Öffentliches Register
Software-GesundheitsberichtSchema 0.27.0 · Metriken 1.13.0 · 2026-07-29 14:35 UTC

ynny-github / flow

Go · ShellKeine Lizenz erkannt★ 0 Sterne⑂ 0 Forksseit Juli 2026Auf GitHub ansehen ↗

ynny-github/flow erreicht einen Gesundheitsindex von 34 von 100 und liegt damit im Bereich Gefährdet. Am stärksten schneidet es bei AI Readiness (76/100) ab, am schwächsten bei Community & Adoption (4/100). Zuletzt vor 3 Tagen aktualisiert. Ein einzelner Mitwirkender trägt den Großteil der jüngsten Arbeit.

34
gesamt / 100
Gefährdet

Software-Gesundheitsindex

Metriken werden auf einer Skala von 1–100 in gewichtete Kategorien gruppiert. Der Gesamtwert beginnt als ihr Mittel; sobald öffentliche Evidenz die Richtlinie für Hochrisikojurisdiktionen auslöst, wird die Bewertung angepasst und erhält die Obergrenze 49 (Gefährdet). AI Readiness liegt außerhalb.

34
Exzellent85-100Vorbildlich; erfüllt im Wesentlichen alle geprüften Kriterien
Gut70-84Gesund; geringfügige Lücken
Mittel50-69Akzeptabel mit deutlichen Lücken; Überprüfung empfohlen
Gefährdet30-49Erhebliche Schwächen; eine Übernahme erfordert Vorsicht
Kritisch1-29Schwerwiegende Probleme (aufgegeben, nur ein Maintainer, keine Hygiene)
VitalitätCommunity &VerbreitungNachhaltigkeit &GovernanceEngineering-QualitätSicherheitAI Readiness

Bewertungsprofil

Jede Achse ist eine Kategorie. Die Form zählt mehr als der Durchschnitt — ein gesundes Projekt füllt die gesamte Fläche, während ein Profil aus Spitzen und Kratern bedeutet, dass Stärke in einer Dimension Risiken in einer anderen verdeckt.

Eigentümerschaft

Yuya NagaiPersönliches Konto
3 Follower23 öffentliche Reposseit Aug. 2018

Dieses Repository gehört einem persönlichen Konto. Ein Projekt mit nur einem Eigentümer trägt ein höheres Kontinuitätsrisiko als ein organisationsgetragenes.

Paket-Ökosysteme

RegistryPaketVersionDownloads / MonatVersionenZuletzt veröffentlicht
Gogithub.com/ynny-github/flowv0.6.0-7vor 3 Tagen

Metriken nach Kategorie

Vitalität

Lebt das Projekt — wird Code geschrieben und werden Releases ausgeliefert?

67Mittel · 22 % des Gesamtindex
Wie die Bewertung erfolgt
36/36Push-Aktualität — letzter Push vor 3 Tagen
1.4/36Commit-Rhythmus — 2/52 Wochen mit Commits
15.6/18Commit-Volumen — 53 Commits im letzten Jahr
0/10OpenSSF Scorecard: Maintained — project was created within the last 90 days. Please review its contents carefully
Verwendete Eingangsdaten
commits_last_year53
human_commit_share1
days_since_last_push3
active_weeks_last_year2
Wie die Bewertung erfolgt
16.2/27Liefert Releases aus — 7 Versions-Tags (keine GitHub-Releases)
36/36Release-Aktualität — letztes Release vor 3 Tagen
27/27Release-Rhythmus — ein Release etwa alle 1 Tage
0/10OpenSSF Scorecard: Signed-Releases — keine Daten
Verwendete Eingangsdaten
releases_count7
latest_release_tagv0.6.0
releases_from_tagsja
days_since_latest_release3
mean_days_between_releases1
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): OpenSSF Scorecard: Signed-Releases. Die verbleibenden Gewichte wurden renormalisiert.

Community & Verbreitung

Hat das Projekt Nutzer, Downloads, Aufmerksamkeit und ein einladendes Umfeld für Beitragende?

4Kritisch · 18 % des Gesamtindex
Wie die Bewertung erfolgt
0/60Stars — 0 Stars
0/25Forks — 0 Forks
0/15Watcher — 0 Watcher
Verwendete Eingangsdaten
forks0
stars0
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
Wie die Bewertung erfolgt
0/22.5README
0/22.5Lizenz — keine Lizenzdatei erkannt
0/18CONTRIBUTING-Leitfaden
0/13.5Verhaltenskodex
0/7.2Issue-Vorlage
6.3/6.3PR-Vorlage
Verwendete Eingangsdaten
has_readmenein
has_licensenein
has_contributingnein
has_issue_templatenein
has_code_of_conductnein
has_pull_request_templateja

Nachhaltigkeit & Governance

Überdauert das Projekt die Menschen, die es tragen — Bus-Faktor, Reaktionsfähigkeit, Trägerschaft und Paketpflege?

