JSON-Rohbericht maschinenlesbar
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 3789,
"has_wiki": true,
"homepage": null,
"languages": {
"Go": 263611,
"Shell": 1003
},
"pushed_at": "2026-07-25T16:19:38Z",
"created_at": "2026-07-20T04:51:43Z",
"owner_type": "User",
"updated_at": "2026-07-25T10:17:47Z",
"description": "Keyboard-first TUI HTTP client",
"is_archived": false,
"is_disabled": false,
"license_spdx": "MIT",
"default_branch": "main",
"license_spdx_raw": "MIT",
"primary_language": "Go",
"significant_languages": [
"Go"
]
},
"owner": {
"blog": "https://t.me/yusupkhemraev",
"name": "Yusup Khemraev",
"type": "User",
"login": "yusupkhemraev",
"company": "@Paydo-Team",
"location": "Tajikistan, Dushanbe",
"followers": 4,
"avatar_url": "https://avatars.githubusercontent.com/u/82462593?v=4",
"created_at": "2021-04-13T15:39:04Z",
"is_verified": null,
"public_repos": 8,
"account_age_days": 1931
},
"license": {
"state": "standard",
"spdx_id": "MIT",
"raw_spdx": "MIT",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.3.0",
"kind": "minor",
"published_at": "2026-07-22T05:18:37Z"
},
{
"tag": "v0.2.0",
"kind": "minor",
"published_at": "2026-07-20T05:58:29Z"
},
{
"tag": "v0.1.2",
"kind": "patch",
"published_at": "2026-07-20T05:39:52Z"
},
{
"tag": "v0.1.1",
"kind": "patch",
"published_at": "2026-07-20T05:14:03Z"
},
{
"tag": "v0.1.0",
"kind": "minor",
"published_at": "2026-07-20T04:58:41Z"
}
],
"recent_commits": [
{
"oid": "08dd6ec9ed55a2a3f8063ead39b6339ddc4ebfc6",
"body": "Drop comments that only restate a type or function's name and narrate its\nbody; keep the ones that record a fact the code cannot show on its own —\nyaml omitempty dependencies, data races, deterministic output, layout and\nkeystroke contracts, and OpenAPI security semantics.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_01LGRGshSetCB91g41g7hgyW",
"is_bot": false,
"headline": "Trim doc comments down to non-obvious rationale",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-25T10:16:53Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "9a1cbc6b6556036c39661d0a6cab9ddc7cfae111",
"body": null,
"is_bot": false,
"headline": "Add a stats script for release downloads and repo traffic",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-22T05:27:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7ec271ca0567fd991a39b844f2dc6c4093fc339e",
"body": null,
"is_bot": false,
"headline": "Strip comments that restate the code",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-22T05:23:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "707c040ce22f4f217d0f95940e1bc9c8fd653780",
"body": null,
"is_bot": false,
"headline": "Re-render the demo GIF with create, completion, and import flows",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-22T05:12:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a971525c88a8ed19e70d7b98e23b56d918589e9e",
"body": "The \":\" command line now completes as you type: an empty line lists all\ncommands with descriptions, a prefix filters them, and argument\npositions complete from live data — :env offers environment names (and\nnew), :set/:unset the active environment's variables with their current\nvalues, :reimport the collections with recorded sources. tab accepts\nthe highlighted candidate, ctrl+n/p or arrows cycle; candidates render\ninline in the status bar next to the input.",
"is_bot": false,
"headline": "Command line completion",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-22T04:57:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "08f97d6ba435e8f47c4ba6b93a41ed203c5ea2e2",
"body": null,
"is_bot": false,
"headline": "Assert a cancelled add creates no workspace",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-22T04:47:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "68acdeb5d66d68fb5b14cf5a1200800bf7403c26",
"body": "Environments are now manageable from the command line: :env lists them\n(* marks active), :env new creates and switches, :set name value (or\nname=value) writes a variable into the active environment — creating a\ndefault one when none exists — and :unset removes it. Fresh variables\nfeed {{ completion \n[…]\nr source in collections/<name>/.import and\nreplace the collection on re-import, so removed routes disappear;\n:reimport [collection] re-runs one or all recorded sources. curl\nimports keep accumulating.",
"is_bot": false,
"headline": "Environment commands, no-workspace bootstrap, :reimport",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-22T04:37:40Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4801b2f01debbf0cac2ef517a26b45c34692bdaa",
"body": null,
"is_bot": false,
"headline": "Render the VHS demo GIF and embed it in the README",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T06:17:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "911f04a8ae22af6b0293736c5f86e8d679e62e94",
