JSON-Rohbericht maschinenlesbar
{
"data": {
"repo": {
"topics": [
"bun",
"javascript",
"mysql",
"postgres",
"query-builder",
"sqlite",
"typescript"
],
"is_fork": false,
"size_kb": 34597,
"has_wiki": false,
"homepage": "https://bun-query-builder.netlify.app",
"languages": {
"TypeScript": 2008177
},
"pushed_at": "2026-07-22T23:08:42Z",
"created_at": "2025-08-11T16:42:46Z",
"owner_type": "Organization",
"updated_at": "2026-07-17T19:09:00Z",
"description": "A safe, performant & fully-typed query builder for Bun.",
"is_archived": false,
"is_disabled": false,
"license_spdx": "MIT",
"default_branch": "main",
"license_spdx_raw": "MIT",
"primary_language": "TypeScript",
"significant_languages": [
"TypeScript"
]
},
"owner": {
"blog": "https://stacksjs.com",
"name": "Stacks",
"type": "Organization",
"login": "stacksjs",
"company": null,
"location": "United States of America",
"followers": 118,
"avatar_url": "https://avatars.githubusercontent.com/u/114664568?v=4",
"created_at": "2022-09-29T11:34:06Z",
"is_verified": null,
"public_repos": 154,
"account_age_days": 1392
},
"license": {
"state": "standard",
"spdx_id": "MIT",
"raw_spdx": "MIT",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.1.57",
"kind": "patch",
"published_at": "2026-07-17T19:10:10Z"
},
{
"tag": "v0.1.56",
"kind": "patch",
"published_at": "2026-07-17T12:56:04Z"
},
{
"tag": "v0.1.55",
"kind": "patch",
"published_at": "2026-07-17T11:45:31Z"
},
{
"tag": "v0.1.54",
"kind": "patch",
"published_at": "2026-07-17T08:33:16Z"
},
{
"tag": "v0.1.53",
"kind": "patch",
"published_at": "2026-07-17T07:45:17Z"
},
{
"tag": "v0.1.52",
"kind": "patch",
"published_at": "2026-07-17T05:19:51Z"
},
{
"tag": "v0.1.51",
"kind": "patch",
"published_at": "2026-07-17T05:01:15Z"
},
{
"tag": "v0.1.50",
"kind": "patch",
"published_at": "2026-07-16T16:27:44Z"
},
{
"tag": "v0.1.49",
"kind": "patch",
"published_at": "2026-07-16T16:19:21Z"
},
{
"tag": "v0.1.48",
"kind": "patch",
"published_at": "2026-07-15T04:37:37Z"
},
{
"tag": "v0.1.47",
"kind": "patch",
"published_at": "2026-07-11T18:52:47Z"
},
{
"tag": "v0.1.46",
"kind": "patch",
"published_at": "2026-07-11T18:27:52Z"
},
{
"tag": "v0.1.45",
"kind": "patch",
"published_at": "2026-07-11T16:29:02Z"
},
{
"tag": "v0.1.44",
"kind": "patch",
"published_at": "2026-07-08T18:55:23Z"
},
{
"tag": "v0.1.41",
"kind": "patch",
"published_at": "2026-07-02T22:20:37Z"
},
{
"tag": "v0.1.40",
"kind": "patch",
"published_at": "2026-07-02T22:04:05Z"
},
{
"tag": "v0.1.39",
"kind": "patch",
"published_at": "2026-07-02T21:13:23Z"
},
{
"tag": "v0.1.38",
"kind": "patch",
"published_at": "2026-06-12T01:02:45Z"
},
{
"tag": "v0.1.37",
"kind": "patch",
"published_at": "2026-06-10T06:35:14Z"
},
{
"tag": "v0.1.36",
"kind": "patch",
"published_at": "2026-06-10T06:28:42Z"
},
{
"tag": "v0.1.35",
"kind": "patch",
"published_at": "2026-06-10T06:08:58Z"
},
{
"tag": "v0.1.34",
"kind": "patch",
"published_at": "2026-06-10T05:24:19Z"
},
{
"tag": "v0.1.33",
"kind": "patch",
"published_at": "2026-06-10T04:55:59Z"
},
{
"tag": "v0.1.32",
"kind": "patch",
"published_at": "2026-06-10T04:06:38Z"
},
{
"tag": "v0.1.31",
"kind": "patch",
"published_at": "2026-06-10T01:12:04Z"
},
{
"tag": "v0.1.30",
"kind": "patch",
"published_at": "2026-06-10T00:51:51Z"
},
{
"tag": "v0.1.29",
"kind": "patch",
"published_at": "2026-06-10T00:37:08Z"
},
{
"tag": "v0.1.28",
"kind": "patch",
"published_at": "2026-06-10T00:04:47Z"
},
{
"tag": "v0.1.27",
"kind": "patch",
"published_at": "2026-06-09T23:39:06Z"
},
{
"tag": "v0.1.26",
"kind": "patch",
"published_at": "2026-06-05T12:36:51Z"
},
{
"tag": "v0.1.25",
"kind": "patch",
"published_at": "2026-06-02T14:29:37Z"
},
{
"tag": "v0.1.24",
"kind": "patch",
"published_at": "2026-05-27T23:53:24Z"
},
{
"tag": "v0.1.21",
"kind": "patch",
"published_at": "2026-05-11T19:59:35Z"
},
{
"tag": "v0.1.20",
"kind": "patch",
"published_at": "2026-05-11T19:49:49Z"
},
{
"tag": "v0.1.18",
"kind": "patch",
"published_at": "2026-05-11T18:53:05Z"
},
{
"tag": "v0.1.17",
"kind": "patch",
"published_at": "2026-05-11T18:46:44Z"
},
{
"tag": "v0.1.16",
"kind": "patch",
"published_at": "2026-04-30T17:06:23Z"
},
{
"tag": "v0.1.15",
"kind": "patch",
"published_at": "2026-04-27T19:58:27Z"
},
{
"tag": "v0.1.13",
"kind": "patch",
"published_at": "2026-02-23T10:37:02Z"
},
{
"tag": "v0.1.12",
"kind": "patch",
"published_at": "2026-02-19T14:53:42Z"
},
{
"tag": "v0.1.11",
"kind": "patch",
"published_at": "2026-02-16T15:09:44Z"
},
{
"tag": "v0.1.10",
"kind": "patch",
"published_at": "2025-10-31T15:23:41Z"
},
{
"tag": "v0.1.9",
"kind": "patch",
"published_at": "2025-10-31T12:38:06Z"
},
{
"tag": "v0.1.8",
"kind": "patch",
"published_at": "2025-10-30T12:50:31Z"
},
{
"tag": "v0.1.7",
"kind": "patch",
"published_at": "2025-10-29T12:11:34Z"
},
{
"tag": "v0.1.6",
"kind": "patch",
"published_at": "2025-10-28T13:37:37Z"
},
{
"tag": "v0.1.5",
"kind": "patch",
"published_at": "2025-10-09T17:08:55Z"
},
{
"tag": "v0.1.2",
"kind": "patch",
"published_at": "2025-09-01T15:23:32Z"
}
],
"recent_commits": [
{
"oid": "42e97dfc459152b26b4153db9d340ceebbb90192",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.57",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T19:08:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "098068e190756d57e7eab99e6259dd44365e38b8",
"body": "Consumers bundling multiple module instances (e.g. the vendored Stacks\nframework) rely on DB_CONNECTION-matched env winning over each\ninstance's own config object. Cover env preference, quote stripping,\nmysql/singlestore schemes, DB_SSL, and the env-ignored fallbacks, with\nfull env save/restore so nothing leaks across tests.",
"is_bot": false,
"headline": "test(db): pin DB_* env preference in createConnectionString",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T17:19:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b67137e7d10e0bbac8a0f680f3f77ba1514e3b85",
"body": "Keeps the function internal (not re-exported from src/index.ts); same\npattern as resolvePoolOptions/splitSqlStatements.",
"is_bot": false,
"headline": "refactor(db): export createConnectionString for direct unit coverage",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T17:19:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "42d27a3c2addbcb6310e4db8b1f59ac93674b13f",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.56",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T12:55:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2e42b458e19e1170f363e74c3a94fd8ad6bbc9cd",
"body": null,
"is_bot": false,
"headline": "fix(migrations): preserve unchanged snapshots",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T12:54:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b25616eae855825cf7edf5d9f31f554522d4b61d",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.55",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T11:44:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f604e07075226a7612bc9f54923685e966caaf46",
"body": null,
"is_bot": false,
"headline": "fix(migrations): honor explicit model column types",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T11:44:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "109b4e6b948b8eeb3bd042ed5ba43c1b8ab129f8",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.54",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T08:32:05Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1accfa6ff245c9e9d8881782f4c2f92014f4ca42",
"body": null,
"is_bot": false,
"headline": "fix: let custom migration writers advance snapshots",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T08:31:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "46a83c686ba627c35ef190784a534c9116565b7b",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.53",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T07:44:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "dcbc06edf664436328bdb22510dea62d8a0130cc",
"body": null,
"is_bot": false,
"headline": "fix: keep unsafe queries inside transactions",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T07:44:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c328c5302a6c23594552534831b60105be013458",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.52",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T05:18:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fb9a3cb436100b490c535841873a18cfa4b46d18",
"body": null,
"is_bot": false,
"headline": "fix(migrations): keep incremental models in create files",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T05:18:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1106888f2e7df3a28d9b919438e287989ba32eb5",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.51",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T05:00:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "21c0e892904677867777e1b52ac578f8046ad5ea",
"body": null,
"is_bot": false,
