Öffentliches Register
Software-GesundheitsberichtSchema 0.27.0 · Metriken 1.13.0 · 2026-07-28 06:42 UTC

vcnkl / rpm

Language-agnostic build and test tool with a development runtime for monorepos.

GoMIT★ 3 Sterne⑂ 0 Forksseit Jan. 2026Auf GitHub ansehen ↗

vcnkl/rpm erreicht einen Gesundheitsindex von 49 von 100 und liegt damit im Bereich Gefährdet. Am stärksten schneidet es bei Engineering Quality (78/100) ab, am schwächsten bei Community & Adoption (26/100). Zuletzt vor 8 Tagen aktualisiert. Ein einzelner Mitwirkender trägt den Großteil der jüngsten Arbeit.

49
gesamt / 100
Gefährdet

Software-Gesundheitsindex

Metriken werden auf einer Skala von 1–100 in gewichtete Kategorien gruppiert. Der Gesamtwert beginnt als ihr Mittel; sobald öffentliche Evidenz die Richtlinie für Hochrisikojurisdiktionen auslöst, wird die Bewertung angepasst und erhält die Obergrenze 49 (Gefährdet). AI Readiness liegt außerhalb.

49
Exzellent85-100Vorbildlich; erfüllt im Wesentlichen alle geprüften Kriterien
Gut70-84Gesund; geringfügige Lücken
Mittel50-69Akzeptabel mit deutlichen Lücken; Überprüfung empfohlen
Gefährdet30-49Erhebliche Schwächen; eine Übernahme erfordert Vorsicht
Kritisch1-29Schwerwiegende Probleme (aufgegeben, nur ein Maintainer, keine Hygiene)
VitalitätCommunity &VerbreitungNachhaltigkeit &GovernanceEngineering-QualitätSicherheitAI Readiness

Bewertungsprofil

Jede Achse ist eine Kategorie. Die Form zählt mehr als der Durchschnitt — ein gesundes Projekt füllt die gesamte Fläche, während ein Profil aus Spitzen und Kratern bedeutet, dass Stärke in einer Dimension Risiken in einer anderen verdeckt.

Eigentümerschaft

VincePersönliches Konto
0 Follower2 öffentliche Reposseit Juli 2024

Dieses Repository gehört einem persönlichen Konto. Ein Projekt mit nur einem Eigentümer trägt ein höheres Kontinuitätsrisiko als ein organisationsgetragenes.

Paket-Ökosysteme

RegistryPaketVersionDownloads / MonatVersionenZuletzt veröffentlicht
Gogithub.com/vcnkl/rpmv0.9.0-17vor 8 Tagen

Metriken nach Kategorie

Vitalität

Lebt das Projekt — wird Code geschrieben und werden Releases ausgeliefert?

74Gut · 22 % des Gesamtindex
Wie die Bewertung erfolgt
28.8/36Push-Aktualität — letzter Push vor 8 Tagen
6.2/36Commit-Rhythmus — 9/52 Wochen mit Commits
17.6/18Commit-Volumen — 89 Commits im letzten Jahr
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Verwendete Eingangsdaten
commits_last_year89
human_commit_share1
days_since_last_push8
active_weeks_last_year9
Wie die Bewertung erfolgt
27/27Liefert Releases aus — 17 Releases veröffentlicht
36/36Release-Aktualität — letztes Release vor 8 Tagen
27/27Release-Rhythmus — ein Release etwa alle 4,3 Tage
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Verwendete Eingangsdaten
releases_count17
latest_release_tagv0.9.0
releases_from_tagsnein
days_since_latest_release8
mean_days_between_releases4,3

Community & Verbreitung

Hat das Projekt Nutzer, Downloads, Aufmerksamkeit und ein einladendes Umfeld für Beitragende?

26Kritisch · 18 % des Gesamtindex
Wie die Bewertung erfolgt
4.9/60Stars — 3 Stars
0/25Forks — 0 Forks
0/15Watcher — 0 Watcher
Verwendete Eingangsdaten
forks0
stars3
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
Wie die Bewertung erfolgt
22.5/22.5README
22.5/22.5Lizenz — anerkannte Lizenz (MIT)
0/18CONTRIBUTING-Leitfaden
0/13.5Verhaltenskodex
0/7.2Issue-Vorlage
0/6.3PR-Vorlage
Verwendete Eingangsdaten
has_readmeja
has_licenseja
has_contributingnein
has_issue_templatenein
has_code_of_conductnein
has_pull_request_templatenein

Nachhaltigkeit & Governance

Überdauert das Projekt die Menschen, die es tragen — Bus-Faktor, Reaktionsfähigkeit, Trägerschaft und Paketpflege?