36Gefährdet · 24 % des Gesamtindex
Wie die Bewertung erfolgt
9/54Bus-Faktor — 1 Beitragende decken die Hälfte aller Commits ab
0/22.5Commit-Verteilung — wichtigste beitragende Person verfasste 100 % der Commits
1.4/13.5Breite der Beitragenden — 1 Beitragende
3/10OpenSSF Scorecard: Contributors — project has 1 contributing companies or organizations -- score normalized to 3
Verwendete Eingangsdaten
bus_factor1
contributors_sampled1
top_contributor_share1
Wie die Bewertung erfolgt
0/46.8Issue-Lösungsquote — keine Issues oder keine Daten
0/38.3PR-Annahme — keine entschiedenen Pull Requests oder keine Daten
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Verwendete Eingangsdaten
merged_prs0
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs0
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Issue-Lösungsquote, PR-Annahme. Die verbleibenden Gewichte wurden renormalisiert.
Wie die Bewertung erfolgt
10/30Organisatorische Trägerschaft — persönliches (Nutzer-)Konto
0/20Verifizierte Domain — für Nutzerkonten nicht anwendbar
4.3/25Reichweite des Inhabers — 3 Follower von ynny-github
22.1/25Kontohistorie — 23 öffentliche Repos, Kontoalter ca. 7 Jahre
Verwendete Eingangsdaten
followers3
owner_typeUser
is_verified
owner_loginynny-github
public_repos23
account_age_days2.894
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): Verifizierte Domain. Die verbleibenden Gewichte wurden renormalisiert.

Paketpflege

100Exzellent
Wie die Bewertung erfolgt
25/25Veröffentlicht & auflösbar — 1 Paket(e) auf go
35/35Veröffentlichungsaktualität — letzte Veröffentlichung vor 3 Tagen
20/20Versionshistorie — 7 veröffentlichte Versionen
20/20Nicht veraltet — aktiv, nicht veraltet oder zurückgezogen
Verwendete Eingangsdaten
packagesgithub.com/ynny-github/flow
ecosystemsgo
any_deprecatednein
min_days_since_publish3

Engineering-Qualität

Sind grundlegende Engineering- und Dokumentationspraktiken vorhanden?

32Gefährdet · 20 % des Gesamtindex
Wie die Bewertung erfolgt
0/24CI-Workflows
24/24Tests vorhanden
0/16Linter-Konfiguration
0/9.6Pre-Commit-Hooks
0/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — keine Daten
Verwendete Eingangsdaten
has_cinein
has_testsja
has_editorconfignein
has_linter_confignein
has_precommit_confignein
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): OpenSSF Scorecard: CI-Tests. Die verbleibenden Gewichte wurden renormalisiert.

Dokumentation

35Gefährdet
Wie die Bewertung erfolgt
0/30README
25/25Dokumentationsverzeichnis
0/15Dokumentations-/Homepage-Site
0/10Repository-Beschreibung
0/10Topics
10/10Wiki
Verwendete Eingangsdaten
topics
has_wikija
homepage
has_readmenein
has_docs_dirja
has_descriptionnein

Sicherheit

Sind die sichtbaren Sicherheits- und Lieferkettenpraktiken belastbar, ohne ungeklärte Exposition gegenüber Hochrisikojurisdiktionen?

22Kritisch · 16 % des Gesamtindex

Sicherheitslage

22Kritisch
Wie die Bewertung erfolgt
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — keine Daten
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
0.8/2.5Contributors — project has 1 contributing companies or organizations -- score normalized to 3
0/10Dangerous-Workflow — keine Daten
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
0/2.5Lizenz — license file not detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
0/5Packaging — keine Daten
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — keine Daten
0/7.5Token-Permissions — keine Daten
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Verwendete Eingangsdaten
sourceopenssf_scorecard
checks_evaluated13
scorecard_versionv5.5.0
checks_inconclusive5
scorecard_aggregate2,2
Von der Bewertung ausgeschlossen (keine Daten oder nicht anwendbar): ci_tests, dangerous_workflow, packaging, signed_releases, token_permissions. Die verbleibenden Gewichte wurden renormalisiert.

AI Readiness

Wie gut ist das Repository dafür ausgestattet, mit KI-Coding-Agenten entwickelt und gepflegt zu werden? Ein unabhängiges, experimentelles Badge — Gewicht 0,0, es wird eigenständig ausgewiesen und verändert den Gesamt-Gesundheitswert nicht.