"headline": "test(query-builder): isolate postgres json assertion",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T04:52:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ceb94ba1a162e2c61dede7d2d5d8d5f4a824b8bb",
"body": null,
"is_bot": false,
"headline": "fix(migrations): inline model schema constraints",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-17T04:49:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1473fab3f06ec2a7d369a5b7e76f1c2a4ccbc82e",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.50",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-16T16:24:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3c90005eeeb09429fb425743cb7332f55d7fb3f8",
"body": "Same failure as ts-collect and @stacksjs/bun-router: `sideEffects: false` makes\nBun's bundler tree-shake this package's own graph while building it, so the\npublished dist named bindings it had deleted:\n\n SyntaxError: Exported binding 'defineModel2' needs to refer to a top-level\n declared variable.\n[…]\nshipped an unparseable dist and would crash any\nfresh consumer on import. Removing the field restores a working build (151\nexports, and the fluent `returningAll().executeTakeFirst()` returns the row).",
"is_bot": false,
"headline": "fix(pkg): drop sideEffects:false, it broke the published dist",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-16T16:24:42Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "62856ea59f19ca927b2b63025eae45ab5471cf95",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.49",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-16T16:15:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "189792c1e33620497d0052c83a780cd8fad87f90",
"body": "The raw exec path (`sql\\`...\\`` and `db.unsafe(...)`) decided whether to return\nrows purely by the leading keyword: SELECT/PRAGMA went through `.query()` (rows),\neverything else through `.run()`, which surfaces only { changes, lastInsertRowid }\nand discards any rows. SQLite fully supports RETURNING,\n[…]\nnstead\nof { changes, lastInsertRowid }; INSERT/UPDATE/DELETE ... RETURNING all covered\nby a new regression test. Full suite: no new failures, and one pre-existing\nRETURNING-related failure now passes.",
"is_bot": false,
"headline": "fix(sqlite): return rows for INSERT/UPDATE/DELETE ... RETURNING",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-16T16:15:26Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c6084b5e079e41b9c79419d94fb4d524da2e1bc5",
"body": "So pantry provisions the toolchain (bun + bunx) from a single declared\nsource. ^1.3.14 is bun's newest public release.",
"is_bot": false,
"headline": "chore(deps): declare bun ^1.3.14 in deps.yaml",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-15T21:31:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "22519e63ffdae71e1b52bc97c2995510f3f8c66c",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.48",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-15T04:33:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c7c2d2c0cd1b1d19241d7160e966ef974e5eb7a1",
"body": "Add sideEffects:false for bundler tree-shaking and a shebang to the CLI\nentry (Bun preserves it from source) so the bin is directly executable.",
"is_bot": false,
"headline": "chore(pkg): publint clean — sideEffects:false + executable bin shebang",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-15T04:33:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3f8255fea1f173f44cf19fb2ba9b8247070d35fb",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.47",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-11T18:51:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9e99f6aae05f62615e0c58b16f7d43b70ff0c1d8",
"body": null,
"is_bot": false,
"headline": "fix(types): allow SQLite-only database config",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-11T18:51:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3b5e6d8cbcecc6bd204c3e7d6a78ad2a61d39db1",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.46",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-11T18:26:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "44bdd1d4ea8b0c4eb09ea85d831eb2f49bfc5329",
"body": null,
"is_bot": false,
"headline": "fix(scripts): use Bun package runner",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-11T18:26:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "59eda1dd5ef78c4a3808322b8b31100ae3b89405",
"body": null,
"is_bot": false,
"headline": "chore(deps): upgrade better-dx",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-11T18:26:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2e1791668704ddaa853c515f7bbf707014bad8fd",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.45",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-11T16:28:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "59a7c58ff2308f3fd9fbecc8161b3f1fd0bf2bf1",
"body": null,
"is_bot": false,
"headline": "build: trust dtsx for inline declarations",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-11T15:06:49Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "04af79b3b0df1059dfd5ed34a983175a5f7e41bc",
"body": null,
"is_bot": false,
"headline": "fix: improve TypeScript 7 model inference",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-11T06:46:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8e517fe12fb621a709c53da319eb2b2044fca13f",
"body": null,
"is_bot": false,
"headline": "ci: skip benchmark install scripts when publishing",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-10T22:51:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d42bc0acde0f60f781d1ce535aa68a6cd0adf651",
"body": null,
"is_bot": false,
"headline": "chore: upgrade to TypeScript 7",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-10T22:27:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "15a3a15013354e3aadbd9e8b5c079ccbd338b923",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.44",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-08T18:54:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "858df3e8b41d094e0ffd165db192e35e4dd7bbf2",
"body": "The better-sqlite3 native postinstall fails under the runner's node-gyp\n(webidl.util.markAsUncloneable), aborting install before publish. It's a\ntransitive dev-dep native build not needed to build or publish the package.",
"is_bot": false,
"headline": "ci(release): install with --ignore-scripts",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-08T18:54:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3b8d1ef6da3a6b28bec0d9540c5e847d776fa9b7",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.43",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-08T18:48:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bb52ab518ae5a6709d3d4040de17beba305cb6eb",
"body": "release:patch/minor/major now bump recursively, commit, tag, and push so the\nReleaser workflow (on v* tags) does the npm publish with the CI token, instead\nof relying on a local npm auth that isn't always present.",
"is_bot": false,
"headline": "chore(release): publish via CI tag push instead of local bun publish",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-08T18:48:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0a49782bfc03c9a5c5fe3244a23931d58d534b02",
"body": "Append ?ssl=true to the mysql/singlestore/postgres connection string when\ndatabase.ssl is set or DB_SSL=true. Required to reach managed clusters like\nSingleStore Helios (TLS-only). Verified end-to-end against a live Helios\nworkspace.",
"is_bot": false,
"headline": "feat(db): TLS connection support via ssl flag / DB_SSL",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-08T16:13:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "69679fd8fac2c9d04efb137efbf6422cc7317298",
"body": "Bounded string columns now become varchar(<max>) instead of always varchar(255),\nso tight columns (2-char country codes, 32-char hash ids) don't over-reserve —\nshrinking storage and, on a columnstore, bytes scanned per row. maxLength is\nthreaded onto ColumnPlan and honored by the mysql/singlestore + postgres\ndrivers; values > 255 still promote to text. (Applies Fathom's column-width\ntightening.)",
"is_bot": false,
"headline": "feat(schema): emit varchar(n) from column .max(n)",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-08T15:39:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8568dabd04ddfe848bc51f335b2ab3a6edc02273",
"body": null,
"is_bot": false,
"headline": "chore(deps): refresh bun.lock to pick up pickier 0.1.37",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-07-08T14:48:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cbfe25f5d5b90accdafb7c46f3157ff50050ece2",