29Kritisch · 24 % des Gesamtindex
Wie die Bewertung erfolgt
9/54Bus-Faktor — 1 Beitragende decken die Hälfte aller Commits ab
0/22.5Commit-Verteilung — wichtigste beitragende Person verfasste 100 % der Commits
1.4/13.5Breite der Beitragenden — 1 Beitragende
0/10OpenSSF Scorecard: Contributors — project has 0 contributing companies or organizations -- score normalized to 0
Verwendete Eingangsdaten
bus_factor1
contributors_sampled1
top_contributor_share1
Wie die Bewertung erfolgt
0/46.8Issue-Lösungsquote — keine Issues oder keine Daten
0/38.3PR-Annahme — keine entschiedenen Pull Requests oder keine Daten
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Verwendete Eingangsdaten
merged_prs0
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs0
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Issue-Lösungsquote, PR-Annahme. Die verbleibenden Gewichte wurden renormalisiert.
Wie die Bewertung erfolgt
10/30Organisatorische Trägerschaft — persönliches (Nutzer-)Konto
0/20Verifizierte Domain — für Nutzerkonten nicht anwendbar
0/25Reichweite des Inhabers — 0 Follower von vcnkl
7.5/25Kontohistorie — 2 öffentliche Repos, Kontoalter ca. 2 Jahre
Verwendete Eingangsdaten
followers0
owner_typeUser
is_verified
owner_loginvcnkl
public_repos2
account_age_days742
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Verifizierte Domain. Die verbleibenden Gewichte wurden renormalisiert.

Paketpflege

100Exzellent
Wie die Bewertung erfolgt
25/25Veröffentlicht & auflösbar — 1 Paket(e) auf go
35/35Veröffentlichungsaktualität — letzte Veröffentlichung vor 8 Tagen
20/20Versionshistorie — 17 veröffentlichte Versionen
20/20Nicht veraltet — aktiv, nicht veraltet oder zurückgezogen
Verwendete Eingangsdaten
packagesgithub.com/vcnkl/rpm
ecosystemsgo
any_deprecatednein
min_days_since_publish8

Engineering-Qualität

Sind grundlegende Engineering- und Dokumentationspraktiken vorhanden?

78Gut · 20 % des Gesamtindex
Wie die Bewertung erfolgt
24/24CI-Workflows — 2 Workflow(s)
24/24Tests vorhanden
16/16Linter-Konfiguration — .golangci.yml
0/9.6Pre-Commit-Hooks
0/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — keine Daten
Verwendete Eingangsdaten
has_cija
has_testsja
has_editorconfignein
has_linter_configja
has_precommit_confignein
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): OpenSSF Scorecard: CI-Tests. Die verbleibenden Gewichte wurden renormalisiert.
Wie die Bewertung erfolgt
30/30README
25/25Dokumentationsverzeichnis
0/15Dokumentations-/Homepage-Site
10/10Repository-Beschreibung
10/10Topics — 2 Topics
0/10Wiki
Verwendete Eingangsdaten
topicsci-cd, monorepo
has_wikinein
homepage
has_readmeja
has_docs_dirja
has_descriptionja

Sicherheit

Sind die sichtbaren Sicherheits- und Lieferkettenpraktiken belastbar, ohne ungeklärte Exposition gegenüber Hochrisikojurisdiktionen?

32Gefährdet · 16 % des Gesamtindex

Sicherheitslage

32Gefährdet
Wie die Bewertung erfolgt
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — keine Daten
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
0/2.5Contributors — project has 0 contributing companies or organizations -- score normalized to 0
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5Lizenz — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 27 existing vulnerabilities detected
Verwendete Eingangsdaten
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate3,2
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): ci_tests. Die verbleibenden Gewichte wurden renormalisiert.

AI Readiness

Wie gut ist das Repository dafür ausgestattet, mit KI-Coding-Agenten entwickelt und gepflegt zu werden? Ein unabhängiges, experimentelles Badge — Gewicht 0,0, es wird eigenständig ausgewiesen und verändert den Gesamt-Gesundheitswert nicht.

63Mittel · 0 % des Gesamtindex
Wie die Bewertung erfolgt
0/45Agentenanweisungen — keine CLAUDE.md / AGENTS.md / Editor-Regeln
0/15Maschinenlesbare Doku (llms.txt)
40/40Lesbare Commit-Historie — 89 von 89 menschlichen Commits benennen ihre Absicht (strukturierter Betreff oder erläuternder Text)
Verwendete Eingangsdaten
has_llms_txtnein
legible_history_share1
agent_instruction_files
agent_instruction_max_bytes
Wie die Bewertung erfolgt
12.6/18Bootstrap mit einem Befehl — go.mod (Toolchain-Konvention, kein Task-Runner)
22/22Automatisierte Tests
11/11Lint-/Format-Konfiguration — .golangci.yml
11/11Statische Typprüfung — Go (statisch typisiert)
10/10Reproduzierbare Umgebung — lockfile
0/10Belegte Agentenpraxis — keine von Agenten verfassten Commits unter den letzten 89
0/8Automatisierte Wartung — keine automatisierten Abhängigkeits-Updates beobachtet
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Verwendete Eingangsdaten
has_nixnein
has_testsja
lockfilesgo.sum
has_dockerfilenein
typed_languageja
bootstrap_files
has_devcontainernein
has_linter_configja
typecheck_configs
agent_commit_share0
toolchain_manifestsgo.mod
dependency_bot_commit_share0
Wie die Bewertung erfolgt
45/45Typprüfbarer Code — Go (statisch typisiert)
55/55Handhabbare Dateigrößen — 0/111 Quelldateien über 60 KB
Verwendete Eingangsdaten
primary_languageGo
largest_source_bytes50.366
source_files_sampled111
oversized_source_files0