76Gut · 0 % des Gesamtindex
Wie die Bewertung erfolgt
45/45Agentenanweisungen — .claude/CLAUDE.md
0/15Maschinenlesbare Doku (llms.txt)
40/40Lesbare Commit-Historie — 53 von 53 menschlichen Commits benennen ihre Absicht (strukturierter Betreff oder erläuternder Text)
Verwendete Eingangsdaten
has_llms_txtnein
legible_history_share1
agent_instruction_files.claude/CLAUDE.md
agent_instruction_max_bytes217
Wie die Bewertung erfolgt
18/18Bootstrap mit einem Befehl — .mise.toml
22/22Automatisierte Tests
0/11Lint-/Format-Konfiguration
11/11Statische Typprüfung — Go (statisch typisiert)
10/10Reproduzierbare Umgebung — Dockerfile, lockfile
0/10Belegte Agentenpraxis — keine von Agenten verfassten Commits unter den letzten 53
0/8Automatisierte Wartung — keine automatisierten Abhängigkeits-Updates beobachtet
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Verwendete Eingangsdaten
has_nixnein
has_testsja
lockfilesgo.sum
has_dockerfileja
typed_languageja
bootstrap_files.mise.toml
has_devcontainernein
has_linter_confignein
typecheck_configs
agent_commit_share0
toolchain_manifestsgo.mod
dependency_bot_commit_share0
Wie die Bewertung erfolgt
45/45Typprüfbarer Code — Go (statisch typisiert)
55/55Handhabbare Dateigrößen — 0/13 Quelldateien über 60 KB
Verwendete Eingangsdaten
primary_languageGo
largest_source_bytes7.157
source_files_sampled13
oversized_source_files0

Eckdaten

0GitHub-Sterne
1Mitwirkende
53Commits, letzte 12 Monate
3Tage seit letztem Push
7Releases
1Bus-Faktor
0offene Issues
GoPaket-Ökosysteme

Warnungen zur Datenerhebung

  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Weitere Details

OpenSSF Scorecard 2.2 / 10
2.2Gesamtwert

Unabhängige, werkzeugneutrale Sicherheitsbewertung durch das quelloffene OpenSSF Scorecard. Jede Prüfung honoriert eine Sicherheits-Praxis, nicht das Werkzeug eines bestimmten Anbieters. Prüfungen, die Scorecard nicht ermitteln konnte, sind mit k. A. markiert und vom Sicherheitswert ausgeschlossen (nie als null gezählt).Scorecard v5.5.0 · 2026-07-29 14:35 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
k. A.CI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
3Contributorsproject has 1 contributing companies or organizations -- score normalized to 3
k. A.Dangerous-Workflowno workflows found
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
0Licenselicense file not detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
k. A.Packagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
k. A.Signed-Releasesno releases found
k. A.Token-PermissionsNo tokens found
10Vulnerabilities0 existing vulnerabilities detected
Direkte Abhängigkeiten 2
RegistryPaketVersionsvorgabeManifest
Gogopkg.in/yaml.v3v3.0.1go.mod
Gogithub.com/BurntSushi/tomlv1.6.0go.mod
Alle Abhängigkeiten nicht erhoben

Der aufgelöste Abhängigkeitssatz konnte für diesen Bericht nicht erhoben werden: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

