi/ci-mgmt/commit/b888a93605aab0d973777521a03763e13948d127).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#878)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-30T06:35:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c83bd015707d4a8c9151f83e11c42c0a0bd9376e",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [pulumi/auth-actions](https://redirect.github.com/pulumi/auth-actions)\n| action | major | `v1.0.1` -> `v2.1.0` |\n\n---\n\n> [!WARNING]\n> Some dependencies could not be looked up. Check the Dependency\nDashb\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update pulumi/auth-actions action to v2 (#877)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-30T05:42:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9802dd5ed4a8e42589bf26e309d95ebf1a8173e8",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.243.0` ->\n`3.244.0`](https://renovateb\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update dependency @pulumi/pulumi to v3.244.0 (#875)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-28T21:30:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "66b279ed02919f50effae66e228586cef43b5a88",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[8433bb2b961b32a1d254ffd70972108451a08f33](https://github.com/pulumi/ci-mgmt/commit/8433bb2b961b32a1d254ffd70972108451a08f33).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#873)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-28T06:57:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a5a7760dda66be73af547000b686e6cbd8197843",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-docker-build/sdk/go/dockerbuild](https://redirect.github.com/pulumi/pulumi-docker-build)\n| require | patch | `v0.0.17` -> `v0.0.18` |\n|\n[github.com/pulumi/pulumi/pkg/v3](https:\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies (#868)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-28T00:35:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d02195313f29381584cc7dcdae94bc93ed52d8fb",
          "body": "## Summary\n- Restore the generated .NET SDK project target framework from `net8.0`\nto `net6.0`.\n- Keep the change scoped to the framework bump introduced by #857.\n\n## Testing\n- `dotnet build sdk/dotnet/Pulumi.DockerBuild.csproj --source\nhttps://api.nuget.org/v3/index.json`\n\nNote: a plain `dotnet bui\n[…]\n restore to nuget.org;\nthe SDK build also needs the transient `sdk/dotnet/version.txt` that the\nrepo's `sdk/dotnet` generation target creates before building.\n\nCo-authored-by: Codex <codex@openai.com>",
          "is_bot": false,
          "headline": "Restore .NET SDK target framework to net6.0 (#872)",
          "author_name": "Cory Hall",
          "author_login": "corymhall",
          "committed_at": "2026-05-27T13:38:27Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5a648eeac28322eecfdb424311d1e3e66527ce17",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[c608cd5027225fb54de6ba9788c5c8de381af069](https://github.com/pulumi/ci-mgmt/commit/c608cd5027225fb54de6ba9788c5c8de381af069).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#871)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-27T07:01:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cbc23a6854b50c0970d8ac096df22f30467b4be6",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[8d6a40522db47cd4b958d1d61f039f802c8676c1](https://github.com/pulumi/ci-mgmt/commit/8d6a40522db47cd4b958d1d61f039f802c8676c1).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#870)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-26T06:51:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "23db6da099db63355912c29612bd77d41e4c19a6",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[b6ab3f6c4b243c533f8bf4b992e3ff8a40c05b79](https://github.com/pulumi/ci-mgmt/commit/b6ab3f6c4b243c533f8bf4b992e3ff8a40c05b79).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#869)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-25T07:01:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5d1d3734e52fdae29261fe60aca7cf0dd7d079d7",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[afe9da8f781d2b3f817d03e6d092dc676c6b3fa4](https://github.com/pulumi/ci-mgmt/commit/afe9da8f781d2b3f817d03e6d092dc676c6b3fa4).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#867)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-23T06:33:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5028aaae3dd572b1cc9cac8a6bf0eb19c4811fa7",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.242.0` ->\n`3.243.0`](https://renovateb\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update dependency @pulumi/pulumi to v3.243.0 (#866)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-23T00:19:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b6760addfc0f5c57b4a47e2228c732814f06e7e0",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[1f1f66a893e6cfe901c30ce05c7d7536a04b624b](https://github.com/pulumi/ci-mgmt/commit/1f1f66a893e6cfe901c30ce05c7d7536a04b624b).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#865)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-22T06:53:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "601ca19a375f5e1b0e060e60e86f35835c8b45d0",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[030f4a40d6b74923fd2a23f84d947fd5ffc232ae](https://github.com/pulumi/ci-mgmt/commit/030f4a40d6b74923fd2a23f84d947fd5ffc232ae).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#863)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-21T06:53:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cdcd44eeabafed868461482ce142cec63229f068",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.241.0` ->\n`3.242.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies (#861)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-19T21:51:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b90594a58d3d81556d7a58ddfae4cca9c9b2aae3",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[67f164b40070c76a35f8f2650af615978cb4492d](https://github.com/pulumi/ci-mgmt/commit/67f164b40070c76a35f8f2650af615978cb4492d).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#860)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-19T06:53:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7cc2388992b4fc2e278d321025b205ea851e8f53",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.239.0` ->\n`3.241.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies to v3.241.0 (#859)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-19T02:23:38Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a748e088cae35b029fe15776cfd788fb51860bc4",
          "body": "Fixes https://github.com/pulumi/pulumi-docker-build/issues/844",
          "is_bot": false,
          "headline": "Add HCL Examples & Docs (#852)",
          "author_name": "Ian Wahbe",
          "author_login": "iwahbe",
          "committed_at": "2026-05-18T10:11:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "55d6f8f21699a3c9faf8aaf5b37e5d4da361f73e",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.237.0` ->\n`3.239.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies (#855)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-16T06:27:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cfadb02782299000e080d08a35154c27f27f6f96",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[17a365754b545672c6b27aad2cd4a0cab814afa4](https://github.com/pulumi/ci-mgmt/commit/17a365754b545672c6b27aad2cd4a0cab814afa4).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#858)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-15T06:45:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "278187a0c2e913f928a483e0bd3417a199e27a03",
          "body": "Automated upgrade: bump pulumi/pulumi to 3.239.0",
          "is_bot": false,
          "headline": "Automated upgrade: bump pulumi/pulumi to 3.239.0 (#857)",
          "author_name": "Pulumi Bot",
          "author_login": "pulumi-bot",
          "committed_at": "2026-05-14T15:57:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e4130f8f2e5b3e661ac17c7243bc4caa2ab6abb8",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[c883c8df6276d935ea2aa3ca8a8a7cf8ffd5e8ed](https://github.com/pulumi/ci-mgmt/commit/c883c8df6276d935ea2aa3ca8a8a7cf8ffd5e8ed).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#856)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-14T06:40:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6082a91390a4c3361168b329e0378ab562cb117a",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[cae837f93d8b6f38e281e84e045127160dd98d9c](https://github.com/pulumi/ci-mgmt/commit/cae837f93d8b6f38e281e84e045127160dd98d9c).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#854)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-13T06:39:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8cecb2fb4b18ddfb08519b0f8925b797dac6bbc4",
          "body": "…d to v0.0.16 (#853)\n\nThis PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-docker-build/sdk/go/dockerbuild](https://redirect.github.com/pulumi/pulumi-docker-build)\n| require | patch | `v0.0.15` -> `v0.0.16` |\n\n---\n\n> [!WARNING]\n>\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi-docker-build/sdk/go/dockerbuil…",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-13T04:07:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "df2dcca9a8eaefc0e6ba15ccee8a8b1b6e6d98cf",
          "body": "Upstream was previously using an internal notFound error, and we were\nrelying on fragile string matching to detect it. This broke when we\nupgraded to Docker v28.\n\nhttps://github.com/docker/buildx/commit/d25e260d2e3b794c2f0e71aea35a44ca6bdea031#diff-a5e122cd2318f2dc156f373804a59d30355b0c308b9e64f48e0713344fcdba33L164\n\nNowadays containerd exposes a public ErrNotFound which we can use\ninstead.\n\nFixes #849.",
          "is_bot": false,
          "headline": "Fix 404 handling when deleting a manifest (#850)",
          "author_name": "Bryce Lampe",
          "author_login": "blampe",
          "committed_at": "2026-05-12T17:46:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9048892848134bc0d9f8a45f6a5a76d5d93e787f",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[daf8aba035d6ed8919db6089c780f56cb7fefc69](https://github.com/pulumi/ci-mgmt/commit/daf8aba035d6ed8919db6089c780f56cb7fefc69).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#851)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-12T06:35:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8c76967581f84ecc8edc16f7cdea405d9e65475",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[4cbd027aa555ac5a576d57358400a2e24e329c2c](https://github.com/pulumi/ci-mgmt/commit/4cbd027aa555ac5a576d57358400a2e24e329c2c).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#848)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-10T06:31:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d1a1b4fd3161165b14368b1ad83973a581fcedd",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[97b5e096a3ec277f7b970353d7b048d4800cdb61](https://github.com/pulumi/ci-mgmt/commit/97b5e096a3ec277f7b970353d7b048d4800cdb61).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#847)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-09T06:28:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8dff8f0e21aedb190111cd255258c0f491803cb9",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.236.0` ->\n`3.237.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies (#846)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-09T00:40:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b73395a7fa82833be226adf3d1e32e365457ce10",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-java](https://redirect.github.com/pulumi/pulumi-java)\n| require | patch | `v1.26.0` -> `v1.26.1` |\n\n---\n\n> [!WARNING]\n> Some dependencies could not be looked up. Check the Depe\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi-java to v1.26.1 (#845)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-08T08:01:45Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "05962fcc010b708499fd16becff9217d71283286",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.235.0` ->\n`3.236.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies to v3.236.0 (#842)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-07T21:40:04Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "766009ab42fa4905a396532ffbc1e43a67c25d5f",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[59779d0eefa4d7d6810a40f8190ef01a101acfe1](https://github.com/pulumi/ci-mgmt/commit/59779d0eefa4d7d6810a40f8190ef01a101acfe1).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#841)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-07T06:32:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0110626c42b9e661fd509411e317f0439a07b83b",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.231.0` ->\n`3.235.0`](https://renovateb\n[…]\nZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: Ian Wahbe <me@iwahbe.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies (#819)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-05-06T16:57:43Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "27b5636c61080129bf7adcfbf72af16f0088d18d",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[27c21ceadaafd5a7de6e5158a02338d7c19730a1](https://github.com/pulumi/ci-mgmt/commit/27c21ceadaafd5a7de6e5158a02338d7c19730a1).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#840)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-06T06:33:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ed5396c425fb1eaaa9ab70ba489e50c66088b152",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[4a9e45cebb804597b1a77dd1d1ba390731ba0d82](https://github.com/pulumi/ci-mgmt/commit/4a9e45cebb804597b1a77dd1d1ba390731ba0d82).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#839)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-05T06:23:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ba5f703d41965fc26e9c85ce1a19b5cc933d25a",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[f19d25e099c54e3ca45528e9e2348cf6873c5534](https://github.com/pulumi/ci-mgmt/commit/f19d25e099c54e3ca45528e9e2348cf6873c5534).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#838)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-04T06:32:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "72c3e93b42cee322d33470e63a8e5349c40df2be",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[46ca3056938b5f6ddaec3f8eb550dcc34a2e3782](https://github.com/pulumi/ci-mgmt/commit/46ca3056938b5f6ddaec3f8eb550dcc34a2e3782).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#837)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-05-02T06:21:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f864eda3e0f914de3168f1f5e8303dc375903b7e",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[3b016890d44c5e5e2e184c4b10b07484d9708cc3](https://github.com/pulumi/ci-mgmt/commit/3b016890d44c5e5e2e184c4b10b07484d9708cc3).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#834)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-30T06:32:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e01c39bf98904dc92dd743e2e0aea6e632f0418",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[f99b830821cb45c5b332123be59c6a755cd4fadc](https://github.com/pulumi/ci-mgmt/commit/f99b830821cb45c5b332123be59c6a755cd4fadc).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#833)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-29T06:35:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bab57d912d9a076cd7dfbb3e4aba467753b1da75",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[dbc8a4c59b47e1406420ea87372068fb3780dce8](https://github.com/pulumi/ci-mgmt/commit/dbc8a4c59b47e1406420ea87372068fb3780dce8).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#832)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-28T06:32:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "96b9de72a51aef64bf3d0448890714be762b8a28",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[fbb025ea2dd9c071a4b0a626d092c4104fc57644](https://github.com/pulumi/ci-mgmt/commit/fbb025ea2dd9c071a4b0a626d092c4104fc57644).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#831)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-27T06:29:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bae0f1379a046b03ea5b32af2c8b85a94bbc6539",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[4a821ea4d38895a0aa6b855593ea108774165ff6](https://github.com/pulumi/ci-mgmt/commit/4a821ea4d38895a0aa6b855593ea108774165ff6).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#829)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-25T06:06:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "30e1a98140c9171dacfed98a8435e73cb01bedf4",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[88db566266daeb5f581215c84cd3e8c5f389a18d](https://github.com/pulumi/ci-mgmt/commit/88db566266daeb5f581215c84cd3e8c5f389a18d).