Eckdaten

3GitHub-Sterne
1Mitwirkende
89Commits, letzte 12 Monate
8Tage seit letztem Push
17Releases
1Bus-Faktor
0offene Issues
GoPaket-Ökosysteme

Warnungen zur Datenerhebung

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Weitere Details

OpenSSF Scorecard 3.2 / 10
3.2Gesamtwert

Unabhängige, werkzeugneutrale Sicherheitsbewertung durch das quelloffene OpenSSF Scorecard. Jede Prüfung honoriert eine Sicherheits-Praxis, nicht das Werkzeug eines bestimmten Anbieters. Prüfungen, die Scorecard nicht ermitteln konnte, sind mit k. A. markiert und vom Sicherheitswert ausgeschlossen (nie als null gezählt).Scorecard v5.5.0 · 2026-07-28 06:42 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
k. A.CI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
0Contributorsproject has 0 contributing companies or organizations -- score normalized to 0
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities27 existing vulnerabilities detected
Direkte Abhängigkeiten 26
RegistryPaketVersionsvorgabeManifest
Gogithub.com/charmbracelet/bubbleteav1.3.4go.mod
Gogithub.com/charmbracelet/harmonicav0.2.0go.mod
Gogithub.com/charmbracelet/lipglossv1.1.0go.mod
Gogithub.com/containerd/errdefsv1.0.0go.mod
Gogithub.com/distribution/referencev0.6.0go.mod
Gogithub.com/docker/go-sdk/clientv0.1.0-alpha013go.mod
Gogithub.com/docker/go-sdk/containerv0.1.0-alpha015go.mod
Gogithub.com/docker/go-sdk/networkv0.1.0-alpha013go.mod
Gogithub.com/docker/go-sdk/volumev0.1.0-alpha005go.mod
Gogithub.com/fsnotify/fsnotifyv1.9.0go.mod
Gogithub.com/knadh/koanf/parsers/yamlv1.1.0go.mod
Gogithub.com/knadh/koanf/providers/filev1.2.1go.mod
Gogithub.com/knadh/koanf/v2v2.3.0go.mod
Gogithub.com/lrstanley/bubblezonev1.0.0go.mod
Gogithub.com/mattn/go-isattyv0.0.20go.mod
Gogithub.com/moby/moby/apiv1.52.0go.mod
Gogithub.com/moby/moby/clientv0.1.0go.mod
Gogithub.com/pkg/errorsv0.9.1go.mod
Gogithub.com/rs/zerologv1.34.0go.mod
Gogithub.com/shirou/gopsutil/v4v4.25.6go.mod
Gogithub.com/stretchr/testifyv1.11.1go.mod
Gogithub.com/testcontainers/testcontainers-gov0.40.0go.mod
Gogithub.com/urfave/cli/v2v2.27.1go.mod
Gogo.starlark.netv0.0.0-20260324133313-ffb3f39dd27ago.mod
Gogolang.org/x/termv0.36.0go.mod
Gogopkg.in/yaml.v3v3.0.1go.mod
Alle Abhängigkeiten nicht erhoben

Der aufgelöste Abhängigkeitssatz konnte für diesen Bericht nicht erhoben werden: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