JSON-Rohbericht maschinenlesbar
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 181,
      "has_wiki": true,
      "homepage": null,
      "languages": {
        "Go": 31137,
        "Shell": 5125,
        "Dockerfile": 310
      },
      "pushed_at": "2026-07-26T09:09:00Z",
      "created_at": "2026-07-20T14:21:32Z",
      "owner_type": "User",
      "updated_at": "2026-07-26T09:09:03Z",
      "description": null,
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "main",
      "license_spdx_raw": null,
      "primary_language": "Go",
      "significant_languages": [
        "Go",
        "Shell"
      ]
    },
    "owner": {
      "blog": null,
      "name": "Yuya Nagai",
      "type": "User",
      "login": "ynny-github",
      "company": null,
      "location": "Japan",
      "followers": 3,
      "avatar_url": "https://avatars.githubusercontent.com/u/42698658?v=4",
      "created_at": "2018-08-25T15:07:23Z",
      "is_verified": null,
      "public_repos": 23,
      "account_age_days": 2894
    },
    "license": {
      "state": "absent",
      "spdx_id": null,
      "raw_spdx": null,
      "file_present": false,
      "scorecard_found": false,
      "profile_has_license": false
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.6.0",
          "kind": "minor",
          "published_at": "2026-07-26T08:52:56Z"
        },
        {
          "tag": "v0.5.0",
          "kind": "minor",
          "published_at": "2026-07-25T09:19:41Z"
        },
        {
          "tag": "v0.4.0",
          "kind": "minor",
          "published_at": "2026-07-25T03:34:29Z"
        },
        {
          "tag": "v0.3.0",
          "kind": "minor",
          "published_at": "2026-07-21T17:02:29Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2026-07-21T16:12:27Z"
        },
        {
          "tag": "v0.1.1",
          "kind": "patch",
          "published_at": "2026-07-20T16:09:46Z"
        },
        {
          "tag": "v0.1.0",
          "kind": "minor",
          "published_at": "2026-07-20T12:11:36Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "b7a132e454cd9055533090e5f8ddabedafeb4a1e",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): point create-issues hand-off to create-github-issues",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T08:52:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e87d0ab507e20fb1e5da56151fbb6bd3eaf01081",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): add create-github-issues command",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T08:47:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f8b50e9614de1ac666f688716f56cdfcd19d36a4",
          "body": null,
          "is_bot": false,
          "headline": "feat(config): add [github] repo setting",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T08:39:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2c64363fc448aea60ef2953ce32913f491cdd5ca",
          "body": null,
          "is_bot": false,
          "headline": "docs(plan): add create-github-issues command implementation plan",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T08:37:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c39492c78d02b3d2aa10aa7bf8a640f44397377a",
          "body": null,
          "is_bot": false,
          "headline": "docs(specs): add create-github-issues command design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T08:08:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "01f663967a5629cf6f09e273f0b7ab2d766e32c1",
          "body": "… create-issues",
          "is_bot": false,
          "headline": "feat(knowledge): point create-design and create-scaffold hand-offs to…",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T05:21:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "81b065f39b11a2d6ee0e304012d938e7d10439e6",
          "body": "…ting",
          "is_bot": false,
          "headline": "feat(knowledge): add create-issues command for autonomous issue split…",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T05:16:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4054ef45593e413705f541f0ad0c78d089909b34",
          "body": null,
          "is_bot": false,
          "headline": "docs(plan): add create-issues command implementation plan",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T05:07:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a75a4489c08d9fb63a0b65b64c4c1f821a47af25",
          "body": null,
          "is_bot": false,
          "headline": "docs(specs): add create-issues command design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-26T05:04:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dd74e617079146d06a37b5f2f609edebc10177d4",
          "body": "…n rule",
          "is_bot": false,
          "headline": "feat(knowledge): let explicit user model choice override orchestratio…",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T09:42:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3ee71ddd229ca99e703eafa62046f750848bc3a3",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): add create-scaffold command for design to red baseline",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T09:19:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5188cbee3f38a0e3ebb0c30edd8c9bacde65521b",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): enrich create-design for materializable scaffolding",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T09:14:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15b3cae4e71dfb2ec3b7d9bf55bcff1c9e3e1bdc",
          "body": null,
          "is_bot": false,
          "headline": "docs(plan): add create-scaffold command implementation plan",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T09:11:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2e9e753cb629f67426e948c149e1a5276273d47e",
          "body": null,
          "is_bot": false,
          "headline": "docs(specs): add create-scaffold command design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T09:07:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "466bb15e6b4b965605cd000548f3720666a04415",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): point create-spec hand-off to create-design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T07:51:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1937ae9c73a72c462f31054274d574950d0ea251",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): add create-design command for SRS to design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T07:51:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fd8412fcbc3b1f93d2e65b292d210531df4a9156",
          "body": null,
          "is_bot": false,
          "headline": "docs(specs): add create-design command design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T07:51:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b7fa65df190bf08a09c72b8cad86a569f24b661",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): use ID/FR-NFR/EARS table in create-spec, English EARS",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T05:14:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15b73b1b3d083630283d181d9895b9d8b53ccf19",