"body": "a in the collections tree opens an inline prompt; enter creates an\nempty GET request in the selected collection or folder, saves it to\ndisk, reveals it in the tree, and opens it in the editor with focus.\nAn empty workspace gets a default \"api\" collection. esc cancels.",
"is_bot": false,
"headline": "Create requests from the tree with a",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T05:49:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3b4d54a671f2519664963cb486efe5113ddeef33",
"body": null,
"is_bot": false,
"headline": "Note the Homebrew tap trust prompt in install docs",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T05:42:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ed55ba898a97532bf047200da20052a8977bd5e0",
"body": null,
"is_bot": false,
"headline": "Make release re-runs idempotent with release.mode replace",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T05:40:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7733d6f05e1bdff830ea7f3133ccd56e141ea198",
"body": null,
"is_bot": false,
"headline": "Add MIT license",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T05:20:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e98b98129e6908a6e02efca587ff67ddee216165",
"body": null,
"is_bot": false,
"headline": "Publish a Homebrew cask to yusupkhemraev/homebrew-tap on release",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T05:08:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3f2921f81010b1d145ecf676682ffd36ad12d3ce",
"body": null,
"is_bot": false,
"headline": "Report module version for go install builds",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T05:04:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fedded01a899a32311f82b0ce5544813a35738e0",
"body": null,
"is_bot": false,
"headline": "Fix CI: newer golangci-lint action, drop deprecated brews config",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T05:01:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d403df1d2a0dbb1dfba6dd4917b12992a649c2aa",
"body": null,
"is_bot": false,
"headline": "Add release workflow: goreleaser on version tags",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T04:51:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5760643d90f833c4b877858aae3a7a23e15cbe57",
"body": "The OpenAPI importer now applies declared security schemes: global and\nper-operation requirements resolve against components.securitySchemes —\nHTTP bearer becomes bearer auth with {{api_token}}, HTTP basic becomes\n{{api_user}}/{{api_password}}, apiKey becomes a header or query param\nwith {{api_key}}\n[…]\nis.\nREADME rewritten around the feature set with the app screenshot, and\ndocs/usage.md added: workspace layout, navigation, editing, variables,\nsending, response tabs, importers, and the command line.",
"is_bot": false,
"headline": "OpenAPI security import, full README and user guide",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T04:49:29Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "be5e2b9180fe5dd0c22d70aba026b3f5d431890c",
"body": "Response panel gains a History tab: every send (including errors) is\nrecorded with its label, time, status, size, and duration; j/k select\nan entry, enter loads that past response back into the viewer. Capped\nat 50 entries per session.\nSlugs now keep letters and digits of any script, so OpenAPI/Fast\n[…]\ng into one, and non-Latin request names\nsave to distinct files instead of overwriting each other.\nThe Body tab of the request editor syntax-highlights JSON in normal\nmode, same as the response viewer.",
"is_bot": false,
"headline": "Request history, unicode slugs, request body highlighting",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T04:39:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "06c7ee0c2997db8b1ec524c45d2a36cd91864eb3",
"body": "Errors now word-wrap to the pane width with continuation lines aligned\nunder the text, instead of being truncated by the frame. Send errors\n(including undefined-variable refusals) also land in the message log,\nso the full text is one m away.",
"is_bot": false,
"headline": "Wrap send errors in the response panel",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T04:15:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5b3cc89df5df9132b9beb591c77fa444338ec52d",
"body": "Enter on a filled param/header row commits it and opens a fresh row, so\nseveral entries can be typed without leaving insert mode; esc drops the\ntrailing empty row.\n< and > resize the focused pane: the collections sidebar keeps its own\nwidth, request/response share a movable split, all clamped to usable\nminimums and recomputed in the single layout function.\nRemoved boilerplate comments, a stale one, and the name etymology from\nthe README intro.",
"is_bot": false,