JSON-Rohbericht maschinenlesbar
{
  "data": {
    "repo": {
      "topics": [
        "ci-cd",
        "monorepo"
      ],
      "is_fork": false,
      "size_kb": 2698,
      "has_wiki": false,
      "homepage": null,
      "languages": {
        "Go": 638543,
        "Shell": 5024
      },
      "pushed_at": "2026-07-19T21:40:13Z",
      "created_at": "2026-01-14T17:23:11Z",
      "owner_type": "User",
      "updated_at": "2026-07-19T21:40:17Z",
      "description": "Language-agnostic build and test tool with a development runtime for monorepos.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "main",
      "license_spdx_raw": "MIT",
      "primary_language": "Go",
      "significant_languages": [
        "Go"
      ]
    },
    "owner": {
      "blog": null,
      "name": "Vince",
      "type": "User",
      "login": "vcnkl",
      "company": null,
      "location": null,
      "followers": 0,
      "avatar_url": "https://avatars.githubusercontent.com/u/175630292?v=4",
      "created_at": "2024-07-15T15:06:23Z",
      "is_verified": null,
      "public_repos": 2,
      "account_age_days": 742
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.9.0",
          "kind": "minor",
          "published_at": "2026-07-19T21:48:45Z"
        },
        {
          "tag": "v0.8.1",
          "kind": "patch",
          "published_at": "2026-07-15T19:05:08Z"
        },
        {
          "tag": "v0.8.0",
          "kind": "minor",
          "published_at": "2026-07-09T22:45:08Z"
        },
        {
          "tag": "v0.7.1",
          "kind": "patch",
          "published_at": "2026-07-07T22:31:09Z"
        },
        {
          "tag": "v0.7.0",
          "kind": "minor",
          "published_at": "2026-07-06T20:28:16Z"
        },
        {
          "tag": "v0.6.2",
          "kind": "patch",
          "published_at": "2026-07-06T18:48:24Z"
        },
        {
          "tag": "v0.6.1",
          "kind": "patch",
          "published_at": "2026-07-06T15:56:20Z"
        },
        {
          "tag": "v0.6.0",
          "kind": "minor",
          "published_at": "2026-07-05T22:03:15Z"
        },
        {
          "tag": "v0.5.0",
          "kind": "minor",
          "published_at": "2026-06-27T22:07:43Z"
        },
        {
          "tag": "v0.4.2",
          "kind": "patch",
          "published_at": "2026-06-10T20:16:29Z"
        },
        {
          "tag": "v0.4.1",
          "kind": "patch",
          "published_at": "2026-06-10T17:31:44Z"
        },
        {
          "tag": "v0.4.0",
          "kind": "minor",
          "published_at": "2026-06-09T22:38:40Z"
        },
        {
          "tag": "v0.3.1",
          "kind": "patch",
          "published_at": "2026-03-01T13:05:20Z"
        },
        {
          "tag": "v0.3.0",
          "kind": "minor",
          "published_at": "2026-02-28T14:00:47Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2026-01-17T22:26:15Z"
        },
        {
          "tag": "v0.1.1",
          "kind": "patch",
          "published_at": "2026-01-14T21:09:38Z"
        },
        {
          "tag": "v0.1.0",
          "kind": "minor",
          "published_at": "2026-01-14T20:01:05Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "627fe610bf83e3fb9d052874c3d0b11be118d264",
          "body": null,
          "is_bot": false,
          "headline": "refactor: centralize command validation",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-19T21:38:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6108c1d9a2674d8058ba4152ec4e95eeb03f4c4d",
          "body": null,
          "is_bot": false,
          "headline": "feat: persist command and environment logs",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-19T00:44:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84ef06dd194230298534f166350a4c60a7e78a36",
          "body": null,
          "is_bot": false,
          "headline": "fix: stream dependency container logs",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-18T23:10:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c69c7264a350ea4fef2331042ce764a8b4b54740",
          "body": null,
          "is_bot": false,
          "headline": "fix(tui): extend stop timeout and remove shadowed arg",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-15T18:56:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f806ecf067e83afec873e6b78c1c03650fef5564",
          "body": null,
          "is_bot": false,
          "headline": "fix(tui): improve log scrolling and wrapping",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-15T18:27:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ba1e3e630d98ea5da7bea786f8f3fe8de95b3501",
          "body": null,
          "is_bot": false,
          "headline": "fix(runtime): remove output drain deadline",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-15T18:01:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f9f60ef21d9ba529e7d28a12d8dd1ffc1311a987",
          "body": null,
          "is_bot": false,
          "headline": "feat(env): order target startup with readiness commands",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-09T22:41:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "794a94b904c709aaa32f286a56d1e02f9c76d46d",
          "body": "…ct dependency env and highlight failed TUI rows",
          "is_bot": false,
          "headline": "fix(env): run target deps in env up via startup pipeline, always inje…",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-07T22:21:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2ef7b0829899f7e64f5261dd8a9962a61bb54f98",
          "body": null,
          "is_bot": false,
          "headline": "fix: explicitly discard errors that aren't actionable",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-06T20:19:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3f97b96568d106899cd818ff9c152c9ab21e7aa1",
          "body": null,
          "is_bot": false,
          "headline": "feat: restore `dev` subcommand",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-06T19:40:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "53a89853bda38c5939cb2c3b06b2b08ac2aa9e6b",
          "body": null,
          "is_bot": false,
          "headline": "fix(env): treat dependencies.enabled false as kill switch",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-06T18:36:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a2d0736e64d41dd1cb7ee4a0bfd0f46545bf5f42",
          "body": null,
          "is_bot": false,
          "headline": "fix(runtime): suppress stale exit event during target restart",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-06T18:36:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e3f64d6c236f1b6f825d087db19cc9e33b943827",
          "body": null,
          "is_bot": false,
          "headline": "fix(metrics): normalize CPU percent by host core count",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-06T18:36:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "498c951af7b2d6851e1894cf30977b5e262fe163",
          "body": null,
          "is_bot": false,
          "headline": "fix: improve shutdown handling",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-06T15:47:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c8f82e949e726499273b8320cdbe72d25185ee58",
          "body": null,
          "is_bot": false,
          "headline": "ci: conditionally invoke Release from CI workflow",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T21:30:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "49cd890e5326f141ff2f804766f1d814e089c309",
          "body": null,
          "is_bot": false,
          "headline": "feat: add custom install path option to installer",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T21:21:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3828aa5126d2dbd03b60c89476e062275c271f1d",
          "body": null,
          "is_bot": false,