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#828)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-24T06:17:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0b291cf120a0ef09535c3339725a7c631559cb98",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[a4ba5d1c3db54f4aa8e7674e03c3032eabd24aaa](https://github.com/pulumi/ci-mgmt/commit/a4ba5d1c3db54f4aa8e7674e03c3032eabd24aaa).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#826)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-23T06:14:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2e27061cccf44bc0d5d6a3c4ef66bb0091cdaac8",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[e46e1ac50228764e2a7fa7a76403fca94224df68](https://github.com/pulumi/ci-mgmt/commit/e46e1ac50228764e2a7fa7a76403fca94224df68).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#825)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-22T06:12:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "740410488f002b4c9d180d75237016296c2296f5",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[4065ed8e56aa6623046a204c35d57c0376c7cf6c](https://github.com/pulumi/ci-mgmt/commit/4065ed8e56aa6623046a204c35d57c0376c7cf6c).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#824)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-21T06:12:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f24d1e662aa3c330e688a2c7607b0c2b7951320d",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[7f0c56e9f79bc22f3b4cc6379312d705a56411c6](https://github.com/pulumi/ci-mgmt/commit/7f0c56e9f79bc22f3b4cc6379312d705a56411c6).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#823)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-20T06:21:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "703dd21dc85e97d0e7cc3ef093c2f695b864c89a",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[144a8c45ec5f8a164b55365078d914dd6955b209](https://github.com/pulumi/ci-mgmt/commit/144a8c45ec5f8a164b55365078d914dd6955b209).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#822)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-19T06:12:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8328de32ef07a9a5855724e5c503f9657cd6b0a2",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[2bc9cb47c63304319f6a34a84c861bedc53274ae](https://github.com/pulumi/ci-mgmt/commit/2bc9cb47c63304319f6a34a84c861bedc53274ae).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#821)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-18T06:01:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c9ec41986b4d02e1dc0718e57227b8679b9c2e92",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[5aad94d008deea2e7db42fa2579fe93fb88256b8](https://github.com/pulumi/ci-mgmt/commit/5aad94d008deea2e7db42fa2579fe93fb88256b8).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#820)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-17T06:14:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef554c455fcfafe63b6a63ce7e1942d6b536a1fe",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.230.0` ->\n`3.231.0`](https://renovateb\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update dependency @pulumi/pulumi to v3.231.0 (#818)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-04-16T20:16:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0b52de65438fd3e1f3c6a38b67850aeea152bc60",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[b05dbe61dbea8fb6ea0c4cde662bde1101961819](https://github.com/pulumi/ci-mgmt/commit/b05dbe61dbea8fb6ea0c4cde662bde1101961819).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#816)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-16T06:16:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a3072f6aa39073d3899aee60276cfb6e759f9890",
          "body": "…v3 to v3.103.0 (#815)\n\nThis PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/v3](https://redirect.github.com/pulumi/pulumi-dotnet)\n| require | minor | `v3.102.1` -> `v3.103.0` |\n\n---\n\n> [!WARNING]\n> \n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/…",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-04-15T17:55:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "afe301cb52293736603cd1641afc17c7c2f2d99d",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[bf992a9000f6297ee7e288347f354ed2ca8d6bbf](https://github.com/pulumi/ci-mgmt/commit/bf992a9000f6297ee7e288347f354ed2ca8d6bbf).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#814)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-15T06:13:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b0c5918c7cb9f6438feeb19211416af32401679e",
          "body": "## Summary\n\nMigrates Windows binary signing from Azure Key Vault (`jsign --storetype\nAZUREKEYVAULT`) to [Azure Trusted\nSigning](https://learn.microsoft.com/en-us/azure/trusted-signing/). The\nprevious AKV code-signing cert expired, breaking the release pipeline.\nTrusted Signing issues short-lived Mic\n[…]\nrified end-to-end\nagainst pulumi-command, pulumi-random, and pulumi-provider-boilerplate.\n\n## Test plan\n\n- [ ] CI release build produces a Windows binary with a valid Trusted\nSigning certificate chain",
          "is_bot": false,
          "headline": "Migrate Windows code signing to Azure Trusted Signing (#811)",
          "author_name": "Keith Mosher",
          "author_login": "kmosher",
          "committed_at": "2026-04-09T23:52:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "00ec8e3ebea6cf7bb8fe3e6144e4804745ee37f0",
          "body": "This PR was triggered by @kmosher generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[9753531fe8d3f70139c072186a6ddcaa32d27b63](https://github.com/pulumi/ci-mgmt/commit/9753531fe8d3f70139c072186a6ddcaa32d27b63).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#812)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-04-09T23:49:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2079e52a5f76f540ef45fcdb2155e4abafb26d0a",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.229.0` ->\n`3.230.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies to v3.230.0 (#809)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-04-09T01:05:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fd5b2ee95bdd59a2459c6dbf034a0779ed205f2a",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/v3](https://redirect.github.com/pulumi/pulumi-dotnet)\n| require | patch | `v3.102.0` -> `v3.102.1` |\n|\n[github.com/pulumi/pulumi/pkg/v3](https://r\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies (#807)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-04-08T13:51:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8ef055d5e70bf90deb5f8ac8eb15a1d4581add52",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.227.0` ->\n`3.229.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies (#803)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-04-02T17:58:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f98315e8ee01bfb28d420c13cc49d45fe66c0488",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.226.0` ->\n`3.227.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies to v3.227.0 (#802)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-03-19T22:21:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a479383c413e5264189d4a8ed132c01bc68748f6",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [google.golang.org/grpc](https://redirect.github.com/grpc/grpc-go) |\nindirect | patch | `v1.79.2` -> `v1.79.3` |\n| [google.golang.org/grpc](https://redirect.github.com/grpc/grpc-go) |\nindirect | minor |\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update module google.golang.org/grpc to v1.79.3 [SECURITY] (#800)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-03-19T05:12:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "474e757992875d7db246d387e490bf71f8b9e6d6",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[4eeb9c0311bcea38a166c43eb897cf2a2f88ea4c](https://github.com/pulumi/ci-mgmt/commit/4eeb9c0311bcea38a166c43eb897cf2a2f88ea4c).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#799)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-03-18T06:01:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "23583bfdc8e2f5e0f191c879dd4c3b3058e67134",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-go-provider](https://redirect.github.com/pulumi/pulumi-go-provider)\n| require | patch | `v1.3.0` -> `v1.3.1` |\n\n---\n\n> [!WARNING]\n> Some dependencies could not be looked up. Ch\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi-go-provider to v1.3.1 (#798)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-03-17T15:59:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c1ec48af0a9c563441b93dce8c66427c09f65522",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [@pulumi/pulumi](https://redirect.github.com/pulumi/pulumi)\n([source](https://redirect.github.com/pulumi/pulumi/tree/HEAD/sdk/nodejs))\n| dependencies | minor | [`3.225.1` ->\n`3.226.0`](https://renovateb\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update first-party Pulumi dependencies to v3.226.0 (#796)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-03-13T16:28:43Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "20b453c00bc53f43024b3fade53e8b85c35d2e20",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n| [github.com/pulumi/esc](https://redirect.github.com/pulumi/esc) |\nindirect | minor | `v0.22.0` -> `v0.23.0` |\n\n---\n\n> [!WARNING]\n> Some dependencies could not be looked up. Check the Dependency\nDashboar\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/esc to v0.23.0 (#795)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-03-12T20:38:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f6b499a9d44aaabb9c8bcda2c2f79062fc37072f",
          "body": "## Summary\n\nThis PR sets up GitHub Agentic Workflows (GH-AW) and installs shared PR\nreview workflows in `pulumi/pulumi-docker-build`.\n\n### Commands Executed\n\n- `gh-aw version` → `v0.56.2` (used as entrypoint)\n- `gh-aw init` → ran (`.github/aw/` was not present)\n- `gh-aw add\npulumi-labs/gh-aw-interna\n[…]\n\n<!-- gh-aw-workflow-id: gh-aw-workflow-rollout-worker -->\n\nCo-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "[rollout] Set up GH-AW and install shared PR review workflows (#794)",
          "author_name": "Pulumi Bot",
          "author_login": "pulumi-bot",
          "committed_at": "2026-03-12T19:25:04Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a8af1bfb5d1434359911a10bfe3f7cab37c0f301",
          "body": "…v3 to v3.102.0 (#792)\n\nThis PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/v3](https://redirect.github.com/pulumi/pulumi-dotnet)\n| require | minor | `v3.101.2` -> `v3.102.0` |\n\n---\n\n### Release Not\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/…",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-03-12T04:43:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "158160e33cbd1a23ffb85c942704f32fb8918328",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi-java/pkg](https://redirect.github.com/pulumi/pulumi-java)\n| require | patch | `v1.21.2` -> `v1.21.3` |\n\n---\n\n### Release Notes\n\n<details>\n<summary>pulumi/pulumi-java\n(github.co\n[…]\nyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJkZXBlbmRlbmNpZXMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi-java/pkg to v1.21.3 (#791)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-03-11T22:59:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c7b308d64bed693c9ff9c31858215a32d75b5eb3",
          "body": "This PR was triggered by @t0yv0 generated by the\nupdate-workflows-ecosystem-providers workflow in the pulumi/ci-mgmt\nrepo, from commit\n[7dff4f888cb6e5bfa153146d3658d3e86ba74c6f](https://github.com/pulumi/ci-mgmt/commit/7dff4f888cb6e5bfa153146d3658d3e86ba74c6f).\n\nCo-authored-by: Pulumi Bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update GitHub Actions workflows. (#789)",
          "author_name": "pulumi-provider-automation[bot]",
          "author_login": "pulumi-provider-automation[bot]",
          "committed_at": "2026-03-11T05:55:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ac9653175ba0acc4745e92cf68b62ac4cb67825b",
          "body": "@pose Fixes a bug in the doc that prevents completion of the build in\n`pulumi/registry`.",
          "is_bot": false,
          "headline": "Fix syntax for language chooser in documentation (#771)",
          "author_name": "Cam Soper",
          "author_login": "CamSoper",
          "committed_at": "2026-03-06T17:42:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76a990fcb2eac525f2af16bfdbfee5d89aaa9f0f",
          "body": "This PR contains the following updates:\n\n| Package | Type | Update | Change |\n|---|---|---|---|\n|\n[github.com/pulumi/pulumi/pkg/v3](https://redirect.github.com/pulumi/pulumi)\n| require | patch | `v3.225.0` -> `v3.225.1` |\n\n---\n\n### Release Notes\n\n<details>\n<summary>pulumi/pulumi (github.com/pulumi/p\n[…]\nMiLCJpbXBhY3Qvbm8tY2hhbmdlbG9nLXJlcXVpcmVkIl19-->\n\n---------\n\nCo-authored-by: pulumi-renovate[bot] <189166143+pulumi-renovate[bot]@users.noreply.github.com>\nCo-authored-by: pulumi-bot <bot@pulumi.com>",
          "is_bot": true,
          "headline": "Update module github.com/pulumi/pulumi/pkg/v3 to v3.225.1 (#788)",
          "author_name": "pulumi-renovate[bot]",
          "author_login": "pulumi-renovate[bot]",
          "committed_at": "2026-03-06T08:17:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        }
      ],
      "releases_count": 21,
      "commits_last_year": 200,
      "latest_release_at": "2026-07-17T11:15:07Z",
      "latest_release_tag": "v0.0.21",
      "releases_from_tags": false,
      "days_since_last_push": 0,
      "active_weeks_last_year": 47,
      "days_since_latest_release": 4,
      "mean_days_between_releases": 47.4
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 75,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/pulumi/pulumi-docker-build",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/pulumi/pulumi-docker-build",
          "is_deprecated": false,
          "latest_version": "v0.0.21",
          "repository_url": "https://github.com/pulumi/pulumi-docker-build",
          "versions_count": 28,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-17T10:30:45Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 4
        }
      ]
    },
    "popularity": {
      "forks": 12,
      "stars": 12,
      "watchers": 12,
      "fork_history": {
        "days": [
          {
            "date": "2024-06-12",
            "count": 1
          },
          {
            "date": "2024-09-09",
            "count": 1
          },
          {
            "date": "2025-03-21",
            "count": 1
          },
          {
            "date": "2025-10-30",
            "count": 1
          },
          {
            "date": "2025-11-01",
            "count": 1
          },
          {
            "date": "2025-11-26",
            "count": 2
          },
          {
            "date": "2026-01-19",
            "count": 1
          },
          {
            "date": "2026-01-28",
            "count": 1
          },
          {
            "date": "2026-02-20",
            "count": 1
          },
          {
            "date": "2026-06-29",
            "count": 1
          },
          {
            "date": "2026-07-17",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 12,
        "total_forks": 12
      },
      "star_history": {
        "days": [
          {
            "date": "2024-03-07",
            "count": 1
          },
          {
            "date": "2024-05-09",
            "count": 1
          },
          {
            "date": "2024-05-16",
            "count": 1
          },
          {
            "date": "2024-08-27",
            "count": 1
          },
          {
            "date": "2024-09-04",
            "count": 1
          },
          {
            "date": "2024-11-07",
            "count": 1
          },
          {
            "date": "2025-01-15",
            "count": 1
          },
          {
            "date": "2025-02-09",
            "count": 1
          },
          {
            "date": "2025-08-07",
            "count": 1
          },
          {
            "date": "2026-01-29",
            "count": 1
          },
          {
            "date": "2026-05-09",
            "count": 1
          },
          {
            "date": "2026-05-21",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 12,
        "total_stars": 12
      },
      "open_issues_and_prs": 29
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [
        ".config/mise.toml",
        "Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "examples/nodejs/tsconfig.json",
        "examples/upgrade-node/tsconfig.json",
        "sdk/nodejs/tsconfig.json",
        "sdk/python/pulumi_docker_build/py.typed"
      ],
      "toolchain_manifests": [
        "examples/dotnet/provider-docker-build.csproj",
        "examples/go/go.mod",
        "examples/java/pom.xml",
        "go.mod",
        "sdk/dotnet/Pulumi.DockerBuild.csproj",
        "sdk/go/dockerbuild/go.mod"
      ],