"headline": "Chained KV entry, pane resizing, cleanup",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-20T04:01:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6865368355b8a9bde929a4404cb64292fe4ade2a",
"body": "The help overlay now lays bindings out in as many aligned columns as\nthe terminal width fits (column-major, starting from two and adding\ncolumns until the height works), instead of a fixed five-column grid\nthat overflowed narrow terminals. When the list still cannot fit —\ne.g. at 60x20 — it scrolls with j/k and shows a position footer.",
"is_bot": false,
"headline": "Adaptive help overlay with scrolling",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-19T10:13:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1822485ced98d8a9b214a65ecd520e6c1b0fec88",
"body": "Tree redesign: panel titles get a separator rule and total request\ncount, collections render bold/colored with per-node counts, folders\nshow counts too, the selected row highlights across the full panel\nwidth, and the sidebar is wider (width/4, 24-42 cols).\nd deletes the selected request/folder/coll\n[…]\n message log overlay with the full wrapped\ntext of status messages — import warnings are logged individually and\nthe status bar only shows their count, so long errors are no longer\nlost to truncation.",
"is_bot": false,
"headline": "Collections redesign, delete, message log overlay",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-19T09:45:15Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4ffd339a0c7f93bb84094b7c4c5de44b2c1276fc",
"body": "UX: z fullscreens the focused pane; folders start collapsed; r renames\nrequests/folders inline (files and directories move on disk); requests\ngain an editable description; f pretty-prints a JSON body; r in the\nresponse toggles raw vs formatted body; y copies the body via OSC52;\nheaders render as an \n[…]\nos + goreleaser\ncheck), golangci-lint config (clean), goreleaser for darwin/linux/\nwindows amd64+arm64 with a brew tap stub, README with the courier\nstory and keybinding table, VHS demo tape in docs/.",
"is_bot": false,
"headline": "Milestone 8: polish — $EDITOR, zoom, rename, raw view, CI, docs",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-19T03:51:05Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "fa4c1799e8d42c0dc68c2bcb1b071a9c4bbac601",
"body": "Headers and Timings tabs now render through the shared viewport, so\nlong header lists scroll with j/k, ctrl+d/u, gg/G like the body.\nw toggles soft wrapping of long lines (body and headers), with search\njumps mapped through wrapped line offsets. The status line gains a\nscroll indicator (visible range, total lines, percent) whenever content\noverflows the pane, plus the wrap state.",
"is_bot": false,
"headline": "Response viewer: scrollable headers/timings, wrap toggle, position",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-19T03:11:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "29367814f6fbdbcc8c09b1f83cfcddaad9572864",
"body": "internal/importer/fastapi: imports a FastAPI project directory without\nparsing Python — locates the interpreter (.venv/bin/python, poetry env\ninfo -e, uv run python), locates the app ([tool.payk] entrypoint in\npyproject.toml, else a heuristic scan of main.py/app.py variants for a\nFastAPI() assignmen\n[…]\n OpenAPI\nimporter. Import failures surface the captured stderr; the generic\n\"FastAPI\" title is replaced by the project directory name.\nRegistered in the TUI: :import <project-dir> and paste detection.",
"is_bot": false,
"headline": "Milestone 7: FastAPI project scanner",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-19T03:05:37Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "adaddef340ed272da4ad0ec40ff9424490b4839e",
"body": "internal/importer/openapi: parses 3.0/3.1 specs via libopenapi from a\nfile path, http(s) URL, or raw pasted content. Collection tree groups\noperations by first tag, falling back to the first path segment;\nrequest names come from summary/operationId. Example request bodies are\ngenerated from schemas \n[…]\nle-or-url>\" runs any registered importer; the paste\nprompt now names what it detected; pastes route into the open command\nline. Golden fixtures: petstore 3.1 YAML and a FastAPI-generated\nopenapi.json.",
"is_bot": false,
"headline": "Milestone 6: OpenAPI importer with :import command",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-19T02:55:47Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "dd4534c03fee079482d8829d98382b32372389b5",
"body": "{{var}} completion in the request editor: typing {{ in url/param/header/\nauth fields suggests active-environment variables, {{env: completes\nfrom process env names; tab accepts, ctrl+n/p cycle.\nCollections tree: / filters requests and folders live (name, method,\nURL, path), matches render flat with \n[…]\nstored tree, esc cancels.\nResponse viewer: / searches the body incrementally with live match\ncount, enter commits the query, n/N cycle matches with the current\nline highlighted and scrolled into view.",