"body": "The SingleStore dialect (8096ac7) wired the driver + runtime DML via\nisMysqlLike(), but the CLI/introspection actions still branched on a bare\n`dialect === 'mysql'`, so a SingleStore connection fell through to the\nPostgres (or SQLite) default and broke migrate:fresh, db:wipe, inspect,\nintrospect, va\n[…]\npatible for all of them (information_schema, SHOW TABLES,\ntinyint(1) normalization, backtick quoting, `DROP INDEX ... ON table`).\nAlso tightens deriveDownStatements' dialect param to SupportedDialect.",
"is_bot": false,
"headline": "feat(dialect): route SingleStore through MySQL paths in DB tooling",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-07-08T09:32:18Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8096ac7bd6af43140a61033ccc0a42018013e81b",
"body": "SingleStore speaks the MySQL wire protocol, so runtime DML (placeholders,\nbacktick quoting, ON DUPLICATE KEY UPDATE, LAST_INSERT_ID, datetime shape)\nis shared with MySQL via a new isMysqlLike() helper; only DDL diverges.\n\n- add 'singlestore' to SupportedDialect + mysql:// connection string\n- SingleS\n[…]\nOWSTORE/columnstore/\n REFERENCE table kinds, and drops foreign keys (unsupported)\n- TablePlan carries shardKey/sortKey/tableKind from model definitions\n- cover the dialect with a dedicated test suite",
"is_bot": false,
"headline": "feat(dialect): add SingleStore support",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-08T03:18:47Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "86d8b0d7a458b7c583560c03d13e60ab1f06e320",
"body": "…ared string ids",
"is_bot": false,
"headline": "fix(sqlite): only coerce numeric _id columns to INTEGER, respect decl…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-07T16:48:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9d53d815e38538116087192281dc5b3757915525",
"body": "splitSqlStatements (the migration-file executor) accumulated leading `--`\nline comments into the current segment and then dropped the whole segment\nwhen `trimmed.startsWith('--')` — so a statement DOCUMENTED with a leading\ncomment block was silently discarded. A hand-written migration like\n\n -- Clo\n[…]\ny segment still yields nothing. Exported splitSqlStatements and\nadded a regression test covering leading `--`/`/* */` comments, comment-\nonly segments, and string-literal `;`/`--` that must not split.",
"is_bot": false,
"headline": "fix(db): don't discard a SQL statement preceded by leading comments",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-07-07T12:26:43Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c30e49f5905f45a7922655593324ba453c6d58cf",
"body": "Enum types were named `<column>_type`, so the same enum column name across\ntables (e.g. `status` on monitors=up/down/degraded vs incidents=investigating/…\nvs maintenance=scheduled/…) collided in Postgres's global type namespace,\nfailing migrate with 'type status_type already exists'. Name them\n`<tab\n[…]\nped on ColumnPlan.enumTypeName so the CREATE TYPE,\nthe column reference, and the drop path all agree). SQLite/MySQL render enums\ninline and are unaffected. Fixes running the Stacks schema on Postgres.",
"is_bot": false,
"headline": "fix(postgres): table-qualify enum type names to prevent collisions",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-05T19:27:03Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bf426916b0864db8dfd451f935fda976882de4c8",
"body": "SQLite scopes foreign_keys / busy_timeout to the CONNECTION (they cannot\npersist in the database file) and ships with foreign_keys OFF. The library\nopens sqlite connections in two independent layers — the query-builder\nconnection (SQLiteWrapper) and the model-layer executor\n(configureOrm/getExecutor\n[…]\n the real Model.create → executor path: the orphan\ninsert now rejects with FOREIGN KEY constraint failed and ON DELETE CASCADE\nactually fires. Full suite 1362 pass / 0 fail; typecheck + pickier clean.",
"is_bot": false,
"headline": "fix(sqlite): bootstrap pragmas on every library-opened connection",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-04T21:01:20Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "09363f9b0c9df6541c5916e1fe6e86d7638bbdd9",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.42",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-03T19:27:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8d1d1d60e9ce17e8e2910a6ad86e9f49a0abe676",
"body": "…abase file\n\nbun:sqlite's new Database(filename) throws if the parent directory\ndoesn't exist yet, instead of creating it. Found via a live Hetzner\ndeploy (stacksjs/status#1) where a fresh site's database/ directory\ndidn't exist on first boot.",
"is_bot": false,
"headline": "fix(sqlite): create missing parent directories before opening the dat…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-03T19:27:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b164f2c6f9a89c992d823dea802538817fe0ca0d",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.41",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-02T22:17:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a42436c83a35a5918f32a01f17143225c8ffd487",
"body": "A model that only declares belongsTo: ['Monitor'] (no matching entry in its\nown attributes map — the common case, since the migration generator infers\nthe FK column from belongsTo separately) had its FK column silently dropped\nfrom both the INSERT and any subsequent UPDATE. save()'s create branch on\n[…]\ntributes correctly — it just never made it from there\ninto the actual SQL. Both call sites now sweep any `_id`-suffixed key\npresent on the instance that wasn't already covered by a declared attribute.",
"is_bot": false,
"headline": "fix(orm): persist belongsTo-implied FK columns on create and update",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-02T22:17:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "fde5f6d90a297d2518991080fb99169e85a059ba",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.40",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-02T22:01:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "575cda6da720b87598449e5a88ca21da52dc562e",
"body": "ModelInstance stored whatever casing the caller passed to create()/update()/\nfill() verbatim, with no normalization. Mass-assignment validation\n(stacks' applyMassAssignmentRules) snake_cases attribute names before\nchecking the fillable allowlist, so it accepts snake_case input — but\nsave()'s INSERT-\n[…]\n up that way in save() and\nget()/getAttribute(), matching what a read already produces (raw SQL rows\nare snake_case). _attributes is now internally consistent regardless of\nwhich casing a caller uses.",
"is_bot": false,
"headline": "fix(orm): stop silently dropping multi-word attributes on create/update",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-02T22:01:12Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "9004b7d162b1a4d789102af3543a1b7c781fb7a5",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.39",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-02T21:09:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a9ecc635f3482637631b73bebc9039e5f10e9261",
"body": "…s no models to regenerate from\n\nresetDatabase() unconditionally deleted every *.sql file in database/migrations\nduring migrate:fresh, even when there was no models directory to regenerate\nthem from afterward. Projects that only run on shipped, hand-written\nmigrations (no app/Models override yet) were left with zero migration files\nand no way to get them back.",
"is_bot": false,
"headline": "fix(migrations): keep committed migration files when resetDatabase ha…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-07-02T21:09:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e9e4da2bf2c9026e2d804e3e568e62f49bc6ece4",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.38",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-12T01:00:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "77a0a66e58ea85a1029c4dae1305de28ed003c33",
"body": "Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "test(migrations): cover renames, SQLite rebuild, self-heal, and no-churn",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-12T00:58:28Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "f71da252f432f1f8b641746a62261b2ad98f0f66",
"body": "When the .qb snapshot is missing or stale, introspect the live database\n(PRAGMA / information_schema / pg_catalog) into a full MigrationPlan and\ndiff against that — scoped to the tables the models actually define, so\nit never proposes dropping unrelated tables. Return the operations list\nand thread applyRenames / fromDb / dryRun through generateMigration.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(migrations): self-heal by diffing against the live database schema",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-12T00:58:28Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "75495ea0f36a051af2e3b30ab386175550034758",