      "largest_source_bytes": 227196,
      "source_files_sampled": 230,
      "oversized_source_files": 5,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        ".openinspect/setup.py",
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "golang.org/x/crypto",
            "direct": true,
            "version": "v0.51.0",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 10,
            "advisory_ids": [
              "GHSA-45gg-vh54-h5m9",
              "GHSA-5cgq-3rg8-m6cv",
              "GHSA-78mq-xcr3-xm33",
              "GHSA-89gr-r52h-f8rx",
              "GHSA-9m57-25v3-79x9",
              "GHSA-f5wc-c3c7-36mc",
              "GHSA-jppx-rxg9-jmrx",
              "GHSA-q4h4-gmj2-qvw2",
              "GHSA-qpw4-5x99-6vjp",
              "GHSA-rm3j-f69w-wqmq"
            ],
            "fixed_version": "0.52.0",
            "advisory_count": 27,
            "oldest_advisory_days": 61
          },
          {
            "name": "google.golang.org/grpc",
            "direct": false,
            "version": "v1.81.1",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 9.1,
            "advisory_ids": [
              "GHSA-hrxh-6v49-42gf"
            ],
            "fixed_version": "1.82.1",
            "advisory_count": 1,
            "oldest_advisory_days": 0
          },
          {
            "name": "protobufjs",
            "direct": false,
            "version": "7.5.4",
            "severity": "critical",
            "ecosystem": "npm",
            "cvss_score": 9.8,
            "advisory_ids": [
              "GHSA-2pr8-phx7-x9h3",
              "GHSA-66ff-xgx4-vchm",
              "GHSA-685m-2w69-288q",
              "GHSA-75px-5xx7-5xc7",
              "GHSA-f38q-mgvj-vph7",
              "GHSA-fx83-v9x8-x52w",
              "GHSA-j3f2-48v5-ccww",
              "GHSA-jggg-4jg4-v7c6",
              "GHSA-jvwf-75h9-cwgg",
              "GHSA-q6x5-8v7m-xcrf"
            ],
            "fixed_version": "8.6.6",
            "advisory_count": 12,
            "oldest_advisory_days": 96
          },
          {
            "name": "github.com/docker/cli",
            "direct": true,
            "version": "v28.0.4+incompatible",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GHSA-p436-gjf2-799p",
              "GO-2026-4610"
            ],
            "fixed_version": "29.2.0+incompatible",
            "advisory_count": 2,
            "oldest_advisory_days": 139
          },
          {
            "name": "github.com/docker/docker",
            "direct": true,
            "version": "v28.0.1+incompatible",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 8.8,
            "advisory_ids": [
              "GHSA-pxq6-2prw-chj9",
              "GHSA-rg2x-37c3-w2rh",
              "GHSA-vp62-88p7-qqf5",
              "GHSA-x744-4wpc-v9h2",
              "GHSA-x86f-5xw2-fm2r",
              "GO-2026-4883",
              "GO-2026-4887",
              "GO-2026-5617",
              "GO-2026-5668",
              "GO-2026-5746"
            ],
            "fixed_version": "29.3.1",
            "advisory_count": 10,
            "oldest_advisory_days": 116
          },
          {
            "name": "github.com/moby/buildkit",
            "direct": true,
            "version": "v0.20.1",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 8.4,
            "advisory_ids": [
              "GHSA-4c29-8rgm-jvjj",
              "GHSA-4vrq-3vrq-g6gg",
              "GO-2026-4858",
              "GO-2026-4859"
            ],
            "fixed_version": "0.28.1",
            "advisory_count": 4,
            "oldest_advisory_days": 117
          },
          {
            "name": "@grpc/grpc-js",
            "direct": false,
            "version": "1.14.3",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-5375-pq7m-f5r2",
              "GHSA-99f4-grh7-6pcq"
            ],
            "fixed_version": "1.14.4",
            "advisory_count": 2,
            "oldest_advisory_days": 40
          },
          {
            "name": "@opentelemetry/propagator-jaeger",
            "direct": false,
            "version": "1.30.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-45rx-2jwx-cxfr"
            ],
            "fixed_version": "2.9.0",
            "advisory_count": 1,
            "oldest_advisory_days": 0
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.3",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3xgq-45jj-v275"
            ],
            "fixed_version": "7.0.5",
            "advisory_count": 1,
            "oldest_advisory_days": 621
          },
          {
            "name": "github.com/containerd/containerd/v2",
            "direct": false,
            "version": "v2.0.7",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 8.8,
            "advisory_ids": [
              "GHSA-fqw6-gf59-qr4w",
              "GHSA-jpcc-p29g-p8mq",
              "GHSA-xhf5-7wjv-pqxp",
              "GO-2026-5378",
              "GO-2026-5475",
              "GO-2026-5758"
            ],
            "fixed_version": "2.3.2",
            "advisory_count": 6,
            "oldest_advisory_days": 61
          },
          {
            "name": "github.com/moby/spdystream",
            "direct": false,
            "version": "v0.4.0",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-pc3f-x583-g7j2",
              "GO-2026-4958"
            ],
            "fixed_version": "0.5.1",
            "advisory_count": 2,
            "oldest_advisory_days": 96
          },
          {
            "name": "js-yaml",
            "direct": false,
            "version": "3.14.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-52cp-r559-cp3m",
              "GHSA-h67p-54hq-rp68"
            ],
            "fixed_version": "4.3.0",
            "advisory_count": 2,
            "oldest_advisory_days": 36
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "10.1.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23c5-xmqv-rm74",
              "GHSA-3ppc-4f35-3m26",
              "GHSA-7r86-cg39-jmmj"
            ],
            "fixed_version": "10.2.3",
            "advisory_count": 3,
            "oldest_advisory_days": 153
          },
          {
            "name": "sigstore",
            "direct": false,
            "version": "4.1.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-52v5-jr5w-gjxr"
            ],
            "fixed_version": "4.1.1",
            "advisory_count": 1,
            "oldest_advisory_days": 20
          },
          {
            "name": "tar",
            "direct": false,
            "version": "7.5.7",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23hp-3jrh-7fpw",
              "GHSA-83g3-92jg-28cx",
              "GHSA-8x88-c5mf-7j5w",
              "GHSA-9ppj-qmqm-q256",
              "GHSA-gvwx-54wh-qm9j",
              "GHSA-qffp-2rhf-9h96",
              "GHSA-vmf3-w455-68vh",
              "GHSA-w8wr-v893-vjvp"
            ],
            "fixed_version": "7.5.19",
            "advisory_count": 8,
            "oldest_advisory_days": 154
          },
          {
            "name": "tmp",
            "direct": false,
            "version": "0.2.5",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-ph9p-34f9-6g65"
            ],
            "fixed_version": "0.2.6",
            "advisory_count": 1,
            "oldest_advisory_days": 56
          },
          {
            "name": "github.com/regclient/regclient",
            "direct": true,
            "version": "v0.7.1",
            "severity": "moderate",
            "ecosystem": "go",
            "cvss_score": 6.8,
            "advisory_ids": [
              "GHSA-qvqc-4c52-x6qp",
              "GO-2026-5822"
            ],
            "fixed_version": "0.11.5",
            "advisory_count": 2,
            "oldest_advisory_days": 25
          },
          {
            "name": "@opentelemetry/core",
            "direct": false,
            "version": "1.30.1",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-8988-4f7v-96qf"
            ],
            "fixed_version": "2.8.0",
            "advisory_count": 1,
            "oldest_advisory_days": 36
          },
          {
            "name": "@protobufjs/utf8",
            "direct": false,
            "version": "1.1.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-q6x5-8v7m-xcrf"
            ],
            "fixed_version": "8.0.2",
            "advisory_count": 1,
            "oldest_advisory_days": 70
          },
          {
            "name": "@sigstore/core",
            "direct": false,
            "version": "3.1.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.4,
            "advisory_ids": [
              "GHSA-jfc7-64v2-mr8c"
            ],
            "fixed_version": "3.2.1",
            "advisory_count": 1,
            "oldest_advisory_days": 25
          },
          {
            "name": "@sigstore/verify",
            "direct": false,
            "version": "3.1.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 6.5,
            "advisory_ids": [
              "GHSA-xgjw-pm74-86q4"
            ],
            "fixed_version": "3.1.1",
            "advisory_count": 1,
            "oldest_advisory_days": 20
          },
          {
            "name": "github.com/in-toto/in-toto-golang",
            "direct": false,
            "version": "v0.5.0",
            "severity": "moderate",
            "ecosystem": "go",
            "cvss_score": 4.1,
            "advisory_ids": [
              "GHSA-pmwq-pjrm-6p5r",
              "GO-2026-5547"
            ],
            "fixed_version": "0.11.0",
            "advisory_count": 2,
            "oldest_advisory_days": 74
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp",
            "direct": false,
            "version": "v1.31.0",
            "severity": "moderate",
            "ecosystem": "go",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-w8rr-5gcm-pp58",
              "GO-2026-4985"
            ],
            "fixed_version": "1.43.0",
            "advisory_count": 2,
            "oldest_advisory_days": 104
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp",
            "direct": false,
            "version": "v1.31.0",
            "severity": "moderate",
            "ecosystem": "go",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-w8rr-5gcm-pp58",
              "GO-2026-4985"
            ],
            "fixed_version": "1.43.0",
            "advisory_count": 2,
            "oldest_advisory_days": 104
          },
          {
            "name": "ip-address",
            "direct": false,
            "version": "9.0.5",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": null,
            "advisory_ids": [
              "GHSA-v2v4-37r5-5v8g"
            ],
            "fixed_version": "10.1.1",
            "advisory_count": 1,
            "oldest_advisory_days": 77
          },
          {
            "name": "github.com/aws/aws-sdk-go",
            "direct": true,
            "version": "v1.55.8",
            "severity": "unknown",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GO-2022-0635",
              "GO-2022-0646"
            ],
            "fixed_version": null,
            "advisory_count": 2,
            "oldest_advisory_days": 1621
          },
          {
            "name": "golang.org/x/net",
            "direct": false,
            "version": "v0.55.0",
            "severity": "unknown",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GO-2026-5942"
            ],
            "fixed_version": "0.56.0",
            "advisory_count": 1,
            "oldest_advisory_days": 7
          },
          {
            "name": "golang.org/x/text",
            "direct": false,
            "version": "v0.37.0",
            "severity": "unknown",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GO-2026-5970"
            ],
            "fixed_version": "0.39.0",
            "advisory_count": 1,
            "oldest_advisory_days": 7
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "high": 13,
          "unknown": 3,
          "critical": 3,
          "moderate": 9
        },
        "advisory_count": 100,
        "affected_count": 28,
        "assessed_count": 573,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 14,
        "direct_affected_count": 6
      },
      "ecosystems": [
        "go",
        "pypi"
      ],
      "dependencies": [
        {
          "name": "github.com/aws/aws-sdk-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.55.8"
        },
        {
          "name": "github.com/blang/semver",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.5.1+incompatible"
        },
        {
          "name": "github.com/containerd/errdefs",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/distribution/reference",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.0"
        },
        {
          "name": "github.com/docker/buildx",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.22.0"
        },
        {
          "name": "github.com/docker/cli",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v28.0.4+incompatible"
        },
        {
          "name": "github.com/docker/docker",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v28.0.1+incompatible"
        },
        {
          "name": "github.com/moby/buildkit",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.20.1"
        },
        {
          "name": "github.com/moby/patternmatcher",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.0"
        },
        {
          "name": "github.com/muesli/reflow",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.3.0"
        },
        {
          "name": "github.com/otiai10/copy",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.14.0"
        },
        {
          "name": "github.com/pulumi/providertest",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.107.0"
        },
        {
          "name": "github.com/pulumi/pulumi-go-provider",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.2"
        },
        {
          "name": "github.com/pulumi/pulumi-java",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.29.0"
        },
        {
          "name": "github.com/pulumi/pulumi/pkg/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.245.0"
        },
        {
          "name": "github.com/pulumi/pulumi/sdk/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.245.0"
        },
        {
          "name": "github.com/regclient/regclient",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.1"
        },
        {
          "name": "github.com/sirupsen/logrus",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.9.3"
        },
        {
          "name": "github.com/spf13/afero",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.15.0"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/tonistiigi/fsutil",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20250113203817-b14e27f4135a"
        },
        {
          "name": "github.com/tonistiigi/go-csvvalue",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20240710180619-ddb21b71c0b4"
        },
        {
          "name": "go.opentelemetry.io/otel/metric",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.44.0"
        },
        {
          "name": "go.opentelemetry.io/otel/sdk",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.44.0"
        },
        {
          "name": "go.opentelemetry.io/otel/trace",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.44.0"
        },
        {
          "name": "go.uber.org/mock",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.0"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.51.0"
        },
        {
          "name": "golang.org/x/exp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260410095643-746e56fc9e2f"
        },
        {
          "name": "google.golang.org/protobuf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.36.11"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "github.com/aws/aws-sdk-go",
            "direct": true,
            "version": "v1.55.8",
            "ecosystem": "go"
          },
          {
            "name": "github.com/blang/semver",
            "direct": true,
            "version": "v3.5.1+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/errdefs",
            "direct": true,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/distribution/reference",
            "direct": true,
            "version": "v0.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/buildx",
            "direct": true,
            "version": "v0.22.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/cli",
            "direct": true,
            "version": "v28.0.4+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/docker",
            "direct": true,
            "version": "v28.0.1+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/buildkit",
            "direct": true,
            "version": "v0.20.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/patternmatcher",
            "direct": true,