"is_bot": false,
"headline": "Variable completion, tree search, response body search",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-19T02:44:31Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "9eb1928711276309ad4f7d31d064f4b87bc2614b",
"body": "internal/importer: the Importer interface all sources implement, with\noptional warnings reporting; Find picks the handler by input.\ncurl importer: go-shellwords tokenization with DevTools-style line\ncontinuation folding; parses -X/-H/-d/--data-*/--data-urlencode/-F/-u/\n-b/--url/-k/--compressed/-G; u\n[…]\n a curl command offers an inline y/n import\nprompt (suppressed in insert mode), saves into the workspace (creating\n./.payk when none exists), reloads the tree, and surfaces warnings in\nthe status bar.",
"is_bot": false,
"headline": "Milestone 5: importer abstraction, curl importer, paste detection",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-18T19:55:42Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "39486286637b56de946b11d8a89bc2c909439b87",
"body": "internal/core: placeholder resolver for {{var}} and {{env:NAME}} across\nURL/params/headers/body/auth; unresolved names are collected and left\nintact, resolution works on a copy so secrets never touch the tree or\ndisk. Sends resolve against the active environment and refuse with a\nclear error when va\n[…]\nVim-style \":\" command line: :q, :w (save request with placeholders\nunresolved), :send, :env <name> (switch + persist active env).\nStatus bar shows the active environment and transient status messages.",
"is_bot": false,
"headline": "Milestone 4: environments, {{var}} substitution, command line",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-18T19:44:08Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "67f55c60aa7b36a8e363b670fa96397991549b3d",
"body": "internal/httpc: net/http client with httptrace timings (DNS/connect/TLS/\nTTFB/total), context cancellation, body size cap, bearer/basic auth,\nquery param merging, default content types.\nRequest editor: tabbed (URL/Params/Headers/Body/Auth) with vim-style\nnormal/insert modes — textinput for fields, t\n[…]\ned JSON with\nchroma highlighting (capped at 200KiB), scrollable viewport, spinner\nwhile sending, esc cancels in-flight requests.\nInsert mode captures all keys except ctrl+c; space sends from any pane.",
"is_bot": false,
"headline": "Milestone 3: request editing, sending, response viewer with timings",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-18T19:32:52Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "36075cafd5956e1c92c8a55d531cccee0dd87a37",
"body": "internal/core: Request/Collection/Environment types with no TUI imports.\ninternal/storage: workspace discovery (walk up to .payk, fall back to\n~/.config/payk), one YAML file per request mirroring folders as\ndirectories, stable marshal output for clean diffs.\nTUI: collections panel browses the real t\n[…]\ne (expand/collapse, scroll,\ngg/G), opening a request shows a read-only preview in the request panel;\nworkspace loads in a tea.Cmd. Keymap moved to internal/tui/keymap so\npanels share central bindings.",
"is_bot": false,
"headline": "Milestone 2: domain types, YAML storage, real collections tree",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-18T19:12:42Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "71a298ab7972c4df86e0e2a18cbc21fdd71ada71",
"body": "Three-pane layout (collections | request | response) with breakpoints at\n120 and 80 cols, vim-style focus switching (h/l, tab), Catppuccin Mocha\ntheme centralized in internal/tui/theme, central keymap with help\noverlay, and teatest smoke tests for startup, resize, and focus.",
"is_bot": false,
"headline": "Milestone 1: TUI skeleton with responsive layout, theme, keymap, help",
"author_name": "yusupkhemraev",
"author_login": "yusupkhemraev",
"committed_at": "2026-07-18T18:59:09Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 5,
"commits_last_year": 32,
"latest_release_at": "2026-07-22T05:18:37Z",
"latest_release_tag": "v0.3.0",
"releases_from_tags": false,
"days_since_last_push": 2,
"active_weeks_last_year": 2,
"days_since_latest_release": 6,
"mean_days_between_releases": 0.5
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": false,
"health_percentage": 42,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "github.com/yusupkhemraev/payk",
"exists": true,
"license": null,
"keywords": [],
"ecosystem": "go",
"matches_repo": true,
"registry_url": "https://pkg.go.dev/github.com/yusupkhemraev/payk",
"is_deprecated": false,
"latest_version": "v0.3.0",
"repository_url": "https://github.com/yusupkhemraev/payk",
"versions_count": 5,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": null,