"body": "…ctured ops\n\nDetect unambiguous column renames and emit RENAME COLUMN instead of\nDROP+ADD. Implement the SQLite table-rebuild (\"12-step recreate\") so\ncolumn type/constraint changes and constrained-column drops actually\napply — and preserve data — instead of emitting a no-op comment. Compare\ncolumns \n[…]\nactions\nso the diff is stable. Add a structured operations list (with destructive\nflags) and a dry-run mode alongside the raw SQL.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(migrations): data-preserving renames, SQLite table rebuild, stru…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-12T00:58:28Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "39240f1397e0f71da898f6e10144592a91c5f4f0",
"body": "better-dx's pickier peer dep now resolves to 0.1.35.",
"is_bot": false,
"headline": "chore(deps): refresh bun.lock to pick up pickier 0.1.35",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-10T11:49:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "768b546585f9296f33db4f58391a4d2c5d6d778c",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.37",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T06:34:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b9efdbfab7468bc6e1b3669a252fbdc7867ee57b",
"body": "…layer\n\nresolveRelation() only handled hasMany/hasOne/belongsTo/belongsToMany, so\nModel.with('<throughRelation>') silently loaded NOTHING — getRelation()\nreturned undefined — even though the typed relation names include the through\nrelations (InferRelationNames), so the API type-checked but lied at \n[…]\n.through-relations.e2e.test.ts (real sqlite): hasManyThrough grouping\nacross parents, hasOneThrough single/null, and the empty-parent ([]) case.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(orm): hasManyThrough / hasOneThrough eager loading on the model …",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T06:33:57Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "727555204314f7bcd8c69d87df1e14b36123e90f",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.36",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T06:27:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b48721f56a29705a28f02f40e75ecb29410577cd",
"body": "toParams() did `ensureBuilt().values?.()` — but `.values` is a params ARRAY on\nthe sqlite wrapper and a METHOD on Bun's native query, so calling it yielded\n`{}`/garbage rather than the params. It now returns `[...whereParams]` (the same\nsource of truth __rawState() uses), so the documented debugging accessor works.\n\nAdds a toParams() assertion (where chain, whereIn, whereLike) to client.test.ts.",
"is_bot": false,
"headline": "fix(client): toParams() returned garbage instead of the bound params",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T06:27:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a8bb7dccc116c017442b5ffc62869be43f00b2b7",
"body": "…ry params\n\nselectFromSub() built the outer query as `_sql\\`SELECT * FROM (${sub.toSQL()})\nAS ...\\`` and then manipulated `String(builtQuery)` in every chained method. On\na real driver `String(builtQuery)` is \"[object Promise]\" (Bun query objects\ncan't be stringified), so the SQL was corrupted; and \n[…]\neal SQL text, param\nthreading, outer where/whereIn/object-where/orderBy/limit, count/exists,\nparam-less subquery, and alias injection rejection.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix: selectFromSub() produced [object Promise] SQL and dropped subque…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T06:24:43Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "e14742d1c87678c8df7cb5e67561de1aeac310f4",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.35",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T06:07:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a40e961a29aeebc814fae94142e74b3ef3e0d164",
"body": "…nection; support nesting\n\ndb.transaction() calls <conn>.begin(...), but the SQLite connection wrapper\n(createSQLiteSQL) never implemented .begin — so EVERY db.transaction() on the\nsqlite dialect threw \"bunSql.begin is not a function\". The only transaction\n\"test\" lived inside a type-only function (n\n[…]\non-throw,\nreturn value, read-your-writes, and nested savepoints (inner rollback / both\ncommit) — the runtime coverage that was entirely missing.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix: transactions were completely broken on sqlite; honor builder con…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T06:07:54Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "0c20de1a5abd458d9defd9a19be4c691c746e8c9",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.34",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T05:23:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "292fe37b6caaf795b2283494ee1404c44e7853f8",
"body": "…the live singleton\n\ngetConfig() loaded the config (via bunfig's loadConfig: config file + env vars)\ninto a private `_config` variable that NOTHING else read — every consumer reads\nthe process-wide `config` singleton. So `query-builder.config.ts` and\nQUERY_BUILDER_* env vars silently never took effe\n[…]\ndds config-file-load.test.ts (fresh process) verifying a config file's\ntop-level + nested values and a QUERY_BUILDER_* env var all reach config.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(config): getConfig() now applies the loaded config file + env to …",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T05:23:10Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "083a5fb6eccc763e0606073130936a383a8b2c3b",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.33",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T04:54:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4c20d43b04f499d5309b0385160887f6b20bb997",
"body": "…e() row-skip\n\nThree correctness bugs found by probing the builder against real sqlite (the\nmock-sql tests only substring-check toSQL, hiding all three):\n\n- Chained where-type methods emitted a SECOND `WHERE` keyword instead of a\n connector. addWhereText() used the caller's prefix verbatim once a W\n[…]\nectors and chunk/cursor pagination against\nreal sqlite, including the exact-multiple and odd-count boundaries and\nforward/backward cursor walks.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix: chained where double-WHERE, chunk() infinite loop, cursorPaginat…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T04:54:50Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "90bd656d71bfe479e6df1d617722520a3f27fbea",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.32",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T04:05:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "01f8d9af1e98c38077f41856497e1bb1a7aeec80",
"body": "…ethods, distinct().select() drops DISTINCT\n\nFound by probing the whole builder surface against REAL sqlite (the mock-sql\ntest harness returns SQL text from String(query), hiding driver-only bugs):\n\n- The *Raw methods (selectRaw/whereRaw/orderByRaw/groupByRaw/havingRaw)\n rendered fragments via a ba\n[…]\nect, and aggregates against real\nsqlite. Plus compile-time assertions for `raw` as a SqlFragment and the\ntyped returning().first()/get() chains.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix: *Raw fragments broken on real drivers, returning() missing row m…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T04:05:39Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "4cf8d5598698bcdb35ce5e3748a582441f288c9a",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.31",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T01:11:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "58f2bbbdc39a72ad35ec2186c761cfcb640c3f60",
"body": "…nt callbacks; perf hoists\n\nTwo flagship-feature bugs that only surfaced on a REAL database (every\nrelation test uses a mock sql whose String(query) returns SQL text, so\nneither was ever exercised end to end):\n\n- .with() corrupted its SQL on any real connection. It resynced text via\n computeSqlText\n[…]\n where-then-with ordering, and the orderBy/limit/\nbad-operator rejections. Plus compile-time assertions for the constraint\ncallback record form.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix: .with() eager loading broken on real drivers; implement constrai…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T01:10:59Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "fabd2336e8e55b1e25c672239abd52905d6a6058",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.30",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T00:50:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ee54eeaf64fa2489d0fe2f930fec296cb6f7f3b7",