            "version": "v0.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/muesli/reflow",
            "direct": true,
            "version": "v0.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/otiai10/copy",
            "direct": true,
            "version": "v1.14.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/providertest",
            "direct": true,
            "version": "v0.7.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/pulumi-dotnet/pulumi-language-dotnet/v3",
            "direct": true,
            "version": "v3.107.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/pulumi-go-provider",
            "direct": true,
            "version": "v1.3.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/pulumi-java",
            "direct": true,
            "version": "v1.29.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/pulumi/pkg/v3",
            "direct": true,
            "version": "v3.245.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/pulumi/sdk/v3",
            "direct": true,
            "version": "v3.243.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/pulumi/sdk/v3",
            "direct": true,
            "version": "v3.245.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/regclient/regclient",
            "direct": true,
            "version": "v0.7.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/sirupsen/logrus",
            "direct": true,
            "version": "v1.9.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/afero",
            "direct": true,
            "version": "v1.15.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/stretchr/testify",
            "direct": true,
            "version": "v1.11.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tonistiigi/fsutil",
            "direct": true,
            "version": "v0.0.0-20250113203817-b14e27f4135a",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tonistiigi/go-csvvalue",
            "direct": true,
            "version": "v0.0.0-20240710180619-ddb21b71c0b4",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/metric",
            "direct": true,
            "version": "v1.43.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/metric",
            "direct": true,
            "version": "v1.44.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/sdk",
            "direct": true,
            "version": "v1.43.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/sdk",
            "direct": true,
            "version": "v1.44.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/trace",
            "direct": true,
            "version": "v1.43.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/trace",
            "direct": true,
            "version": "v1.44.0",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/mock",
            "direct": true,
            "version": "v0.6.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/crypto",
            "direct": true,
            "version": "v0.51.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/exp",
            "direct": true,
            "version": "v0.0.0-20260410095643-746e56fc9e2f",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/protobuf",
            "direct": true,
            "version": "v1.36.11",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/yaml.v3",
            "direct": true,
            "version": "v3.0.1",
            "ecosystem": "go"
          },
          {
            "name": "cel.dev/expr",
            "direct": false,
            "version": "v0.25.1",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go",
            "direct": false,
            "version": "v0.123.0",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/auth",
            "direct": false,
            "version": "v0.18.2",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/auth/oauth2adapt",
            "direct": false,
            "version": "v0.2.8",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/compute/metadata",
            "direct": false,
            "version": "v0.9.0",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/iam",
            "direct": false,
            "version": "v1.5.3",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/kms",
            "direct": false,
            "version": "v1.26.0",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/logging",
            "direct": false,
            "version": "v1.13.2",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/longrunning",
            "direct": false,
            "version": "v0.8.0",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/monitoring",
            "direct": false,
            "version": "v1.24.3",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/storage",
            "direct": false,
            "version": "v1.61.3",
            "ecosystem": "go"
          },
          {
            "name": "dario.cat/mergo",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/adalogics/go-fuzz-headers",
            "direct": false,
            "version": "v0.0.0-20240806141605-e8a1dd7889d6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/agext/levenshtein",
            "direct": false,
            "version": "v1.2.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/apparentlymart/go-cidr",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/apparentlymart/go-textseg/v15",
            "direct": false,
            "version": "v15.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/atotto/clipboard",
            "direct": false,
            "version": "v0.1.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2",
            "direct": false,
            "version": "v1.41.11",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream",
            "direct": false,
            "version": "v1.7.12",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/config",
            "direct": false,
            "version": "v1.32.20",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/credentials",
            "direct": false,
            "version": "v1.19.19",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/feature/ec2/imds",
            "direct": false,
            "version": "v1.18.25",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/internal/configsources",
            "direct": false,
            "version": "v1.4.27",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/internal/endpoints/v2",
            "direct": false,
            "version": "v2.7.27",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/internal/v4a",
            "direct": false,
            "version": "v1.4.26",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/cloudwatchlogs",
            "direct": false,
            "version": "v1.74.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding",
            "direct": false,
            "version": "v1.13.10",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/internal/checksum",
            "direct": false,
            "version": "v1.9.18",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/internal/presigned-url",
            "direct": false,
            "version": "v1.13.25",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/internal/s3shared",
            "direct": false,
            "version": "v1.19.25",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/kms",
            "direct": false,
            "version": "v1.50.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/s3",
            "direct": false,
            "version": "v1.102.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/signin",
            "direct": false,
            "version": "v1.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/sso",
            "direct": false,
            "version": "v1.30.19",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/ssooidc",
            "direct": false,
            "version": "v1.36.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/sts",
            "direct": false,
            "version": "v1.42.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/smithy-go",
            "direct": false,
            "version": "v1.27.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aymanbagabas/go-osc52/v2",
            "direct": false,
            "version": "v2.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azure/azure-sdk-for-go/sdk/azcore",
            "direct": false,
            "version": "v1.21.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azure/azure-sdk-for-go/sdk/azidentity",
            "direct": false,
            "version": "v1.13.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azure/azure-sdk-for-go/sdk/internal",
            "direct": false,
            "version": "v1.11.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azure/azure-sdk-for-go/sdk/security/keyvault/azkeys",
            "direct": false,
            "version": "v1.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azure/azure-sdk-for-go/sdk/security/keyvault/internal",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azure/go-ansiterm",
            "direct": false,
            "version": "v0.0.0-20250102033503-faa5f7b0171c",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azuread/microsoft-authentication-library-for-go",
            "direct": false,
            "version": "v1.7.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/bazelbuild/buildtools",
            "direct": false,
            "version": "v0.0.0-20260211083412-859bfffeef82",
            "ecosystem": "go"
          },
          {
            "name": "github.com/beorn7/perks",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/burntsushi/toml",
            "direct": false,
            "version": "v1.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cenkalti/backoff/v4",
            "direct": false,
            "version": "v4.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cenkalti/backoff/v5",
            "direct": false,
            "version": "v5.0.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cespare/xxhash/v2",
            "direct": false,
            "version": "v2.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/charmbracelet/bubbles",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/charmbracelet/bubbletea",
            "direct": false,
            "version": "v1.3.10",
            "ecosystem": "go"
          },
          {
            "name": "github.com/charmbracelet/colorprofile",
            "direct": false,
            "version": "v0.4.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/charmbracelet/lipgloss",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/charmbracelet/x/ansi",
            "direct": false,
            "version": "v0.11.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/charmbracelet/x/cellbuf",
            "direct": false,
            "version": "v0.0.15",
            "ecosystem": "go"
          },
          {
            "name": "github.com/charmbracelet/x/term",
            "direct": false,
            "version": "v0.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cheggaaa/pb",
            "direct": false,
            "version": "v1.0.29",
            "ecosystem": "go"
          },
          {
            "name": "github.com/clipperhouse/displaywidth",
            "direct": false,
            "version": "v0.11.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/clipperhouse/uax29/v2",
            "direct": false,
            "version": "v2.7.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cloudflare/circl",
            "direct": false,
            "version": "v1.6.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cncf/xds/go",
            "direct": false,
            "version": "v0.0.0-20260202195803-dba9d589def2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/compose-spec/compose-go/v2",
            "direct": false,
            "version": "v2.4.8",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/console",
            "direct": false,
            "version": "v1.0.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/containerd/api",
            "direct": false,
            "version": "v1.8.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/containerd/v2",
            "direct": false,
            "version": "v2.0.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/continuity",
            "direct": false,
            "version": "v0.4.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/errdefs/pkg",
            "direct": false,
            "version": "v0.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/log",
            "direct": false,
            "version": "v0.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/platforms",
            "direct": false,
            "version": "v1.0.0-rc.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/ttrpc",
            "direct": false,
            "version": "v1.2.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/typeurl/v2",
            "direct": false,
            "version": "v2.2.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cyphar/filepath-securejoin",
            "direct": false,
            "version": "v0.6.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/davecgh/go-spew",
            "direct": false,
            "version": "v1.1.2-0.20180830191138-d8f796af33cc",
            "ecosystem": "go"
          },
          {
            "name": "github.com/deckarep/golang-set/v2",
            "direct": false,
            "version": "v2.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/djherbis/times",
            "direct": false,
            "version": "v1.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/cli-docs-tool",
            "direct": false,
            "version": "v0.9.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/distribution",
            "direct": false,
            "version": "v2.8.3+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/docker-credential-helpers",
            "direct": false,
            "version": "v0.8.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/go-connections",
            "direct": false,
            "version": "v0.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/go-metrics",
            "direct": false,
            "version": "v0.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/go-units",
            "direct": false,
            "version": "v0.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/libtrust",
            "direct": false,
            "version": "v0.0.0-20160708172513-aabc10ec26b7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/edsrzf/mmap-go",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/emicklei/go-restful/v3",
            "direct": false,
            "version": "v3.11.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/emirpasic/gods",
            "direct": false,
            "version": "v1.18.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/envoyproxy/go-control-plane/envoy",
            "direct": false,
            "version": "v1.37.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/envoyproxy/protoc-gen-validate",
            "direct": false,
            "version": "v1.3.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/erikgeiser/coninput",
            "direct": false,
            "version": "v0.0.0-20211004153227-1c3628e74d0f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fatih/color",
            "direct": false,
            "version": "v1.18.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/felixge/httpsnoop",
            "direct": false,
            "version": "v1.0.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fsnotify/fsnotify",
            "direct": false,
            "version": "v1.9.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fvbommel/sortorder",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fxamacker/cbor/v2",
            "direct": false,
            "version": "v2.7.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/git-pkgs/manifests",
            "direct": false,
            "version": "v0.4.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/git-pkgs/packageurl-go",
            "direct": false,
            "version": "v0.3.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/git-pkgs/purl",
            "direct": false,
            "version": "v0.1.10",
            "ecosystem": "go"
          },
          {
            "name": "github.com/git-pkgs/vers",
            "direct": false,
            "version": "v0.2.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-git/gcfg",
            "direct": false,
            "version": "v1.5.1-0.20230307220236-3a3c6141e376",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-git/go-billy/v5",
            "direct": false,
            "version": "v5.9.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-git/go-git/v5",
            "direct": false,
            "version": "v5.19.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-jose/go-jose/v4",
            "direct": false,