          "body": null,
          "is_bot": false,
          "headline": "docs(specs): refine create-spec to ID/FR-NFR/EARS table, English EARS",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T05:14:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5aa7dddf842080b82b7c52a6076ad8402d25f7d0",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): add create-spec command for PRD to SRS",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T03:34:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "26c94b4894c65b82ce85dcbd469144533116737c",
          "body": null,
          "is_bot": false,
          "headline": "docs(plan): add create-spec command implementation plan",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-25T03:28:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "50e8598d90a2d50acc96fdf8b1b8d0629a4180a8",
          "body": null,
          "is_bot": false,
          "headline": "docs(specs): add create-spec command design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-22T16:09:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a5b440e7e7a4b53819a9cbce175a61cad4bfe9e1",
          "body": null,
          "is_bot": false,
          "headline": "feat(knowledge): add task orchestration rule",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-21T17:02:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d6ae7f3f5d36d90614ae8a45a11026dcb226786d",
          "body": null,
          "is_bot": false,
          "headline": "docs(plan): add task orchestration rule implementation plan",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-21T16:56:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2980af6a964d7c63086577f1bcfb6ab248e8a86f",
          "body": null,
          "is_bot": false,
          "headline": "docs(specs): add task orchestration rule design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-21T16:52:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "419b7f1f8718a579551cb32888b577e823cca73c",
          "body": "Rename the command knowledge unit `requirements` to `create-requirements`\nfor consistency with the existing `create-pr` command. The asset body is\nunchanged, so the two render goldens are renamed as-is. Updates the embed\nallow-list and the design/plan references to the new unit id.",
          "is_bot": false,
          "headline": "refactor(knowledge): rename requirements command to create-requirements",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-21T16:12:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fff1d25baa1fb0259fd83ec16b5e08e8da0f4ec5",
          "body": "Remove the comma before \"or\" in the requirements command body so the\nuser-facing text reads \"design specifications or task breakdowns\".\nRegenerate the affected render goldens.",
          "is_bot": false,
          "headline": "fix(knowledge): drop errant comma in requirements body",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-21T16:00:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "de711153d7a09c08b587707d19b3e02e4dd776e8",
          "body": "Add a `requirements` command knowledge unit that walks an agent through\nconverting user requests into a product-altitude PRD via a two-lens\n(Analyst then PM) dialogue, a Clarify quality gate, and a completeness\nchecklist. Output is a single disposable flow/artifacts/prd.md (Status:\nDraft); design and tasks are handed off downstream.\n\nStub sync and rendering are asset-driven, so no Go changes are needed;\nembed allow-list and render goldens are updated to cover the new unit.",
          "is_bot": false,
          "headline": "feat(knowledge): add requirements command for PRD building",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-21T15:53:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "46b0bc07c6b3d856120fa9fb6034bf50ddfc3579",
          "body": "Bite-sized, single-task plan to add the `requirements` command knowledge\nunit (asset-only; no Go changes). Pairs with the design spec.",
          "is_bot": false,
          "headline": "docs(plan): add requirements command implementation plan",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-21T15:49:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0ce59bd157b6efc1c0edc13a9d905317efec2ac7",
          "body": "Design spec for a new `requirements` command knowledge unit that converts\na user's requests into a product-altitude PRD through an interactive,\ntwo-lens (Analyst then PM) dialogue.\n\nWhat:\n- Deliverable is a single disposable PRD at flow/artifacts/prd.md\n  (Status: Draft, committed), frozen later by \n[…]\nuirements Elicitation skill, kept at PRD altitude.\n\nWhy:\n- Establish the agreed design before implementation, with the PRD boundary\n  (requirements only; design/tasks downstream) fixed to avoid drift.",
          "is_bot": false,
          "headline": "docs(specs): add requirements command design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-21T15:44:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cf8112362461459a70e94917cef148f230b20861",
          "body": null,
          "is_bot": false,
          "headline": "chore: env update",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T16:09:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a9fd820654526dc96ee68dad3f9e5c1ffa4fe262",
          "body": null,
          "is_bot": false,
          "headline": "fix(release): avoid SIGPIPE in current_version tag lookup",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T15:34:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a58371f5300509544969cab0cb7626ca004871d6",
          "body": null,
          "is_bot": false,
          "headline": "chore(mise): track flow @latest in self-pin",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T15:30:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8929f8760f51ac5dec7d62e66b2b563883119419",
          "body": null,
          "is_bot": false,
          "headline": "feat(release): add human-only release taskgate task",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T15:25:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1896a97138994d6554738740bc2b4b4d30e87991",
          "body": null,
          "is_bot": false,
          "headline": "feat(cli): add --version/-v flag from build info",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T15:21:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff18dbdc44e2708160b6bcacf7c40211fabaf158",
          "body": null,
          "is_bot": false,
          "headline": "docs(plan): add version flag and release task plan",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T15:17:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ee857e776832c8568ab6128b92e4808cc1c76995",