"body": "…ereHas callback escaping\n\nPerformance (profiled before/after on the same Bun build; 4-clause\nbuild+toSQL chain went 12.75µs → 2.74µs/op, where().toSQL() 13.71µs →\n2.34µs/op, ~365k chains/s):\n\n- toSQL() no longer constructs a driver Query object just to read SQL\n text — the returned handle builds i\n[…]\nsurface against real sqlite (Bun.SQL): plain/or/and variants, snake_case\nresolution, IN lists, and rebuild-after-orderBy/limit binding survival.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "perf: 4.7x faster query building; fix dynamic whereX on real DBs + wh…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T00:50:45Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "b3698c450a99abcf4cd40f679a2bd05feaf1572a",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.29",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T00:35:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b9c94cbd276a717f39028d3ed584315d99654ec8",
"body": "…X(text) no longer NaN\n\nResult-shape adjustments — every method whose return type should track its\ninputs now does, pinned by ~40 new exact-type assertions in the compile\nsuite (checked by `bun tsc` in CI):\n\n- ORM max()/min() now return the COLUMN's value type | null (string columns\n yield strings,\n[…]\nhere chains.\n- typed-usage.e2e.test.ts pins MAX/MIN on TEXT columns ('World'/'Hello',\n previously NaN) and the only()/except() runtime subsets.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix: result-shape typing for pluck/value/select/min/max & friends; MA…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T00:35:56Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "e6d3b2fa5e527a631cc61b51cee5d80ab6c52062",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.28",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T00:03:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d7c3a16338744dd9b9cbc23ca79e1b1915457d5b",
"body": "…e types; add extensive type-usage suite\n\nBug fixes (all surfaced by the new exhaustive type/usage test suites):\n- fill()/forceFill() mutated attributes WITHOUT the copy-on-write original\n snapshot, so getChanges() stayed empty and a following save() silently\n skipped the UPDATE — instance.update(\n[…]\ne/isDirty round-trip.\n- Cache regression test pinning param-aware cache keys.\n- orderBy identifier-safety tests for the existing ORM validation.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix: persist fill()/update() changes, param-aware cache keys, pk-awar…",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-10T00:03:23Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "c5ed501300a72b67da8f47519f02594e8ecf5d64",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.27",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-09T23:38:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "38278689e458bbefb8ff357ce08633fff2caf554",
"body": "…LRU cache\n\nTyping — relations are now narrowly typed at every layer:\n- DatabaseSchema carries a phantom, type-level `relations` map per table\n (relation name -> related table), inferred from model definitions and\n mirroring the runtime normalization in buildSchemaMeta. defineModel()-\n wrapped mo\n[…]\nit.\n\nVerified: bun tsc clean, 1247 tests pass, dist builds, query-build\nmicro-benchmark at ~110k ops/s (4-clause) / ~167k ops/s (relation join).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat: narrow relation typing end-to-end, harden SQL boundaries, true …",
"author_name": "Chris",
"author_login": "chrisbbreuer",
"committed_at": "2026-06-09T23:36:45Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "b9cde8ce153e6318b8e6299c52b5596a601d638f",
"body": "better-dx's pickier peer dep now resolves to 0.1.33.",
"is_bot": false,
"headline": "chore(deps): refresh bun.lock to pick up pickier 0.1.33",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-09T13:00:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4b92f81a338c857c18e8942a8c031042fff976f0",
"body": "When a host process bundles multiple bun-query-builder instances (e.g. the\nvendored Stacks framework), setConfig() only mutates one instance's\nmodule-scoped config, leaving others on the built-in test_db/postgres\ndefaults. Honoring DB_CONNECTION/DB_* here makes every instance connect to\nthe real database + credentials regardless of which config object setConfig\nreached.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(db): prefer DB_* env in createConnectionString",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T12:48:20Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "9663a7a622a2fc0714c48c6ccc942712105e3bc7",
"body": null,
"is_bot": false,
"headline": "chore: release v0.1.26",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T12:35:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2d33f866a77709d1f39e783898a846c30da66cfb",
"body": "… with explicit SQL (#1052)\n\nThese methods composed `bunSql\\`INSERT INTO ${bunSql(table)} ${bunSql(values)} ...\\``,\nwhich was broken on every dialect: Postgres threw \"Cannot INSERT with no\ncolumns\" (table helper adjacent to the values helper), and the bun:sqlite\nwrapper never implemented the `sql(va\n[…]\nte vs insert) all produce identical, correct results.\n\nAdds test/client.insert-helpers.test.ts. Full suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(client): rebuild upsert/insertOrIgnore/insertGetId/updateOrInsert…",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T12:06:56Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "d836ca109ae7b8afb181a85ca4c858504589de24",
"body": "paginate() ran its COUNT and page-data as two independent queries, so a\nconcurrent INSERT/DELETE between them could desync `total` from `data.length`\n(the long-standing TODO in the code). paginate now accepts `{ tx }`: when given,\nboth the count and the page query run through the caller's transactio\n[…]\nour is unchanged.\n\nAdds test/client.paginate-tx.test.ts (tx routing + real-sqlite correctness).\nFull suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(client): snapshot-consistent paginate({ tx }) (#1051)",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T12:00:52Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "0974c065ef58258670687e1b271da32b34c33101",
"body": "rowNumber/rank/denseRank were the only window functions and each re-built the\nOVER clause inline. Added a shared buildOverClause + addWindowFunction helper and\na family of generalized window functions: over() (generic escape hatch for any\nexpression, e.g. NTILE(4)), lag/lead (offset + default value)\n[…]\nClause so\nthey compose with the rest of the SELECT.\n\nAdds test/client.window-functions.test.ts. Full suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(client): generalized window functions (#1050)",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:57:44Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "6a8b4f43d4aee5bf2850cb1efbf5e8c4323c6b6e",
"body": "Added intersect/intersectAll/except/exceptAll alongside union/unionAll, reusing\nthe same appendSetOp seam (param merging + Postgres $n renumbering from #1029).\nThe ALL variants are Postgres/MySQL-only (SQLite has no INTERSECT ALL/EXCEPT ALL).\n\nAdds test/client.set-operators.test.ts. Full suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(client): INTERSECT / EXCEPT set operators (#1049)",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:54:53Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "edb2f6caec7c00397924e8ba7cfef9efe87f96be",
"body": "migrateRollback only deleted migration records and told you to rebuild from\nscratch. It now derives reverse (\"down\") DDL from each migration's forward SQL\nand executes it before removing the record (so a failure leaves the record\nintact): CREATE TABLE -> DROP TABLE, ALTER TABLE ADD COLUMN -> DROP CO\n[…]\nExposes deriveDownStatements() + splitSqlStatements(). Adds\ntest/migrate-rollback-down.test.ts. Full suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(migrate): reversible rollback — derive and run down DDL (#1048)",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:53:34Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "70ea4ff95ccc706dce1597fb8d1e66c697dd589c",
"body": "…rce (#1047)\n\nThe existing `introspect <dir>` goes models -> schema; there was no way to go\nthe other direction (adopt an existing database). Added introspectDatabase()\nwhich reads the live connection (sqlite PRAGMA / postgres+mysql\ninformation_schema), maps column types to attribute types, and gene\n[…]\n\n\nAdds test/introspect-db.test.ts (type-mapping + naming units, plus a live-sqlite\nround-trip). Full suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(introspect): reverse-introspect a live DB into defineModel() sou…",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:50:46Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "0d6b1f5ec4cee7ead4f1832bf511bed2a5d36109",