            "version": "v4.1.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-logr/logr",
            "direct": false,
            "version": "v1.4.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-logr/stdr",
            "direct": false,
            "version": "v1.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-openapi/jsonpointer",
            "direct": false,
            "version": "v0.19.6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-openapi/jsonreference",
            "direct": false,
            "version": "v0.20.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-openapi/swag",
            "direct": false,
            "version": "v0.22.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-test/deep",
            "direct": false,
            "version": "v1.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-viper/mapstructure/v2",
            "direct": false,
            "version": "v2.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gofrs/flock",
            "direct": false,
            "version": "v0.12.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gofrs/uuid",
            "direct": false,
            "version": "v4.2.0+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gogo/protobuf",
            "direct": false,
            "version": "v1.3.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang-jwt/jwt/v5",
            "direct": false,
            "version": "v5.3.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang/glog",
            "direct": false,
            "version": "v1.2.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang/groupcache",
            "direct": false,
            "version": "v0.0.0-20241129210726-2c02b8208cf8",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang/protobuf",
            "direct": false,
            "version": "v1.5.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/gnostic-models",
            "direct": false,
            "version": "v0.6.8",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/go-cmp",
            "direct": false,
            "version": "v0.7.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/go-querystring",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/gofuzz",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/s2a-go",
            "direct": false,
            "version": "v0.1.9",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/shlex",
            "direct": false,
            "version": "v0.0.0-20191202100458-e7afc7fbc510",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/uuid",
            "direct": false,
            "version": "v1.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/wire",
            "direct": false,
            "version": "v0.7.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/googleapis/enterprise-certificate-proxy",
            "direct": false,
            "version": "v0.3.14",
            "ecosystem": "go"
          },
          {
            "name": "github.com/googleapis/gax-go/v2",
            "direct": false,
            "version": "v2.19.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/googlecloudplatform/opentelemetry-operations-go/detectors/gcp",
            "direct": false,
            "version": "v1.31.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/googlecloudplatform/opentelemetry-operations-go/exporter/metric",
            "direct": false,
            "version": "v0.55.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/googlecloudplatform/opentelemetry-operations-go/internal/resourcemapping",
            "direct": false,
            "version": "v0.55.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gorilla/mux",
            "direct": false,
            "version": "v1.8.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gorilla/websocket",
            "direct": false,
            "version": "v1.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/grpc-ecosystem/grpc-gateway/v2",
            "direct": false,
            "version": "v2.29.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/grpc-ecosystem/grpc-opentracing",
            "direct": false,
            "version": "v0.0.0-20180507213350-8e809c8a8645",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/errwrap",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-cleanhttp",
            "direct": false,
            "version": "v0.5.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-cty-funcs",
            "direct": false,
            "version": "v0.0.0-20241120183456-c51673e0b3dd",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-multierror",
            "direct": false,
            "version": "v1.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-retryablehttp",
            "direct": false,
            "version": "v0.7.8",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-rootcerts",
            "direct": false,
            "version": "v1.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-secure-stdlib/parseutil",
            "direct": false,
            "version": "v0.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-secure-stdlib/strutil",
            "direct": false,
            "version": "v0.1.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-sockaddr",
            "direct": false,
            "version": "v1.0.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-version",
            "direct": false,
            "version": "v1.9.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/hcl",
            "direct": false,
            "version": "v1.0.1-vault-7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/hcl/v2",
            "direct": false,
            "version": "v2.24.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/vault/api",
            "direct": false,
            "version": "v1.22.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/iancoleman/strcase",
            "direct": false,
            "version": "v0.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/imdario/mergo",
            "direct": false,
            "version": "v0.3.16",
            "ecosystem": "go"
          },
          {
            "name": "github.com/in-toto/in-toto-golang",
            "direct": false,
            "version": "v0.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/inconshreveable/mousetrap",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/iwdgo/sigintwindows",
            "direct": false,
            "version": "v0.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jbenet/go-context",
            "direct": false,
            "version": "v0.0.0-20150711004518-d14ea06fba99",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jmespath/go-jmespath",
            "direct": false,
            "version": "v0.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/josharian/intern",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/json-iterator/go",
            "direct": false,
            "version": "v1.1.12",
            "ecosystem": "go"
          },
          {
            "name": "github.com/kevinburke/ssh_config",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/klauspost/compress",
            "direct": false,
            "version": "v1.18.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/klauspost/cpuid/v2",
            "direct": false,
            "version": "v2.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/kylelemons/godebug",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lucasb-eyer/go-colorful",
            "direct": false,
            "version": "v1.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mailru/easyjson",
            "direct": false,
            "version": "v0.7.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-colorable",
            "direct": false,
            "version": "v0.1.14",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-isatty",
            "direct": false,
            "version": "v0.0.22",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-localereader",
            "direct": false,
            "version": "v0.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-runewidth",
            "direct": false,
            "version": "v0.0.23",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-runewidth",
            "direct": false,
            "version": "v0.0.24",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-shellwords",
            "direct": false,
            "version": "v1.0.12",
            "ecosystem": "go"
          },
          {
            "name": "github.com/microsoft/go-winio",
            "direct": false,
            "version": "v0.6.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/copystructure",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/go-homedir",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/go-ps",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/go-wordwrap",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/hashstructure/v2",
            "direct": false,
            "version": "v2.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/mapstructure",
            "direct": false,
            "version": "v1.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/reflectwalk",
            "direct": false,
            "version": "v1.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/docker-image-spec",
            "direct": false,
            "version": "v1.3.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/locker",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/spdystream",
            "direct": false,
            "version": "v0.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/sys/mountinfo",
            "direct": false,
            "version": "v0.7.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/sys/sequential",
            "direct": false,
            "version": "v0.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/sys/signal",
            "direct": false,
            "version": "v0.7.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/sys/user",
            "direct": false,
            "version": "v0.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/sys/userns",
            "direct": false,
            "version": "v0.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/term",
            "direct": false,
            "version": "v0.5.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/modern-go/concurrent",
            "direct": false,
            "version": "v0.0.0-20180306012644-bacd9c7ef1dd",
            "ecosystem": "go"
          },
          {
            "name": "github.com/modern-go/reflect2",
            "direct": false,
            "version": "v1.0.3-0.20250322232337-35a7c28c31ee",
            "ecosystem": "go"
          },
          {
            "name": "github.com/morikuni/aec",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/muesli/ansi",
            "direct": false,
            "version": "v0.0.0-20230316100256-276c6243b2f6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/muesli/cancelreader",
            "direct": false,
            "version": "v0.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/muesli/termenv",
            "direct": false,
            "version": "v0.16.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/munnerz/goautoneg",
            "direct": false,
            "version": "v0.0.0-20191010083416-a7dc8b61c822",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mxk/go-flowrate",
            "direct": false,
            "version": "v0.0.0-20140419014527-cca7078d478f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/natefinch/atomic",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/nxadm/tail",
            "direct": false,
            "version": "v1.4.11",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opencontainers/go-digest",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opencontainers/image-spec",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opentracing/basictracer-go",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opentracing/opentracing-go",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pelletier/go-toml",
            "direct": false,
            "version": "v1.9.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pgavlin/fx",
            "direct": false,
            "version": "v0.1.6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pgavlin/fx/v2",
            "direct": false,
            "version": "v2.0.12",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pgavlin/goldmark",
            "direct": false,
            "version": "v1.1.33-0.20200616210433-b5eb04559386",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pjbgf/sha1cd",
            "direct": false,
            "version": "v0.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pkg/browser",
            "direct": false,
            "version": "v0.0.0-20240102092130-5ac0b6a4141c",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pkg/errors",
            "direct": false,
            "version": "v0.9.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pkg/term",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/planetscale/vtprotobuf",
            "direct": false,
            "version": "v0.6.1-0.20240319094008-0393e58bdf10",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pmezard/go-difflib",
            "direct": false,
            "version": "v1.0.1-0.20181226105442-5d4384ee4fb2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/client_golang",
            "direct": false,
            "version": "v1.20.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/client_model",
            "direct": false,
            "version": "v0.6.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/common",
            "direct": false,
            "version": "v0.55.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/procfs",
            "direct": false,
            "version": "v0.15.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/protonmail/go-crypto",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/appdash",
            "direct": false,
            "version": "v0.0.0-20231130102222-75f619a67231",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/esc",
            "direct": false,
            "version": "v0.25.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/inflector",
            "direct": false,
            "version": "v0.2.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pulumi/pulumi-docker-build/sdk/go/dockerbuild",
            "direct": false,
            "version": "v0.0.18",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rivo/uniseg",
            "direct": false,
            "version": "v0.4.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rogpeppe/go-internal",
            "direct": false,
            "version": "v1.14.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/ryanuber/go-glob",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/sabhiram/go-gitignore",
            "direct": false,
            "version": "v0.0.0-20210923224102-525f6e181f06",
            "ecosystem": "go"
          },
          {
            "name": "github.com/santhosh-tekuri/jsonschema/v5",
            "direct": false,
            "version": "v5.3.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/secure-systems-lab/go-securesystemslib",
            "direct": false,
            "version": "v0.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/segmentio/asm",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/segmentio/encoding",
            "direct": false,
            "version": "v0.4.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/sergi/go-diff",
            "direct": false,
            "version": "v1.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/serialx/hashring",
            "direct": false,
            "version": "v0.0.0-20200727003509-22c0c7ab6b1b",
            "ecosystem": "go"
          },
          {
            "name": "github.com/shibumi/go-pathspec",
            "direct": false,
            "version": "v1.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/skeema/knownhosts",
            "direct": false,
            "version": "v1.3.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/cast",
            "direct": false,
            "version": "v1.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/cobra",
            "direct": false,
            "version": "v1.10.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/pflag",
            "direct": false,
            "version": "v1.0.10",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spiffe/go-spiffe/v2",
            "direct": false,
            "version": "v2.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/stretchr/objx",
            "direct": false,
            "version": "v0.5.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/texttheater/golang-levenshtein",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tonistiigi/dchapes-mode",
            "direct": false,
            "version": "v0.0.0-20241001053921-ca0759fec205",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tonistiigi/jaeger-ui-rest",