          "headline": "ci: add lint, govulncheck and reusable test action",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T21:03:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "903b7be756cc7fc2e9736f0767126439e711afff",
          "body": null,
          "is_bot": false,
          "headline": "style: resolve errcheck and staticcheck findings",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T20:48:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "995bf87b4b0f4c01cf67f6f3199ac786092cc351",
          "body": null,
          "is_bot": false,
          "headline": "fix(install): verify release checksum before install",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T20:36:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "767459dda3fcee1102d4c8b66110f47d5e173ff1",
          "body": null,
          "is_bot": false,
          "headline": "feat(config): support pinning images to digests",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T20:36:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4fe50119e4a7d05bf98d4bd10ea5003c689c175c",
          "body": null,
          "is_bot": false,
          "headline": "fix(builds): count cached targets as skipped",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T20:34:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d7411d8c0a6ac309273e4358d7e66038e5883c51",
          "body": null,
          "is_bot": false,
          "headline": "fix(builds): serialize cache writes to prevent tmp file race",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T20:33:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8651a98ebec9dd844217e04367f190fd3647200a",
          "body": null,
          "is_bot": false,
          "headline": "fix(cache): include target config and file paths in cache key",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T20:29:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d5adf37a1b3c9e0f78e6dfce31d65af6d13b8e7d",
          "body": null,
          "is_bot": false,
          "headline": "fix(cmd): wire injected build version into CLI",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T20:29:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9276a7a8b1727116d7894f07b09b2b54b75a26bf",
          "body": null,
          "is_bot": false,
          "headline": "docs: add TUI demo GIF to README.md",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T17:01:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c92a13c9b6f2c407ab7f0742d1541c9124f61f7",
          "body": null,
          "is_bot": false,
          "headline": "docs: update README.md",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-07-05T16:39:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "259bd464fafa921f182013f20b46e9c70db65fee",
          "body": null,
          "is_bot": false,
          "headline": "ci(release): run unit tests only on macOS runner",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-27T22:00:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "531d322d1f284cd683e8b35b415335d0bbc30d3c",
          "body": null,
          "is_bot": false,
          "headline": "ci(release): run test suite on macOS and Linux",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-27T21:32:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c7a7de1136f1b2d7acb96c344eebbbd238fdfa5c",
          "body": null,
          "is_bot": false,
          "headline": "feat: add resource usage metrics to the TUI",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-27T20:48:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1966f286f5fd30cea2154d64df75929f11721148",
          "body": null,
          "is_bot": false,
          "headline": "refactor: replace React TUI with Bubble Tea",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-27T20:48:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "45dc7f60d01705892258a1883c34b79fa0254c4d",
          "body": "Integration tests exercising CLI.Up/Down orchestration through the\nexported docker API belong in integration/, gated like the rest of the\nsuite. The docker package keeps only white-box unit tests of its\nunexported helpers.",
          "is_bot": false,
          "headline": "test(env): move docker runtime tests into the integration suite",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T20:07:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b99a554e8b085a3c644516e6a750c3fabb42ce6b",
          "body": "Dotenv values like MONGODB_URI=mongodb://localhost:${MONGODB_PORT}/db\nreached before targets and targets without the published Docker port\nsubstituted, and applications reloading .env themselves expanded the\nplaceholder to an empty string.\n\n- report the actual published ports of reused dependency co\n[…]\notenvFiles field from spec.Target in favor of\n  Dotenv.Files\n- cover the flow with an integration test that runs rpm env up against\n  real Docker dependencies and asserts the interpolated dotenv value",
          "is_bot": false,
          "headline": "fix(env): resolve dependency ports in dotenv values end to end",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T20:04:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "40e147cf7679685f727f80cdf95cf7d7183e09e4",
          "body": null,
          "is_bot": false,
          "headline": "feat: substitute dependency ports in dotenv env",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T18:11:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "092a2a552c0d9d5a89a8e666a95443efc87d3a09",
          "body": null,
          "is_bot": false,
          "headline": "chore: update README.md",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T18:11:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5d40b70899fdb9aeb1f6a02e96d7a395f4a7f233",
          "body": null,
          "is_bot": false,
          "headline": "fix(env): reuse existing dependency containers",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T16:20:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ace538bfadac9f6b2aa4be371bf0283900ddf304",
          "body": null,
          "is_bot": false,
          "headline": "fix(env): prevent duplicate dependency containers",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T15:18:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "128f3f68a1a80dd53f2a1519a331470ed7fa3c58",
          "body": null,
          "is_bot": false,
          "headline": "fix(env): scope dependency startup failures",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T15:02:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7153daf0475a6f0e2ef6f27795f2e0773fb30478",
          "body": null,
          "is_bot": false,
          "headline": "docs(readme): condense env usage instructions",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T00:55:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "71fa62ea92cb83a721bce121024a795d6d9c1f18",
          "body": null,
          "is_bot": false,
          "headline": "fix(env): resolve explicit dependency config refs",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-10T00:51:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "445b6c9cc9f7097d86f5daa3478ed516a7457479",
          "body": null,
          "is_bot": false,
          "headline": "chore: go mod tidy",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-09T22:38:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "64c3b3ec3569d214efcfa9e85660572b5c87b423",
          "body": null,
          "is_bot": false,
          "headline": "chore: move env tui under environments",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-09T22:31:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "284569a4e4f5e05e8f3fcc6831d0fb686f0384a0",
          "body": null,
          "is_bot": false,
          "headline": "test: consolidate env integration coverage",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-09T22:24:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b1a1c4ad5c2c39dac154551804856de148b5f8c4",
          "body": null,
          "is_bot": false,
          "headline": "fix: pass live reload debounce to watchers",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-09T22:12:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7464626e6ba03c20dc2a284ce973ddce1db0a0ba",