"body": "…046)\n\nwithCount only counted; added withSum/withAvg/withMax/withMin which aggregate a\nrelated column as a correlated subquery (Eloquent parity), aliased\n`<relation>_<fn>_<column>` (e.g. posts_sum_views). Supports hasMany/hasOne\n(`SELECT FN(target.col) FROM target WHERE target.fk = parent.pk`) and\nb\n[…]\nt.ts. Full suite green, typecheck clean.\n\n(The withCount per-relation constraint callback from the issue is a separate\nfollow-up.)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(client): withSum/withAvg/withMax/withMin relation aggregates (#1…",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:47:25Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "71d0d9e42fac3d2fcabb4a60c47d6a15bf9ad2a8",
"body": "…ok events (#1045)\n\nQueryHooks already measured durationMs and fired onQueryStart/End/Error, but the\n`params` field they declared was never populated and there was no slow-query\nsignal.\n\n- Added QueryHooks.slowQueryThresholdMs + onSlowQuery: a query whose duration\n meets/exceeds the threshold is re\n[…]\nse onSlowQuery would never fire when configured\n alone.\n\nAdds test/client.query-hooks.test.ts. Full suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(hooks): slow-query threshold/onSlowQuery + populate params on ho…",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:39:32Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "8efb4ba8e26cdb3b5c9851911bfc2411fede6001",
"body": "…(#1044)\n\nThe dispatch path cast the connection to `any` everywhere ((_sql as any).unsafe,\netc.) because InternalState.sql is `any`, so the place a multi-dialect builder\nmost needs type safety was entirely untyped.\n\nDefined DriverConnection (the shared callable + unsafe/query/close surface both\nthe \n[…]\n typecheck clean, dist builds. The remaining\n`as any` are unrelated generic-erasure / proxy-return casts, not the driver\nboundary.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "refactor: type the driver boundary with DriverConnection/DriverQuery …",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:26:03Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "014a86d5173372e5870564704a520e1bdab3d12c",
"body": "… bundler splits (#1043)\n\n`config` was an `export let` that setConfig mutated in place. It worked, but\nrelied on Bun's bundler keeping a never-reassigned live binding as one shared\nbinding — and the build regex-patched the emitted `__esm(init_config)` wrapper\nto keep readers/writers aligned. If a fu\n[…]\nhe bundler's __esm async-wrapping ordering, orthogonal\nto the binding-split hazard this fixes.\n\nFull suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(config): store config on a globalThis singleton to harden against…",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:19:43Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "4051a01a5df07cf95c369290419a7194838c762a",
"body": "meta.ts (toRecord) and migrations.ts (normalizeBelongsTo) each re-implemented\n\"unwrap string | { model } | array | record\" for relation entries — the exact\nshape behind #1023, fixed twice. Extracted a single source of truth\n(normalizeRelationEntry / normalizeRelationList) consumed by both, so the ne\n[…]\nnged (existing #1023 migration/meta tests still pass); adds a unit\ntest for the shared helpers. Full suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "refactor: dedupe relation normalization into src/relation-utils (#1042)",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:16:26Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "c5d44577bbc979a32bf27b3348e89ae17e30d785",
"body": "getOrCreateBunSql cached on dialect + database.database only, so a setConfig\nchange to host/port/url/credentials/pool kept the stale connection (and\nsetConfig never resets it). The cache now keys on a connectionSignature() over\nevery connection-affecting field (dialect + all database.* fields + reso\n[…]\ntions), so any of them invalidates the cached instance.\n\nAdds test/db.connection-cache.test.ts. Full suite green, typecheck clean.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(db): connection cache keys on full connection signature (#1041)",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:13:46Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "83854a3cea8558a60bb16b44918c702fa76af1d9",
"body": "…1040)\n\nImporting db.ts installed a global `unhandledRejection` listener. Because any\nsuch listener suppresses the runtime's default crash for EVERY unhandled\nrejection — and this handler's body matched only DB connection errors, doing\nnothing (and thus silently swallowing) everything else — the lib\n[…]\ny time (#1022); the full suite passes without the handler. A test\nharness that needs to tolerate a missing DB can install its own.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(db): stop installing a process-wide unhandledRejection handler (#…",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:11:57Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "4bbb15a1e8c56350139fd6ad0b073633d223ff30",
"body": "A Bun `SQL` instance is not a Promise and has no `.catch` (verified: undefined),\nso the `if (typeof sql.catch === 'function')` block never ran — and had it run,\nit was verbose-gated and filtered out exactly the \"database does not exist\"\nerrors #1022 made loud. Removed; async connection errors surfac\n[…]\nery time\nand via the process-level handler.\n\nFull suite green, typecheck clean. (Behavior unchanged — covered by the #1022 tests.)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "refactor(db): remove dead sql.catch handler in getBunSql (#1039)",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:09:51Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "89e9bc64ac1437b89ee4b8f89b59401fc59b3adc",
"body": "The suite only asserted generated SQL text for mysql/postgres — the entire\nDriverExecutor (RETURNING inserts, command-tag affected-row counts,\nextractInsertId/extractChanges) and the client.ts $n-placeholder branches ran\nunverified, which is why the recent dialect bugs slipped through.\n\nAdds test/in\n[…]\n pins globalDb to sqlite)\ncan't mask the network-driver path.\n\nMySQL execution coverage still TODO (no MySQL in this environment).\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "test: add live-Postgres execution integration coverage (#1038)",
"author_name": "glennmichael123",
"author_login": "glennmichael123",
"committed_at": "2026-06-05T11:08:39Z",
"body_truncated": true,
"is_coding_agent": true
}
],
"releases_count": 48,
"commits_last_year": 551,
"latest_release_at": "2026-07-17T19:10:10Z",
"latest_release_tag": "v0.1.57",
"releases_from_tags": false,
"days_since_last_push": 0,
"active_weeks_last_year": 41,
"days_since_latest_release": 5,
"mean_days_between_releases": 0.3
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": true,
"health_percentage": 87,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "bun-query-builder",
"exists": true,
"license": "MIT",
"keywords": [
"typescript",
"query-builder",
"bun",
"package"
],
"ecosystem": "npm",
"matches_repo": true,
"registry_url": "https://www.npmjs.com/package/bun-query-builder",
"is_deprecated": false,
"latest_version": "0.1.57",
"repository_url": "https://github.com/stacksjs/bun-query-builder",
"versions_count": 49,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": 1,
"monthly_downloads": 31040,
"first_published_at": "2025-09-01T15:23:29.445000Z",
"latest_published_at": "2026-07-17T19:09:45.953000Z",
"latest_version_yanked": null,
"days_since_latest_publish": 5
}
]
},
"popularity": {
"forks": 0,
"stars": 10,
"watchers": 0,
"fork_history": {
"days": [],
"complete": true,
"collected": 0,
"total_forks": 0
},
"star_history": null,
"open_issues_and_prs": 17
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [
"examples"
],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [
"packages/benchmark/tsconfig.json",
"packages/bun-query-builder/tsconfig.json",
"tsconfig.json"
],
"toolchain_manifests": [],
"largest_source_bytes": 308385,
"source_files_sampled": 198,
"oversized_source_files": 5,
"agent_instruction_files": [
"CLAUDE.md"
],
"agent_instruction_max_bytes": 1512
},
"dependencies": {
"manifests": [
"package.json"
],
"advisories": {
"error": null,
"scope": null,
"source": null,
"findings": [],
"collected": false,
"malicious": [],
"truncated": false,
"by_severity": {},
"advisory_count": 0,
"affected_count": 0,
"assessed_count": 0,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 0,
"direct_affected_count": 0
},
"ecosystems": [
"npm"
],
"dependencies": [
{
"name": "@stacksjs/ts-validation",
"manifest": "package.json",
"ecosystem": "npm",
"version_constraint": "^0.5.0"
},
{
"name": "@stacksjs/clapp",
"manifest": "packages/bun-query-builder/package.json",
"ecosystem": "npm",
"version_constraint": "^0.2.0"
},
{
"name": "@stacksjs/ts-faker",
"manifest": "packages/bun-query-builder/package.json",
"ecosystem": "npm",
"version_constraint": "^0.1.8"
},
{
"name": "@stacksjs/ts-validation",
"manifest": "packages/bun-query-builder/package.json",
"ecosystem": "npm",
"version_constraint": "^0.5.0"
},
{
"name": "dynamodb-tooling",