            "direct": false,
            "version": "v0.0.0-20250211190051-7d4944a45bb6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tonistiigi/units",
            "direct": false,
            "version": "v0.0.0-20180711220420-6950e57a87ea",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tonistiigi/vt100",
            "direct": false,
            "version": "v0.0.0-20240514184818-90bafcd6abab",
            "ecosystem": "go"
          },
          {
            "name": "github.com/uber/jaeger-client-go",
            "direct": false,
            "version": "v2.30.0+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/uber/jaeger-lib",
            "direct": false,
            "version": "v2.4.1+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/ulikunitz/xz",
            "direct": false,
            "version": "v0.5.15",
            "ecosystem": "go"
          },
          {
            "name": "github.com/x448/float16",
            "direct": false,
            "version": "v0.8.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xanzy/ssh-agent",
            "direct": false,
            "version": "v0.3.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xeipuuv/gojsonpointer",
            "direct": false,
            "version": "v0.0.0-20190905194746-02993c407bfb",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xeipuuv/gojsonreference",
            "direct": false,
            "version": "v0.0.0-20180127040603-bd5ef7bd5415",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xeipuuv/gojsonschema",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xo/terminfo",
            "direct": false,
            "version": "v0.0.0-20220910002029-abceb7e1c41e",
            "ecosystem": "go"
          },
          {
            "name": "github.com/zclconf/go-cty",
            "direct": false,
            "version": "v1.17.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/auto/sdk",
            "direct": false,
            "version": "v1.2.1",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/collector/featuregate",
            "direct": false,
            "version": "v1.58.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/collector/featuregate",
            "direct": false,
            "version": "v1.59.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/collector/pdata",
            "direct": false,
            "version": "v1.58.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/collector/pdata",
            "direct": false,
            "version": "v1.59.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/contrib/detectors/gcp",
            "direct": false,
            "version": "v1.42.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc",
            "direct": false,
            "version": "v0.67.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace",
            "direct": false,
            "version": "v0.56.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp",
            "direct": false,
            "version": "v0.67.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel",
            "direct": false,
            "version": "v1.43.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel",
            "direct": false,
            "version": "v1.44.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/bridge/opentracing",
            "direct": false,
            "version": "v1.33.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc",
            "direct": false,
            "version": "v1.42.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp",
            "direct": false,
            "version": "v1.31.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace",
            "direct": false,
            "version": "v1.43.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace",
            "direct": false,
            "version": "v1.44.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc",
            "direct": false,
            "version": "v1.43.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc",
            "direct": false,
            "version": "v1.44.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp",
            "direct": false,
            "version": "v1.31.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/sdk/metric",
            "direct": false,
            "version": "v1.44.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/proto/otlp",
            "direct": false,
            "version": "v1.10.0",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/atomic",
            "direct": false,
            "version": "v1.11.0",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/multierr",
            "direct": false,
            "version": "v1.11.0",
            "ecosystem": "go"
          },
          {
            "name": "gocloud.dev",
            "direct": false,
            "version": "v0.46.0",
            "ecosystem": "go"
          },
          {
            "name": "gocloud.dev/secrets/hashivault",
            "direct": false,
            "version": "v0.46.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/mod",
            "direct": false,
            "version": "v0.35.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/net",
            "direct": false,
            "version": "v0.55.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/oauth2",
            "direct": false,
            "version": "v0.36.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/sync",
            "direct": false,
            "version": "v0.20.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/sys",
            "direct": false,
            "version": "v0.45.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/term",
            "direct": false,
            "version": "v0.43.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/text",
            "direct": false,
            "version": "v0.37.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/time",
            "direct": false,
            "version": "v0.15.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/tools",
            "direct": false,
            "version": "v0.44.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/xerrors",
            "direct": false,
            "version": "v0.0.0-20240903120638-7835f813f4da",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/api",
            "direct": false,
            "version": "v0.272.0",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/genproto",
            "direct": false,
            "version": "v0.0.0-20260316180232-0b37fe3546d5",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/genproto/googleapis/api",
            "direct": false,
            "version": "v0.0.0-20260522204824-7f3bc5b78da9",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/genproto/googleapis/api",
            "direct": false,
            "version": "v0.0.0-20260526163538-3dc84a4a5aaa",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/genproto/googleapis/rpc",
            "direct": false,
            "version": "v0.0.0-20260522204824-7f3bc5b78da9",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/genproto/googleapis/rpc",
            "direct": false,
            "version": "v0.0.0-20260526163538-3dc84a4a5aaa",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/grpc",
            "direct": false,
            "version": "v1.81.1",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/inf.v0",
            "direct": false,
            "version": "v0.9.1",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/tomb.v1",
            "direct": false,
            "version": "v1.0.0-20141024135613-dd632973f1e7",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/warnings.v0",
            "direct": false,
            "version": "v0.1.2",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/yaml.v2",
            "direct": false,
            "version": "v2.4.0",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/api",
            "direct": false,
            "version": "v0.31.2",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/apimachinery",
            "direct": false,
            "version": "v0.31.2",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/client-go",
            "direct": false,
            "version": "v0.31.2",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/klog/v2",
            "direct": false,
            "version": "v2.130.1",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/kube-openapi",
            "direct": false,
            "version": "v0.0.0-20240228011516-70dd3763d340",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/utils",
            "direct": false,
            "version": "v0.0.0-20240711033017-18e509b52bc8",
            "ecosystem": "go"
          },
          {
            "name": "lukechampine.com/frand",
            "direct": false,
            "version": "v1.5.1",
            "ecosystem": "go"
          },
          {
            "name": "sigs.k8s.io/json",
            "direct": false,
            "version": "v0.0.0-20221116044647-bc3834ca7abd",
            "ecosystem": "go"
          },
          {
            "name": "sigs.k8s.io/structured-merge-diff/v4",
            "direct": false,
            "version": "v4.4.1",
            "ecosystem": "go"
          },
          {
            "name": "sigs.k8s.io/yaml",
            "direct": false,
            "version": "v1.4.0",
            "ecosystem": "go"
          },
          {
            "name": "com.pulumi:docker-build",
            "direct": false,
            "version": null,
            "ecosystem": "maven"
          },
          {
            "name": "com.pulumi:pulumi",
            "direct": false,
            "version": null,
            "ecosystem": "maven"
          },
          {
            "name": "org.apache.maven.plugins:maven-assembly-plugin",
            "direct": false,
            "version": "3.4.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.apache.maven.plugins:maven-jar-plugin",
            "direct": false,
            "version": "3.2.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.apache.maven.plugins:maven-wrapper-plugin",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "maven"
          },
          {
            "name": "org.codehaus.mojo:exec-maven-plugin",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "maven"
          },
          {
            "name": "@grpc/grpc-js",
            "direct": false,
            "version": "1.14.3",
            "ecosystem": "npm"
          },
          {
            "name": "@grpc/proto-loader",
            "direct": false,
            "version": "0.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/balanced-match",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/brace-expansion",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/fs-minipass",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/string-locale-compare",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@js-sdsl/ordered-map",
            "direct": false,
            "version": "4.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "@logdna/tail-file",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/agent",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/arborist",
            "direct": false,
            "version": "9.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/fs",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/git",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/installed-package-contents",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/map-workspaces",
            "direct": false,
            "version": "5.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/metavuln-calculator",
            "direct": false,
            "version": "9.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/name-from-folder",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/node-gyp",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/package-json",
            "direct": false,
            "version": "7.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/promise-spawn",
            "direct": false,
            "version": "9.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/query",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/redact",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/run-script",
            "direct": false,
            "version": "10.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/api",
            "direct": false,
            "version": "1.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/api-logs",
            "direct": false,
            "version": "0.57.2",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/context-async-hooks",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/core",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/exporter-trace-otlp-grpc",
            "direct": false,
            "version": "0.57.2",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/exporter-zipkin",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/instrumentation",
            "direct": false,
            "version": "0.57.2",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/instrumentation-grpc",
            "direct": false,
            "version": "0.57.2",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/otlp-exporter-base",
            "direct": false,
            "version": "0.57.2",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/otlp-grpc-exporter-base",
            "direct": false,
            "version": "0.57.2",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/otlp-transformer",
            "direct": false,
            "version": "0.57.2",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/propagator-b3",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/propagator-jaeger",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/resources",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/sdk-logs",
            "direct": false,
            "version": "0.57.2",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/sdk-metrics",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/sdk-trace-base",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/sdk-trace-node",
            "direct": false,
            "version": "1.30.1",
            "ecosystem": "npm"
          },
          {
            "name": "@opentelemetry/semantic-conventions",
            "direct": false,
            "version": "1.28.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/aspromise",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/base64",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/codegen",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/eventemitter",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/fetch",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/float",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/inquire",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/path",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/pool",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/utf8",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pulumi/pulumi",
            "direct": false,
            "version": "3.245.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pulumi/pulumi",
            "direct": false,
            "version": "^3.142.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/bundle",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/core",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/protobuf-specs",
            "direct": false,
            "version": "0.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/sign",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/tuf",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/verify",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tufjs/canonical-json",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tufjs/models",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/google-protobuf",
            "direct": false,
            "version": "3.15.12",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "20.14.14",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "22.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "^18",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "^20",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "^20.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/semver",
            "direct": false,
            "version": "7.5.8",
            "ecosystem": "npm"
          },
          {
            "name": "@types/shimmer",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/tmp",
            "direct": false,
            "version": "0.2.6",
            "ecosystem": "npm"
          },
          {
            "name": "abbrev",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "acorn",
            "direct": false,
            "version": "8.12.1",
            "ecosystem": "npm"
          },
          {
            "name": "acorn-import-attributes",
            "direct": false,
            "version": "1.9.5",