          "body": "What: Design for a flow --version/-v flag sourced from ReadBuildInfo, a\nhuman-only release taskgate task that bumps and pushes the semver tag, and\nswitching the .mise.toml self-pin to latest.\nWhy: Give the CLI a version readout and make tagging a guarded, one-command\nhuman action while keeping @latest installs automatic.",
          "is_bot": false,
          "headline": "docs(spec): add version flag and release task design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T15:05:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2e12f4a6af7137d5b2cdc97c3ec1201cc024b6c1",
          "body": "What: Replaces the create-pr knowledge's ad-hoc default with a faithful\nport of this repo's create-pr skill (.claude/skills/create-pr): the\npre-collection and self-assessment steps, the [AI]/[Human] sectioned AI\nPR template (Summary/Closes, Changes with What Changed/Impact Scope/\nImplementation Deci\n[…]\ntitle. Regenerates the create-pr\ngolden files and updates the spec.\n\nWhy: The default must be the template defined in the create-pr skill,\nnot an invented simplification or the human .github template.",
          "is_bot": false,
          "headline": "fix(create-pr): port the create-pr skill's template and workflow",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T12:11:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cfff0597e49327a485eb0a08f69a1fd6dbbd6947",
          "body": "What: Removes the special-cased .flow/pr_template.md resolution from the\ncreate-pr knowledge. The command now carries a single inline default PR\nbody template (Summary / Closes / Changes / Test Plan) and no longer\nreferences .github/pull_request_template.md. Regenerates the create-pr\ngolden files an\n[…]\nate is a premature, one-off\noverride channel. Per-project customization belongs to the planned\ngeneral knowledge-override mechanism, keeping the model uniform (every\nunit is overridable the same way).",
          "is_bot": false,
          "headline": "refactor(create-pr): drop PR-specific template path for inline default",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T12:02:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1426223110793ff875b3db5a2fa39cecec0aa4d7",
          "body": "What: The create-pr knowledge now reads a flow-owned template at\n.flow/pr_template.md (if the project provides one) instead of\n.github/pull_request_template.md, and falls back to a default template\ndefined inline in the knowledge. Regenerates the create-pr golden\nfiles and documents the resolution in the spec.\n\nWhy: .github/pull_request_template.md is for human authors; agent PRs\nshould follow a separate, flow-owned template, with a sensible built-in\ndefault when none is configured.",
          "is_bot": false,
          "headline": "feat(create-pr): use flow-owned PR template path with inline default",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T11:55:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8af160fffe41a62425271f7bf347210f26a045ef",
          "body": "What: Moves Run and all subcommand logic from main.go into a new\ninternal/cli package (run → cli.Run), leaving main.go as a thin shell\nthat only calls os.Exit(cli.Run(...)). Moves the CLI tests to\ninternal/cli/cli_test.go. Updates the spec's repository layout.\n\nWhy: main.go now has no branching logic, so it needs no test; the\ntestable command behavior lives in an importable package.",
          "is_bot": false,
          "headline": "refactor(cli): extract dispatch into internal/cli, thin main",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T10:58:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "99e5357ea5c5e3e2421eedba39865cae15eaa914",
          "body": "What: Updates the architecture diagram to show main.go at the module\nroot (was cmd/flow/) and repairs the CLI Commands table where the\nflow list row had been split out of the table by an inline note.\n\nWhy: Keep the design doc consistent after moving the main package to\nthe module root.",
          "is_bot": false,
          "headline": "docs(spec): align design doc with root main layout",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T10:28:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "92d7a54436ea7d1527baf1f4d9055655feefa7ea",
          "body": "What: Relocates main.go and main_test.go from cmd/flow/ to the module\nroot so the binary installs from the bare module path\n(`go install github.com/ynny-github/flow@latest`, i.e. mise\n`go:github.com/ynny-github/flow`). Updates the spec's repository layout\nto match. Binary name is unchanged (flow).\n\nWhy: Enables installing via the bare module path requested for mise,\nwhich requires package main at the module root. Single-binary CLI, so\nfolding cmd/ away is clean.",
          "is_bot": false,
          "headline": "refactor(cli): move main package to module root",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T10:27:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "22a87a831587b81d459862c7e6cb4f1441d6f8fd",
          "body": "What: Adds TestRunWritesExactHookShape, which unmarshals the\nsettings.json Run produces and asserts the full nested\nhooks.SessionStart[0] structure (matcher, inner hooks type/command),\nand TestSkillStubContract, which calls syncStubs with a synthetic\nskill Unit and asserts the generated SKILL.md con\n[…]\nmatched \"flow context\" in\nsettings.json and never exercised the skill-stub path (the MVP\nknowledge lineup has no skills), leaving two contracts Claude Code\ndepends on under-tested against regressions.",
          "is_bot": false,
          "headline": "test(apply): assert hook JSON shape and skill stub contract",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T06:16:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f602af7dc85502bcf9fe261c4a8845e1bbfa7798",
          "body": "What: Adds the apply subcommand dispatching to applycmd.Run against\nthe current directory.\nWhy: Completes the MVP command set (apply, context, show, list).",
          "is_bot": false,
          "headline": "feat(cli): wire apply into the flow command",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T06:07:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b8dda52d026eec2f4247d30f14dc6f741618092e",
          "body": "What: Adds applycmd.Run writing the flow.toml template (never\noverwriting), merging the SessionStart hook into settings.json\n(aborting on invalid JSON, never duplicating), and syncing\nmarker-tagged stubs while leaving user files alone.\nWhy: apply is the single install-and-sync entry point for projects.",
          "is_bot": false,
          "headline": "feat(apply): install config, hook, and stubs idempotently",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T06:01:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "acff2a1939065a33793cb9bd0ddda1eba9e635f9",
          "body": "What: Adds the flow entry point with context (always exit 0, renders\nall rules), show (renders one unit, lists alternatives on miss), and\nlist.\nWhy: These are the runtime commands hooks and stubs call into.",