"manifest": "packages/bun-query-builder/package.json",
"ecosystem": "npm",
"version_constraint": "^0.3.2"
}
],
"all_dependencies": {
"error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
"source": null,
"packages": [],
"collected": false,
"truncated": false,
"total_count": null,
"direct_count": null,
"indirect_count": null
}
},
"maintainership": {
"issues": {
"open_prs": 12,
"merged_prs": 35,
"open_issues": 5,
"closed_ratio": 0.898,
"closed_issues": 44,
"closed_unmerged_prs": 962
},
"bus_factor": 1,
"bot_contributors": 2,
"top_contributors": [
{
"type": "User",
"login": "glennmichael123",
"commits": 290,
"avatar_url": "https://avatars.githubusercontent.com/u/29087513?v=4"
},
{
"type": "User",
"login": "chrisbbreuer",
"commits": 239,
"avatar_url": "https://avatars.githubusercontent.com/u/6228425?v=4"
},
{
"type": "User",
"login": "iamzjohn",
"commits": 2,
"avatar_url": "https://avatars.githubusercontent.com/u/20513587?v=4"
}
],
"contributors_sampled": 3,
"top_contributor_share": 0.546
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"buddy-bot.yml",
"ci.yml",
"release.yml"
],
"has_docs_dir": true,
"linter_configs": [],
"has_editorconfig": true,
"has_linter_config": false,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 0,
"reason": "branch protection not enabled on development/release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": null,
"reason": "no pull request found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 0,
"reason": "Found 0/30 approved changesets -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 10,
"reason": "project has 11 contributing companies or organizations",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 0,
"reason": "dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 10,
"reason": "update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "30 commit(s) and 27 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 0,
"reason": "dependency not pinned by hash detected -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "no SAST tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 10,
"reason": "security policy file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": 0,
"reason": "Project has not signed or included provenance with any releases.",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 0,
"reason": "19 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "42e97dfc459152b26b4153db9d340ceebbb90192",
"ran_at": "2026-07-23T01:32:37Z",
"aggregate_score": 3.3,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": true,
"has_dependabot_config": false
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-22T23:18:07Z",
"oldest_open_prs": [
{
"number": 989,
"created_at": "2026-03-15T20:11:32Z",
"last_comment_at": "2026-03-15T20:11:39Z",
"last_comment_author": "netlify"
},
{
"number": 990,
"created_at": "2026-03-15T20:11:47Z",
"last_comment_at": "2026-03-15T20:11:53Z",
"last_comment_author": "netlify"
},
{
"number": 999,
"created_at": "2026-03-30T10:44:06Z",
"last_comment_at": "2026-03-30T10:44:12Z",
"last_comment_author": "netlify"
},
{
"number": 1000,
"created_at": "2026-03-30T14:39:51Z",
"last_comment_at": "2026-03-30T14:40:01Z",
"last_comment_author": "netlify"
},
{
"number": 1006,
"created_at": "2026-05-12T11:01:27Z",
"last_comment_at": "2026-05-12T11:01:39Z",
"last_comment_author": "netlify"
},
{
"number": 1007,
"created_at": "2026-05-19T12:16:41Z",
"last_comment_at": "2026-05-19T12:16:50Z",
"last_comment_author": "netlify"
},
{
"number": 1008,
"created_at": "2026-05-19T13:20:02Z",
"last_comment_at": "2026-05-19T13:20:14Z",
"last_comment_author": "netlify"
},
{
"number": 1053,
"created_at": "2026-06-18T17:35:59Z",
"last_comment_at": "2026-06-18T17:36:07Z",
"last_comment_author": "netlify"
},
{
"number": 1054,
"created_at": "2026-06-23T16:16:30Z",
"last_comment_at": "2026-06-23T16:16:36Z",
"last_comment_author": "netlify"
},
{
"number": 1056,
"created_at": "2026-07-08T17:41:37Z",
"last_comment_at": "2026-07-08T17:41:42Z",
"last_comment_author": "netlify"
},
{
"number": 1057,
"created_at": "2026-07-21T06:42:50Z",
"last_comment_at": "2026-07-21T06:42:55Z",
"last_comment_author": "netlify"
},
{
"number": 1058,
"created_at": "2026-07-21T10:28:15Z",
"last_comment_at": "2026-07-21T10:28:20Z",
"last_comment_author": "netlify"
}
],
"last_merged_pr_at": "2026-05-27T09:59:05Z",
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": [
{
"number": 3,
"created_at": "2025-08-11T16:44:34Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 7,
"created_at": "2025-08-22T22:23:54Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 1001,
"created_at": "2026-04-11T22:58:51Z",
"last_comment_at": "2026-04-28T08:20:23Z",
"last_comment_author": "djamez"
},
{
"number": 1003,
"created_at": "2026-04-27T16:51:50Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 1004,
"created_at": "2026-04-27T18:44:51Z",
"last_comment_at": null,
"last_comment_author": null
}
]
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/stacksjs/bun-query-builder",
"host": "github.com",
"name": "bun-query-builder",
"owner": "stacksjs"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": null,
"notes": [],
"value": 64,
"inputs": {
"security": 33,
"vitality": 91,
"community": 55,
"governance": 57,
"engineering": 77
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "excellent",
"name": "Vitality",
"value": 91,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "excellent",
"name": "Development activity",
"note": null,
"notes": [],
"value": 92,
"inputs": {
"commits_last_year": 551,
"human_commit_share": 1,
"days_since_last_push": 0,
"active_weeks_last_year": 41
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 0 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 0
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "41/52 weeks with commits",
"points": 28.4,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 41
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "551 commits in the last year",
"points": 18,
"status": "met",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 551
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "30 commit(s) and 27 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": null,
"notes": [],
"value": 90,
"inputs": {
"releases_count": 48,
"latest_release_tag": "v0.1.57",
"releases_from_tags": false,
"days_since_latest_release": 5,
"mean_days_between_releases": 0.3
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "48 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 48
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 5 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 5
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~0.3 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 0.3
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 5,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 5 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 5
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "moderate",
"name": "Community & Adoption",
"value": 55,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "critical",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 16,
"inputs": {
"forks": 0,
"stars": 10,
"watchers": 0,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "10 stars",
"points": 15.5,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 10
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "0 forks",
"points": 0,
"status": "missed",
"details": [
{
"code": "forks",
"params": {
"count": 0
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "0 watchers",
"points": 0,
"status": "missed",
"details": [
{
"code": "watchers",
"params": {
"count": 0
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "excellent",
"name": "Community health",
"note": null,
"notes": [],
"value": 85,
"inputs": {
"has_readme": true,
"has_license": true,
"has_contributing": true,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (MIT)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "MIT"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 18,
"status": "met",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 13.5,
"status": "met",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
},
{
"key": "ecosystem_adoption",
"band": "good",
"name": "Ecosystem adoption (downloads)",
"note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"registry_dependents"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 75,
"inputs": {
"packages": [
"bun-query-builder"
],
"dependents": null,
"ecosystems": "npm",
"total_downloads": null,
"monthly_downloads": 31040
},
"components": [
{
"key": "monthly_downloads",
"name": "Monthly downloads",
"detail": "31,040 downloads/month across npm",
"points": 59.9,
"status": "partial",
"details": [
{
"code": "downloads_monthly",
"params": {
"count": 31040,
"ecosystems": "npm"
}
}
],
"max_points": 80
},
{
"key": "registry_dependents",
"name": "Registry dependents",