            "ecosystem": "npm"
          },
          {
            "name": "agent-base",
            "direct": false,
            "version": "7.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-regex",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "argparse",
            "direct": false,
            "version": "1.0.10",
            "ecosystem": "npm"
          },
          {
            "name": "bin-links",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "buffer-from",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "cacache",
            "direct": false,
            "version": "20.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "chownr",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cjs-module-lexer",
            "direct": false,
            "version": "1.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "cliui",
            "direct": false,
            "version": "8.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "cmd-shim",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "color-convert",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "color-name",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "common-ancestor-path",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "cssesc",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "encoding",
            "direct": false,
            "version": "0.1.13",
            "ecosystem": "npm"
          },
          {
            "name": "env-paths",
            "direct": false,
            "version": "2.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "err-code",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "escalade",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "esprima",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "execa",
            "direct": false,
            "version": "5.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "exponential-backoff",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "fdir",
            "direct": false,
            "version": "6.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "fs-minipass",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "function-bind",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "get-caller-file",
            "direct": false,
            "version": "2.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "get-stream",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": false,
            "version": "13.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "google-protobuf",
            "direct": false,
            "version": "3.21.4",
            "ecosystem": "npm"
          },
          {
            "name": "graceful-fs",
            "direct": false,
            "version": "4.2.11",
            "ecosystem": "npm"
          },
          {
            "name": "hasown",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "hosted-git-info",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "hosted-git-info",
            "direct": false,
            "version": "9.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "http-cache-semantics",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "http-proxy-agent",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "https-proxy-agent",
            "direct": false,
            "version": "7.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "human-signals",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "iconv-lite",
            "direct": false,
            "version": "0.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "ignore-walk",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "import-in-the-middle",
            "direct": false,
            "version": "1.11.0",
            "ecosystem": "npm"
          },
          {
            "name": "imurmurhash",
            "direct": false,
            "version": "0.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "ini",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ini",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ip-address",
            "direct": false,
            "version": "9.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "is-core-module",
            "direct": false,
            "version": "2.15.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-fullwidth-code-point",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-stream",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "js-yaml",
            "direct": false,
            "version": "3.14.2",
            "ecosystem": "npm"
          },
          {
            "name": "jsbn",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-parse-even-better-errors",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-stringify-nice",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "jsonparse",
            "direct": false,
            "version": "1.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "just-diff",
            "direct": false,
            "version": "6.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "just-diff-apply",
            "direct": false,
            "version": "5.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "lodash.camelcase",
            "direct": false,
            "version": "4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "long",
            "direct": false,
            "version": "5.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "10.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "11.2.5",
            "ecosystem": "npm"
          },
          {
            "name": "make-fetch-happen",
            "direct": false,
            "version": "15.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "merge-stream",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "mimic-fn",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "10.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "minimist",
            "direct": false,
            "version": "1.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": false,
            "version": "3.3.6",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": false,
            "version": "7.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-collect",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-fetch",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-flush",
            "direct": false,
            "version": "1.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-pipeline",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-sized",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "minizlib",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "module-details-from-path",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "negotiator",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "node-gyp",
            "direct": false,
            "version": "12.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "nopt",
            "direct": false,
            "version": "9.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "normalize-package-data",
            "direct": false,
            "version": "6.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "npm-bundled",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-install-checks",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-normalize-package-bin",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-package-arg",
            "direct": false,
            "version": "13.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "npm-packlist",
            "direct": false,
            "version": "10.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "npm-pick-manifest",
            "direct": false,
            "version": "11.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "npm-registry-fetch",
            "direct": false,
            "version": "19.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "npm-run-path",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "onetime",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "p-map",
            "direct": false,
            "version": "7.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "pacote",
            "direct": false,
            "version": "21.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "parse-conflict-json",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-key",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-parse",
            "direct": false,
            "version": "1.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "path-scurry",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "postcss-selector-parser",
            "direct": false,
            "version": "7.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "proc-log",
            "direct": false,
            "version": "6.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "proggy",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "promise-all-reject-late",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "promise-call-limit",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "promise-retry",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "protobufjs",
            "direct": false,
            "version": "7.5.4",
            "ecosystem": "npm"
          },
          {
            "name": "read-cmd-shim",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "require-directory",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "require-from-string",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "require-in-the-middle",
            "direct": false,
            "version": "7.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "resolve",
            "direct": false,
            "version": "1.22.8",
            "ecosystem": "npm"
          },
          {
            "name": "retry",
            "direct": false,
            "version": "0.12.0",
            "ecosystem": "npm"
          },
          {
            "name": "safer-buffer",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "7.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-command",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-regex",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shimmer",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "signal-exit",
            "direct": false,
            "version": "3.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "signal-exit",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "sigstore",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "smart-buffer",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "socks",
            "direct": false,
            "version": "2.8.3",
            "ecosystem": "npm"
          },
          {
            "name": "socks-proxy-agent",
            "direct": false,
            "version": "8.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "source-map",
            "direct": false,
            "version": "0.6.1",
            "ecosystem": "npm"
          },
          {
            "name": "source-map-support",
            "direct": false,
            "version": "0.5.21",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-correct",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-exceptions",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-expression-parse",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-license-ids",
            "direct": false,
            "version": "3.0.18",
            "ecosystem": "npm"
          },
          {
            "name": "sprintf-js",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "sprintf-js",
            "direct": false,
            "version": "1.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "ssri",
            "direct": false,
            "version": "13.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "4.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "strip-ansi",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-final-newline",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "supports-preserve-symlinks-flag",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "tar",
            "direct": false,
            "version": "7.5.7",
            "ecosystem": "npm"
          },
          {
            "name": "tinyglobby",
            "direct": false,
            "version": "0.2.15",
            "ecosystem": "npm"
          },
          {
            "name": "tmp",
            "direct": false,
            "version": "0.2.5",
            "ecosystem": "npm"
          },
          {
            "name": "treeverse",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "tuf-js",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "^4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "^4.7.0",
            "ecosystem": "npm"
          },
          {
            "name": "undici-types",
            "direct": false,
            "version": "5.26.5",
            "ecosystem": "npm"
          },
          {
            "name": "undici-types",
            "direct": false,
            "version": "6.13.0",
            "ecosystem": "npm"
          },
          {
            "name": "unique-filename",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "unique-slug",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "upath",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "util-deprecate",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "validate-npm-package-license",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "validate-npm-package-name",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "walk-up-path",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrap-ansi",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "write-file-atomic",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "y18n",
            "direct": false,
            "version": "5.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "yallist",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "yallist",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "yargs",
            "direct": false,
            "version": "17.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "yargs-parser",
            "direct": false,
            "version": "21.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "Microsoft.SourceLink.GitHub",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "nuget"
          },
          {
            "name": "Pulumi",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "Pulumi.Dockerbuild",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "parver",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "pulumi",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "semver",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "setuptools",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 587,
        "direct_count": 35,
        "indirect_count": 552
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 5,
        "merged_prs": 343,
        "open_issues": 24,
        "closed_ratio": 0.838,
        "closed_issues": 124,
        "closed_unmerged_prs": 462
      },
      "bus_factor": 1,
      "bot_contributors": 3,
      "top_contributors": [
        {
          "type": "User",
          "login": "pulumi-bot",
          "commits": 98,
          "avatar_url": "https://avatars.githubusercontent.com/u/30351955?v=4"
        },
        {
          "type": "User",
          "login": "blampe",
          "commits": 47,
          "avatar_url": "https://avatars.githubusercontent.com/u/848843?v=4"
        },
        {
          "type": "User",
          "login": "rquitales",
          "commits": 9,
          "avatar_url": "https://avatars.githubusercontent.com/u/26103281?v=4"
        },
        {
          "type": "User",
          "login": "pose",
          "commits": 8,
          "avatar_url": "https://avatars.githubusercontent.com/u/419703?v=4"
        },
        {
          "type": "User",
          "login": "iwahbe",
          "commits": 4,
          "avatar_url": "https://avatars.githubusercontent.com/u/22222529?v=4"
        },
        {
          "type": "User",
          "login": "renovate-bot",
          "commits": 3,
          "avatar_url": "https://avatars.githubusercontent.com/u/25180681?v=4"
        },
        {
          "type": "User",
          "login": "danielrbradley",
          "commits": 3,
          "avatar_url": "https://avatars.githubusercontent.com/u/331676?v=4"
        },
        {
          "type": "User",
          "login": "corymhall",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/43035978?v=4"
        },
        {
          "type": "User",
          "login": "EronWright",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/1775518?v=4"
        },
        {
          "type": "User",
          "login": "mjeffryes",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/1189194?v=4"
        }
      ],
      "contributors_sampled": 16,
      "top_contributor_share": 0.533
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "build.yml",
        "command-dispatch.yml",
        "comment-on-stale-issues.yml",
        "community-moderation.yml",
        "export-repo-secrets.yml",
        "lint.yml",
        "prerelease.yml",