          "is_bot": false,
          "headline": "feat(cli): add flow context, show, and list commands",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T05:52:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d63635d573df90123a988c809798cfc8881b979",
          "body": "What: Adds render.Render executing unit bodies as text/templates with\nmissingkey=error, plus golden tests over all assets and languages.\nWhy: Rendering is how flow varies knowledge by output language.\n\nCo-Authored-By: Yuya Nagai <open@ynny.dev>",
          "is_bot": false,
          "headline": "feat(render): render knowledge templates with config data",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T05:44:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "58a8ba094952998770c77ce9707add38ef1bd2be",
          "body": "What: Adds config.Load reading [settings].output_language with an\nEnglish default for missing files, keys, or broken TOML.\nWhy: Templates vary rendered knowledge by this setting.\n\nCo-Authored-By: Yuya Nagai <open@ynny.dev>",
          "is_bot": false,
          "headline": "feat(config): load output_language from flow.toml",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T05:40:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2bdcbacde85f692d2e1957bf28a90a043c8c8887",
          "body": "What: Adds git-commit and language-policy rules and the create-pr\ncommand as embedded assets, with a validation test over the lineup.\nWhy: These are the MVP knowledge units flow serves to agents.\n\nCo-Authored-By: Yuya Nagai <open@ynny.dev>",
          "is_bot": false,
          "headline": "feat(knowledge): embed initial knowledge assets",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T05:36:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7211c1395b07bd948d0d950f7df979f2d97aa842",
          "body": "What: Adds the knowledge package with frontmatter parsing, Load over\nrules/commands/skills directories, and Get by kind/name.\nWhy: Foundation for embedding and serving bundled knowledge.\n\nCo-Authored-By: Yuya Nagai <open@ynny.dev>",
          "is_bot": false,
          "headline": "feat(knowledge): add knowledge unit model and loader",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T05:31:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eaad21a07d97d28bb5229cdfbe2c7324e6949a00",
          "body": "What: Adds the task-by-task TDD implementation plan for the flow CLI\nMVP (knowledge loading, embedded assets, config, rendering, CLI\ncommands, apply).\nWhy: Executable plan for implementing the approved design spec.\n\nCo-Authored-By: Yuya Nagai <open@ynny.dev>",
          "is_bot": false,
          "headline": "docs(plan): add flow knowledge CLI implementation plan",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T05:12:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e5dc218fce5dea5f13c951872b093adf1cfe4d1f",
          "body": "What: Adds the approved design spec for the flow CLI — a Go tool that\ninjects development knowledge (rules, slash commands, skills) into\nClaude Code via dynamic rendering (SessionStart hook + stubs) instead\nof copying files into projects.\nWhy: Captures the brainstormed and user-approved design before\nimplementation planning starts.\n\nCo-Authored-By: Yuya Nagai <open@ynny.dev>",
          "is_bot": false,
          "headline": "docs(spec): add flow knowledge CLI design",
          "author_name": "Claude Code",
          "author_login": "claude",
          "committed_at": "2026-07-20T05:02:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 7,
      "commits_last_year": 53,
      "latest_release_at": "2026-07-26T08:52:56Z",
      "latest_release_tag": "v0.6.0",
      "releases_from_tags": true,
      "days_since_last_push": 3,
      "active_weeks_last_year": 2,
      "days_since_latest_release": 3,
      "mean_days_between_releases": 1
    },
    "community": {
      "has_readme": false,
      "has_license": false,
      "has_description": false,
      "has_contributing": false,
      "health_percentage": 14,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/ynny-github/flow",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/ynny-github/flow",
          "is_deprecated": false,
          "latest_version": "v0.6.0",
          "repository_url": "https://github.com/ynny-github/flow",
          "versions_count": 7,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-26T08:52:56Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 3
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 0,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_stars": 0,
        "collected_at": null
      },
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [
        ".mise.toml"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 7157,
      "source_files_sampled": 13,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        ".claude/CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 217
    },
    "dependencies": {
      "manifests": [
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go"
      ],
      "dependencies": [
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        },
        {
          "name": "github.com/BurntSushi/toml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 0,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "claude",
          "commits": 53,
          "avatar_url": "https://avatars.githubusercontent.com/u/81847?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": false,
      "has_tests": true,
      "ci_workflows": [],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 3,
            "reason": "project has 1 contributing companies or organizations -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": null,
            "reason": "no workflows found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 0,
            "reason": "license file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": null,
            "reason": "No tokens found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "b7a132e454cd9055533090e5f8ddabedafeb4a1e",
        "ran_at": "2026-07-29T14:35:08Z",
        "aggregate_score": 2.2,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": null,
      "oldest_open_prs": [],
      "last_merged_pr_at": null,
      "ci_last_conclusion": null,
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/ynny-github/flow",
    "host": "github.com",
    "name": "flow",
    "owner": "ynny-github"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "at_risk",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 34,
      "inputs": {
        "security": 22,
        "vitality": 67,
        "community": 4,
        "governance": 36,
        "engineering": 32
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "moderate",
        "name": "Vitality",
        "value": 67,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 53,
            "inputs": {
              "commits_last_year": 53,
              "human_commit_share": 1,