"detail": "not reported by this ecosystem",
"points": 0,
"status": "excluded",
"details": [
{
"code": "not_reported_by_this_ecosystem",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 57,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "at_risk",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 33,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 3,
"top_contributor_share": 0.546
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 55% of commits",
"points": 10.2,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 55
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "3 contributors",
"points": 4.1,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 3
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 11 contributing companies or organizations",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "at_risk",
"name": "Issue & PR responsiveness",
"note": null,
"notes": [],
"value": 43,
"inputs": {
"merged_prs": 35,
"open_issues": 5,
"closed_issues": 44,
"issue_closed_ratio": 0.898,
"closed_unmerged_prs": 962
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "90% of issues closed",
"points": 42,
"status": "partial",
"details": [
{
"code": "issues_closed_share",
"params": {
"share": 90
}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "35/997 decided PRs merged",
"points": 1.3,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 35,
"decided": 997
}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "moderate",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 66,
"inputs": {
"followers": 118,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "stacksjs",
"public_repos": 154,
"account_age_days": 1392
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "118 followers of stacksjs",
"points": 14.9,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 118,
"login": "stacksjs"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "154 public repos, account ~3 yr old",
"points": 20.6,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 154
}
},
{
"code": "account_age_years",
"params": {
"years": 3
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"bun-query-builder"
],
"ecosystems": "npm",
"any_deprecated": false,
"min_days_since_publish": 5
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on npm",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "npm"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 5 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 5
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "49 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 49
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "good",
"name": "Engineering Quality",
"value": 77,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "moderate",
"name": "Engineering practices",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_ci_tests"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 68,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": true,
"has_linter_config": false,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "3 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 3
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 6.4,
"status": "met",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "no pull request found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "excellent",
"name": "Documentation",
"note": null,
"notes": [],
"value": 90,
"inputs": {
"topics": [
"bun",
"javascript",
"mysql",
"postgres",
"query-builder",
"sqlite",
"typescript"
],
"has_wiki": false,
"homepage": "https://bun-query-builder.netlify.app",
"has_readme": true,
"has_docs_dir": true,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 25,
"status": "met",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": "https://bun-query-builder.netlify.app",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": "7 topics",
"points": 10,
"status": "met",
"details": [
{
"code": "topics_count",
"params": {
"count": 7
}
}
],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "at_risk",
"name": "Security",
"value": 33,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "at_risk",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"ci_tests",
"packaging"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 33,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 16,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 2,
"scorecard_aggregate": 3.3
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection not enabled on development/release branches",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "no pull request found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 11 contributing companies or organizations",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "dangerous workflow patterns detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "update tool detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "30 commit(s) and 27 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "no SAST tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file detected",
"points": 5,
"status": "met",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "19 existing vulnerabilities detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 8
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "moderate",
"name": "AI Readiness",
"value": 64,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "excellent",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 85,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 1,
"agent_instruction_files": [
"CLAUDE.md"
],
"agent_instruction_max_bytes": 1512
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "CLAUDE.md",
"points": 45,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "CLAUDE.md"
}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "100 of 100 human commits state their intent (structured subject or explanatory body)",
"points": 40,
"status": "met",
"details": [
{
"code": "legible_history",
"params": {
"legible": 100,
"sampled": 100
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "at_risk",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 43,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [],
"has_dockerfile": false,
"typed_language": true,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": false,
"typecheck_configs": [
"packages/benchmark/tsconfig.json",
"packages/bun-query-builder/tsconfig.json",
"tsconfig.json"
],
"agent_commit_share": 0.3,
"toolchain_manifests": [],
"dependency_bot_commit_share": 0
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "packages/benchmark/tsconfig.json, packages/bun-query-builder/tsconfig.json, tsconfig.json",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "packages/benchmark/tsconfig.json, packages/bun-query-builder/tsconfig.json, tsconfig.json"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "30 of the last 100 commits agent-authored or agent-credited",
"points": 10,
"status": "met",
"details": [
{
"code": "agent_authored_commits",
"params": {
"count": 30,
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "no automated dependency updates observed",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_dependency_automation",
"params": {}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "excellent",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 99,
"inputs": {
"primary_language": "TypeScript",
"largest_source_bytes": 308385,
"source_files_sampled": 198,
"oversized_source_files": 5
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "TypeScript (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "TypeScript"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "5/198 source files over 60KB",
"points": 53.6,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 198,
"oversized": 5
}
}
],
"max_points": 55
}
]
},
{
"key": "ai_interfaces",
"band": "at_risk",
"name": "Machine-readable interfaces",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"example_dirs": [
"examples"
],
"has_mcp_signal": false,
"api_schema_files": []
},
"components": [
{
"key": "api_schema_openapi_graphql_proto",
"name": "API schema (OpenAPI/GraphQL/proto)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 40
},
{
"key": "mcp_server",
"name": "MCP server",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "runnable_examples",
"name": "Runnable examples",
"detail": "examples",
"points": 40,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "examples"
}
}
],
"max_points": 40
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
"GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
"deps.dev does not index npm:bun-query-builder@0.1.57; advisories assessed against the repository dependency graph instead"
],
"report_type": "repository",
"generated_at": "2026-07-23T01:32:43.110766Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/s/stacksjs/bun-query-builder.svg",
"full_name": "stacksjs/bun-query-builder",
"license_state": "standard",
"license_spdx": "MIT"
}