          "body": null,
          "is_bot": false,
          "headline": "fix(env): require bundle dependencies",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-09T21:03:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a2a59356480a83398b430cc6e5886fb3e8363c60",
          "body": null,
          "is_bot": false,
          "headline": "fix(env): resolve target config at runtime",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-09T20:42:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "34ec0ec5ed58f8b42f0b86fddf017dc9be13b47a",
          "body": null,
          "is_bot": false,
          "headline": "feat(env): commit generated runtime plans",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-09T20:02:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e512e648238ef1a46837c9ddbe68c896fd738b0b",
          "body": null,
          "is_bot": false,
          "headline": "feat(env): order before targets by config index",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-08T22:52:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8fd5eb42c006edbffd4fc42b7d34e4c9ed756f8b",
          "body": null,
          "is_bot": false,
          "headline": "fix(env): apply dependency ports to process env",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-08T22:51:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b96e2de65aeb1e34d31334b98e2c9fcb04ab391",
          "body": null,
          "is_bot": false,
          "headline": "fix: prioritize dynamic dependency port env",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-03T21:36:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1eaedf66e5a2957c9b66bf78135385ece475b40a",
          "body": null,
          "is_bot": false,
          "headline": "feat: inject dependency port env vars",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-03T21:09:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18aa6575a83c7d91a7f1b5df5e25e60355eaddf2",
          "body": null,
          "is_bot": false,
          "headline": "feat(config): hard cut repo.yml schema to env vars deps and init",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-03T20:43:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3769c0c24321308b2790410888ff83512b3de691",
          "body": null,
          "is_bot": false,
          "headline": "fix(tui): remove unused `index` param",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-03T20:36:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "de28872c302b94a081bf4e066648d83011f675be",
          "body": null,
          "is_bot": false,
          "headline": "fix: let docker sdk resolve default context",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T22:47:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "331d6909d9597ae09261ae3102e6b69b5d053d7d",
          "body": null,
          "is_bot": false,
          "headline": "feat: filter env selection targets",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T22:17:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c8126e01e69ef3bb37017bfa5e33d9eb3037201c",
          "body": null,
          "is_bot": false,
          "headline": "feat: centralize env dependency config",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T21:02:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "af33cb50be0829d3c46a3ba7d5b572ae542b085d",
          "body": null,
          "is_bot": false,
          "headline": "fix: remove env pre legacy path",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T19:47:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0eb7df617582bf7d62377499c16e2a46b9710a64",
          "body": null,
          "is_bot": false,
          "headline": "fix: harden env dependency startup",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T19:45:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "36164c89de688243e95e32b807f9ff905e24ac45",
          "body": null,
          "is_bot": false,
          "headline": "feat: make env startup target-first",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T19:44:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7a65a0ec1d7209f3623f86324de01639be9d5cd0",
          "body": null,
          "is_bot": false,
          "headline": "fix: support node builtins in env tui bundle",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T15:55:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4d0253ed178deb0006ce077f7632b4c10615dcab",
          "body": null,
          "is_bot": false,
          "headline": "fix: bundle env tui devtools stub",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T15:49:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5020b4a673ca71a7fd0abf8cfa05e018611c6c66",
          "body": null,
          "is_bot": false,
          "headline": "fix: centralize env tui bundle build",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-02T15:24:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "52ce4dcb9905f3e3c057bf1fc5687346dbe6142c",
          "body": null,
          "is_bot": false,
          "headline": "feat(env-tui): improve env TUI tooling",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T23:08:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9e390c6d7599e98275e1bc4d3df19bcda4075cda",
          "body": null,
          "is_bot": false,
          "headline": "feat: improve env target selection",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T23:08:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fcce39df437618323c605bd9d34bbf249dd7c7c0",
          "body": null,
          "is_bot": false,
          "headline": "feat: allocate dynamic dependency ports",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T22:31:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e678e66fbaaa5bfbe144da707142e2905487daca",
          "body": null,
          "is_bot": false,
          "headline": "feat: centralize bundle env config",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T22:21:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "983c0bf76946f2ea957c7620ec2ccc54b752a3ea",
          "body": null,
          "is_bot": false,
          "headline": "test: rename env echo fixture targets",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T22:05:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f989fa228067224bf7e3c6855b7871897ce1fe82",
          "body": null,
          "is_bot": false,
          "headline": "feat: add env pre scripts",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T21:24:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "afab17ccdad52a926f163e886ee074b772b708b1",
          "body": null,
          "is_bot": false,
          "headline": "docs: remove legacy framing from README",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T20:43:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "790f758f6ad5be328f31c8bdb78277dc7a36b4dd",
          "body": null,
          "is_bot": false,
          "headline": "test: avoid removed docker backend markers",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T20:09:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d86a7dfd242defbd0c6179d26ef1888b9e0bab5f",
          "body": null,
          "is_bot": false,
          "headline": "docs: finalize environment workflow coverage",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T20:04:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f05e77792ff04fcfec1848d8db169746bf1f7761",
          "body": null,
          "is_bot": false,
          "headline": "feat: add interactive environment TUI",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T19:49:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "81fc08a63f597704b1312d9965c93ccee7706cf0",
          "body": null,
          "is_bot": false,
          "headline": "feat: add environment runtime execution",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T19:34:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "da30f7e1080315e2ffce0c3b0ab04cdfcc3edd0e",
          "body": null,