        "pull-request.yml",
        "release.yml",
        "release_command.yml",
        "run-acceptance-tests.yml",
        "weekly-pulumi-update.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yml"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum",
        "yarn.lock"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "29 out of 29 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 2,
            "reason": "Found 6/25 approved changesets -- score normalized to 2",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 6 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 25 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 4,
            "reason": "dependency not pinned by hash detected -- score normalized to 4",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "35 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "9ce55065cf4af98af92336434cbfb07ee6b2056f",
        "ran_at": "2026-07-22T08:16:15Z",
        "aggregate_score": 5.5,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-22T06:44:24Z",
      "oldest_open_prs": [
        {
          "number": 643,
          "created_at": "2025-10-30T15:45:37Z",
          "last_comment_at": "2026-02-26T22:03:44Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 744,
          "created_at": "2026-01-28T16:46:57Z",
          "last_comment_at": "2026-03-04T16:13:01Z",
          "last_comment_author": "pgavlin"
        },
        {
          "number": 783,
          "created_at": "2026-03-05T12:38:47Z",
          "last_comment_at": "2026-07-14T09:45:43Z",
          "last_comment_author": "pulumi-renovate"
        },
        {
          "number": 805,
          "created_at": "2026-03-29T00:25:40Z",
          "last_comment_at": "2026-07-16T19:38:40Z",
          "last_comment_author": "pulumi-renovate"
        },
        {
          "number": 893,
          "created_at": "2026-06-13T19:40:50Z",
          "last_comment_at": "2026-07-16T19:39:28Z",
          "last_comment_author": "pulumi-renovate"
        }
      ],
      "last_merged_pr_at": "2026-07-22T06:38:50Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 52,
          "created_at": "2022-06-17T17:53:04Z",
          "last_comment_at": "2024-02-06T10:51:16Z",
          "last_comment_author": "razin99"
        },
        {
          "number": 47,
          "created_at": "2023-11-23T09:01:02Z",
          "last_comment_at": "2025-04-22T15:43:55Z",
          "last_comment_author": "mausch"
        },
        {
          "number": 54,
          "created_at": "2024-01-17T19:12:51Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 20,
          "created_at": "2024-03-28T18:29:16Z",
          "last_comment_at": "2025-07-25T04:56:03Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 55,
          "created_at": "2024-04-30T12:36:36Z",
          "last_comment_at": "2025-07-25T04:56:03Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 65,
          "created_at": "2024-05-15T21:56:18Z",
          "last_comment_at": "2024-09-06T20:20:02Z",
          "last_comment_author": "kmosher"
        },
        {
          "number": 73,
          "created_at": "2024-05-20T17:11:44Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 74,
          "created_at": "2024-05-22T19:29:34Z",
          "last_comment_at": "2024-05-29T11:31:27Z",
          "last_comment_author": "blampe"
        },
        {
          "number": 96,
          "created_at": "2024-06-09T20:59:24Z",
          "last_comment_at": "2026-02-04T16:59:47Z",
          "last_comment_author": "pgavlin"
        },
        {
          "number": 200,
          "created_at": "2024-08-14T17:45:25Z",
          "last_comment_at": "2025-05-19T20:28:02Z",
          "last_comment_author": "blampe"
        },
        {
          "number": 222,
          "created_at": "2024-08-20T08:53:49Z",
          "last_comment_at": "2025-05-09T02:03:36Z",
          "last_comment_author": "Korede-TA"
        },
        {
          "number": 239,
          "created_at": "2024-08-28T08:27:12Z",
          "last_comment_at": "2024-08-28T17:47:58Z",
          "last_comment_author": "rquitales"
        },
        {
          "number": 252,
          "created_at": "2024-09-10T08:41:53Z",
          "last_comment_at": "2025-03-05T09:03:50Z",
          "last_comment_author": "guitarrapc"
        },
        {
          "number": 279,
          "created_at": "2024-10-07T13:36:46Z",
          "last_comment_at": "2025-04-28T17:40:53Z",
          "last_comment_author": "blampe"
        },
        {
          "number": 308,
          "created_at": "2024-11-21T00:01:55Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 324,
          "created_at": "2024-11-22T12:56:21Z",
          "last_comment_at": "2025-07-25T04:56:03Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 477,
          "created_at": "2025-03-07T16:03:38Z",
          "last_comment_at": "2025-03-14T23:57:26Z",
          "last_comment_author": "EronWright"
        },
        {
          "number": 494,
          "created_at": "2025-03-17T22:04:24Z",
          "last_comment_at": "2025-04-28T17:38:20Z",
          "last_comment_author": "blampe"
        },
        {
          "number": 498,
          "created_at": "2025-03-20T13:50:47Z",
          "last_comment_at": "2025-03-24T04:28:14Z",
          "last_comment_author": "rquitales"
        },
        {
          "number": 571,
          "created_at": "2025-08-13T16:07:57Z",
          "last_comment_at": "2025-11-05T22:43:29Z",
          "last_comment_author": "blampe"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/pulumi/pulumi-docker-build",
    "host": "github.com",
    "name": "pulumi-docker-build",
    "owner": "pulumi"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 69,
      "inputs": {
        "security": 51,
        "vitality": 91,
        "community": 47,
        "governance": 67,
        "engineering": 80
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 91,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "excellent",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 96,
            "inputs": {
              "commits_last_year": 200,
              "human_commit_share": 0.14,
              "days_since_last_push": 0,
              "active_weeks_last_year": 47
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "47/52 weeks with commits",
                "points": 32.5,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 47
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "200 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 200
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 25 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "good",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 83,
            "inputs": {
              "releases_count": 21,
              "latest_release_tag": "v0.0.21",
              "releases_from_tags": false,
              "days_since_latest_release": 4,
              "mean_days_between_releases": 47.4
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "21 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 21
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~47.4 days",
                "points": 19.8,
                "status": "partial",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 47.4
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 4,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 4 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 47,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "at_risk",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 31,
            "inputs": {
              "forks": 12,
              "stars": 12,
              "watchers": 12,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "below_threshold"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "12 stars",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 12
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "12 forks",
                "points": 8.7,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 12
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "12 watchers",
                "points": 5.8,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 12
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 65,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 67,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "at_risk",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 43,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 16,
              "top_contributor_share": 0.533
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 53% of commits",
                "points": 10.5,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 53
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "16 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 16
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 6 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 58,
            "inputs": {
              "merged_prs": 343,
              "open_issues": 24,
              "closed_issues": 124,
              "issue_closed_ratio": 0.838,
              "closed_unmerged_prs": 462
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "84% of issues closed",
                "points": 39.2,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 84
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "343/805 decided PRs merged",
                "points": 16.3,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 343,
                      "decided": 805
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 6/25 approved changesets -- score normalized to 2",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "good",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 77,
            "inputs": {
              "followers": 1310,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "pulumi",
              "public_repos": 428,
              "account_age_days": 3607
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "1,310 followers of pulumi",
                "points": 22.4,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 1310,
                      "login": "pulumi"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "428 public repos, account ~9 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 428
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 9
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/pulumi/pulumi-docker-build"
              ],
              "ecosystems": "go",
              "any_deprecated": false,
              "min_days_since_publish": 4
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on go",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "go"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 4 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "28 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 28
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 80,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "12 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 12
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yml",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "29 out of 29 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "good",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 51,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 55,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 5.5
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "29 out of 29 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 6/25 approved changesets -- score normalized to 2",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 6 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 25 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 4",
                "points": 2,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "35 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "at_risk",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 573 resolved dependencies against OSV; 14 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 573
                }
              },
              {
                "code": "advisories_unassessed",
                "params": {
                  "count": 14
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 37,
            "inputs": {
              "source": "osv",
              "advisories": 100,
              "affected_packages": 28,
              "assessed_packages": 573,
              "unassessed_packages": 14,
              "affected_by_severity": "critical 3, high 13, moderate 9, unknown 3",
              "direct_affected_packages": 6
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "6 affected: golang.org/x/crypto v0.51.0 (critical 10.0), github.com/docker/cli v28.0.4+incompatible (high), github.com/docker/docker v28.0.1+incompatible (high 8.8), +3 more",
                "points": 3.8,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_affected",
                    "params": {
                      "count": 6,
                      "packages": "golang.org/x/crypto v0.51.0 (critical 10.0), github.com/docker/cli v28.0.4+incompatible (high), github.com/docker/docker v28.0.1+incompatible (high 8.8)"
                    }
                  },
                  {
                    "code": "advisories_affected_more",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "4 advisory-carrying package(s) unaddressed past 90 days; oldest published 1621 days ago",
                "points": 23.8,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_stale",
                    "params": {
                      "days": 90,
                      "count": 4,
                      "oldest": 1621
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 573,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 12
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 55,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "critical",
            "name": "Agent context & guidance",
            "note": "Excluded from scoring (no data or not applicable): Legible commit history. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "legible_commit_history"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 1,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": null,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum",
                "yarn.lock"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                ".config/mise.toml",
                "Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "examples/nodejs/tsconfig.json",
                "examples/upgrade-node/tsconfig.json",
                "sdk/nodejs/tsconfig.json",
                "sdk/python/pulumi_docker_build/py.typed"
              ],
              "agent_commit_share": 0.04,
              "toolchain_manifests": [
                "examples/dotnet/provider-docker-build.csproj",
                "examples/go/go.mod",
                "examples/java/pom.xml",
                "go.mod",
                "sdk/dotnet/Pulumi.DockerBuild.csproj",
                "sdk/go/dockerbuild/go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": ".config/mise.toml, Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".config/mise.toml, Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yml",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "examples/nodejs/tsconfig.json, examples/upgrade-node/tsconfig.json, sdk/nodejs/tsconfig.json, sdk/python/pulumi_docker_build/py.typed",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples/nodejs/tsconfig.json, examples/upgrade-node/tsconfig.json, sdk/nodejs/tsconfig.json, sdk/python/pulumi_docker_build/py.typed"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "4 of the last 100 commits agent-authored or agent-credited",
                "points": 8,
                "status": "partial",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 4,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 4",
                "points": 4,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 99,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 227196,
              "source_files_sampled": 230,
              "oversized_source_files": 5
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "5/230 source files over 60KB",
                "points": 53.8,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 230,
                      "oversized": 5
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [],
  "report_type": "repository",
  "generated_at": "2026-07-22T08:17:27.920334Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/p/pulumi/pulumi-docker-build.svg",
  "full_name": "pulumi/pulumi-docker-build",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Bewertungen sind Signale, keine Garantien. Sie spiegeln öffentlich sichtbare Praxis auf GitHub wider — kein Code-Audit und keine Sicherheitsgarantie.

Fehlende Daten werden ausgeschlossen und die Gewichte neu normiert, nie als null bewertet. Die Methodik ist versioniert und offen: Metriken v1.13.0, Schema v0.26.0 — vollständige Methodik · Metriken-Wiki.

Wie ein einzelnes Ergebnis im Gesamtregister steht: aggregierte StatistikenGo.