              "days_since_last_push": 3,
              "active_weeks_last_year": 2
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 3 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 3
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "2/52 weeks with commits",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 2
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "53 commits in the last year",
                "points": 15.6,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 53
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 88,
            "inputs": {
              "releases_count": 7,
              "latest_release_tag": "v0.6.0",
              "releases_from_tags": true,
              "days_since_latest_release": 3,
              "mean_days_between_releases": 1
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "7 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 7
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 3 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 3
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~1 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 1
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "critical",
        "name": "Community & Adoption",
        "value": 4,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 0,
              "stars": 0,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "0 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "critical",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 7,
            "inputs": {
              "has_readme": false,
              "has_license": false,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "no license file detected",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "license_absent",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "at_risk",
        "name": "Sustainability & Governance",
        "value": 36,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 13,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "critical",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution, PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution",
                    "pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 1,
            "inputs": {
              "merged_prs": 0,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "no decided pull requests or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_decided_prs_or_data",
                    "params": {}
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 46,
            "inputs": {
              "followers": 3,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "ynny-github",
              "public_repos": 23,
              "account_age_days": 2894
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "3 followers of ynny-github",
                "points": 4.3,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 3,
                      "login": "ynny-github"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "23 public repos, account ~7 yr old",
                "points": 22.1,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 23
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 7
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/ynny-github/flow"
              ],
              "ecosystems": "go",
              "any_deprecated": false,
              "min_days_since_publish": 3
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on go",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "go"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 3 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 3
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "7 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 7
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "at_risk",
        "name": "Engineering Quality",
        "value": 32,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "at_risk",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 30,
            "inputs": {
              "has_ci": false,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "at_risk",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 35,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": null,
              "has_readme": false,
              "has_docs_dir": true,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "critical",
        "name": "Security",
        "value": 22,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "critical",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests, Dangerous-Workflow, Packaging, Signed-Releases, Token-Permissions. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests",
                    "dangerous_workflow",
                    "packaging",
                    "signed_releases",
                    "token_permissions"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 22,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 13,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 5,
              "scorecard_aggregate": 2.2
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no workflows found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "No tokens found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 1
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 76,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [
                ".claude/CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 217
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": ".claude/CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".claude/CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "53 of 53 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 53,
                      "sampled": 53
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 61,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                ".mise.toml"
              ],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": ".mise.toml",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".mise.toml"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 53",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 53
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 7157,
              "source_files_sampled": 13,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/13 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 13,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-29T14:35:13.455331Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/y/ynny-github/flow.svg",
  "full_name": "ynny-github/flow",
  "license_state": "absent",
  "license_spdx": null
}

Bewertungen sind Signale, keine Garantien. Sie spiegeln öffentlich sichtbare Praxis auf GitHub wider — kein Code-Audit und keine Sicherheitsgarantie.

Fehlende Daten werden ausgeschlossen und die Gewichte neu normiert, nie als null bewertet. Die Methodik ist versioniert und offen: Metriken v1.13.0, Schema v0.27.0 — vollständige Methodik · Metriken-Wiki.

Wie ein einzelnes Ergebnis im Gesamtregister steht: aggregierte StatistikenGo.