          "is_bot": false,
          "headline": "feat: render environment Starlark plans",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T19:07:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "39f518d3de276a7810ff1ccd76e16d262c62c42c",
          "body": null,
          "is_bot": false,
          "headline": "feat: add environment blueprint creation",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T18:45:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8ab578daef557223ff0fcf08436fb9dd87317fd1",
          "body": null,
          "is_bot": false,
          "headline": "feat: add environment config validation core",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T18:06:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76aa2e1271cf61084a819e81f5b2a527d983a3f6",
          "body": null,
          "is_bot": false,
          "headline": "feat: replace dev command with env surface",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T17:44:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1ab9f78a177aa2b9d20f6edf32ca4c588f576656",
          "body": null,
          "is_bot": false,
          "headline": "feat: remove Docker build backend placeholders",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-06-01T17:30:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b3e217b21d1a78075fbf1e70bb42cef7b4c7f030",
          "body": null,
          "is_bot": false,
          "headline": "fix(dev): restore rebuilds on file change in dev mode",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-03-01T13:01:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "30751c6799531878d9a988dd6658536352da5422",
          "body": null,
          "is_bot": false,
          "headline": "feat(logger): add configurable datetime format and raw dev target output",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-02-28T13:44:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a7cb5da5ec448dd1d109f93c11a9ef6d34f9793e",
          "body": null,
          "is_bot": false,
          "headline": "fix(dev): dedupe bundle rebuilds in dev mode",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-02-28T13:44:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2ff5c9fe64e168fff3b993af1dedbae8de7a3e48",
          "body": null,
          "is_bot": false,
          "headline": "feat: add .env file glob support",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-17T22:25:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "89421606d77fa70664992c931e748d1ee83cd018",
          "body": null,
          "is_bot": false,
          "headline": "feat: support multiple .env files",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-17T21:15:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e81f1baa00cba9651c931d3049d9083c3765c352",
          "body": null,
          "is_bot": false,
          "headline": "fix: support usage without git",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-14T21:07:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "769fe0ff2362bd5a0de75c0d25f34d815f8baa83",
          "body": null,
          "is_bot": false,
          "headline": "chore: update",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-14T19:58:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b64d67df3ef2a87881273b876dbebb0f920bb28",
          "body": null,
          "is_bot": false,
          "headline": "chore: update",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-14T19:22:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b7de8427e2c9537a5b819738f51e93b8585b407",
          "body": null,
          "is_bot": false,
          "headline": "chore: update",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-14T18:49:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1583e5cd8e962ddd7bbc05d667aaf221820c07ae",
          "body": null,
          "is_bot": false,
          "headline": "fix: commit .env for integration tests",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-14T18:31:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bdbbfaec4a21a688822daaf94a829cdc2d723eda",
          "body": null,
          "is_bot": false,
          "headline": "chore: add installer",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-14T17:51:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9f37cc578f5284998ec62953281fcf0585f1765",
          "body": null,
          "is_bot": false,
          "headline": "chore: init",
          "author_name": "Vince Cimino",
          "author_login": "vcnkl",
          "committed_at": "2026-01-14T17:26:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 17,
      "commits_last_year": 89,
      "latest_release_at": "2026-07-19T21:48:45Z",
      "latest_release_tag": "v0.9.0",
      "releases_from_tags": false,
      "days_since_last_push": 8,
      "active_weeks_last_year": 9,
      "days_since_latest_release": 8,
      "mean_days_between_releases": 4.3
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 42,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/vcnkl/rpm",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/vcnkl/rpm",
          "is_deprecated": false,
          "latest_version": "v0.9.0",
          "repository_url": "https://github.com/vcnkl/rpm",
          "versions_count": 17,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-19T21:38:30Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 8
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 3,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": null,
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 50366,
      "source_files_sampled": 111,
      "oversized_source_files": 0,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go"
      ],
      "dependencies": [
        {
          "name": "github.com/charmbracelet/bubbletea",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.4"
        },
        {
          "name": "github.com/charmbracelet/harmonica",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.0"
        },
        {
          "name": "github.com/charmbracelet/lipgloss",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.0"
        },
        {
          "name": "github.com/containerd/errdefs",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/distribution/reference",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.0"
        },
        {
          "name": "github.com/docker/go-sdk/client",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.0-alpha013"
        },
        {
          "name": "github.com/docker/go-sdk/container",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.0-alpha015"
        },
        {
          "name": "github.com/docker/go-sdk/network",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.0-alpha013"
        },
        {
          "name": "github.com/docker/go-sdk/volume",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.0-alpha005"
        },
        {
          "name": "github.com/fsnotify/fsnotify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.9.0"
        },
        {
          "name": "github.com/knadh/koanf/parsers/yaml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.0"
        },
        {
          "name": "github.com/knadh/koanf/providers/file",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.1"
        },
        {
          "name": "github.com/knadh/koanf/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.3.0"
        },
        {
          "name": "github.com/lrstanley/bubblezone",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/mattn/go-isatty",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.20"
        },
        {
          "name": "github.com/moby/moby/api",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.52.0"
        },
        {
          "name": "github.com/moby/moby/client",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.0"
        },
        {
          "name": "github.com/pkg/errors",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.9.1"
        },
        {
          "name": "github.com/rs/zerolog",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.34.0"
        },
        {
          "name": "github.com/shirou/gopsutil/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.25.6"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/testcontainers/testcontainers-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.40.0"
        },
        {
          "name": "github.com/urfave/cli/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.27.1"
        },
        {
          "name": "go.starlark.net",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260324133313-ffb3f39dd27a"
        },
        {
          "name": "golang.org/x/term",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.0"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 0,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "vcnkl",
          "commits": 89,
          "avatar_url": "https://avatars.githubusercontent.com/u/175630292?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "release.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yml"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 0,
            "reason": "project has 0 contributing companies or organizations -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "27 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "627fe610bf83e3fb9d052874c3d0b11be118d264",
        "ran_at": "2026-07-28T06:42:02Z",
        "aggregate_score": 3.2,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-19T21:48:48Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": null,
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/vcnkl/rpm",
    "host": "github.com",
    "name": "rpm",
    "owner": "vcnkl"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "at_risk",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 49,
      "inputs": {
        "security": 32,
        "vitality": 74,
        "community": 26,
        "governance": 29,
        "engineering": 78
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 74,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 63,
            "inputs": {
              "commits_last_year": 89,
              "human_commit_share": 1,
              "days_since_last_push": 8,
              "active_weeks_last_year": 9
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 8 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "9/52 weeks with commits",
                "points": 6.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 9
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "89 commits in the last year",
                "points": 17.6,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 89
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 17,
              "latest_release_tag": "v0.9.0",
              "releases_from_tags": false,
              "days_since_latest_release": 8,
              "mean_days_between_releases": 4.3
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "17 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 17
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 8 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~4.3 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 4.3
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 8,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 8 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "critical",
        "name": "Community & Adoption",
        "value": 26,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 5,
            "inputs": {
              "forks": 0,
              "stars": 3,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "3 stars",
                "points": 4.9,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "critical",
        "name": "Sustainability & Governance",
        "value": 29,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 10,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "critical",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution, PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution",
                    "pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 1,
            "inputs": {
              "merged_prs": 0,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "no decided pull requests or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_decided_prs_or_data",
                    "params": {}
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "critical",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 22,
            "inputs": {
              "followers": 0,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "vcnkl",
              "public_repos": 2,
              "account_age_days": 742
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "0 followers of vcnkl",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 0,
                      "login": "vcnkl"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "2 public repos, account ~2 yr old",
                "points": 7.5,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 2
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 2
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/vcnkl/rpm"
              ],
              "ecosystems": "go",
              "any_deprecated": false,
              "min_days_since_publish": 8
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on go",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "go"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 8 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 8
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "17 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 17
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 78,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 80,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "2 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yml",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "good",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "topics": [
                "ci-cd",
                "monorepo"
              ],
              "has_wiki": false,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "2 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 32,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 32,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 3.2
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "27 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 63,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "at_risk",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "89 of 89 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 89,
                      "sampled": 89
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 67,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "go.mod (toolchain convention, no task runner)",
                "points": 12.6,
                "status": "partial",
                "details": [
                  {
                    "code": "toolchain_convention",
                    "params": {
                      "files": "go.mod"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yml",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 89",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 89
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 50366,
              "source_files_sampled": 111,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/111 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 111,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-28T06:42:07.390758Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/v/vcnkl/rpm.svg",
  "full_name": "vcnkl/rpm",
  "license_state": "standard",
  "license_spdx": "MIT"
}

Bewertungen sind Signale, keine Garantien. Sie spiegeln öffentlich sichtbare Praxis auf GitHub wider — kein Code-Audit und keine Sicherheitsgarantie.

Fehlende Daten werden ausgeschlossen und die Gewichte neu normiert, nie als null bewertet. Die Methodik ist versioniert und offen: Metriken v1.13.0, Schema v0.27.0 — vollständige Methodik · Metriken-Wiki.

Wie ein einzelnes Ergebnis im Gesamtregister steht: aggregierte StatistikenGo.