"first_published_at": null,
"latest_published_at": "2026-07-22T05:12:47Z",
"latest_version_yanked": null,
"days_since_latest_publish": 6
}
]
},
"popularity": {
"forks": 0,
"stars": 13,
"watchers": 0,
"fork_history": {
"days": [],
"complete": true,
"collected": 0,
"total_forks": 0
},
"star_history": null,
"open_issues_and_prs": 0
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [],
"toolchain_manifests": [
"go.mod"
],
"largest_source_bytes": 29095,
"source_files_sampled": 59,
"oversized_source_files": 0,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"dependencies": {
"manifests": [
"go.mod"
],
"advisories": {
"error": null,
"scope": null,
"source": null,
"findings": [],
"collected": false,
"malicious": [],
"truncated": false,
"by_severity": {},
"advisory_count": 0,
"affected_count": 0,
"assessed_count": 0,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 0,
"direct_affected_count": 0
},
"ecosystems": [
"go"
],
"dependencies": [
{
"name": "charm.land/bubbles/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.1.1"
},
{
"name": "charm.land/bubbletea/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.0.8"
},
{
"name": "charm.land/lipgloss/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.0.5"
},
{
"name": "github.com/alecthomas/chroma/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.27.0"
},
{
"name": "github.com/catppuccin/go",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.3.0"
},
{
"name": "github.com/charmbracelet/x/ansi",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.11.7"
},
{
"name": "github.com/charmbracelet/x/exp/teatest/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.0.0-20260713092006-0d683c34c74b"
},
{
"name": "github.com/mattn/go-shellwords",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.0.14"
},
{
"name": "github.com/pb33f/libopenapi",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.38.7"
},
{
"name": "go.yaml.in/yaml/v4",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v4.0.0-rc.6"
},
{
"name": "gopkg.in/yaml.v3",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v3.0.1"
}
],
"all_dependencies": {
"error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
"source": null,
"packages": [],
"collected": false,
"truncated": false,
"total_count": null,
"direct_count": null,
"indirect_count": null
}
},
"maintainership": {
"issues": {
"open_prs": 0,
"merged_prs": 0,
"open_issues": 0,
"closed_ratio": null,
"closed_issues": 0,
"closed_unmerged_prs": 0
},
"bus_factor": 1,
"bot_contributors": 0,
"top_contributors": [
{
"type": "User",
"login": "yusupkhemraev",
"commits": 32,
"avatar_url": "https://avatars.githubusercontent.com/u/82462593?v=4"
}
],
"contributors_sampled": 1,
"top_contributor_share": 1
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"ci.yml",
"release.yml"
],
"has_docs_dir": true,
"linter_configs": [
".golangci.yml"
],
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"go.sum"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 0,
"reason": "branch protection not enabled on development/release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": null,
"reason": "no pull request found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 0,
"reason": "Found 0/30 approved changesets -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 3,
"reason": "project has 1 contributing companies or organizations -- score normalized to 3",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 0,
"reason": "no update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 0,
"reason": "project was created within the last 90 days. Please review its contents carefully",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": 10,
"reason": "packaging workflow detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 0,
"reason": "dependency not pinned by hash detected -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "no SAST tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": 0,
"reason": "Project has not signed or included provenance with any releases.",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 10,
"reason": "0 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "08dd6ec9ed55a2a3f8063ead39b6339ddc4ebfc6",
"ran_at": "2026-07-28T08:52:27Z",
"aggregate_score": 3.2,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": false
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-25T10:18:43Z",
"oldest_open_prs": [],
"last_merged_pr_at": null,
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": []
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/yusupkhemraev/payk",
"host": "github.com",
"name": "payk",
"owner": "yusupkhemraev"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": "The weighted overall 50 is calibrated to 50 on the published index scale (record calibration 2026-08-02).",
"notes": [
{
"code": "overall_calibration",
"params": {
"raw": 50,
"calibrated": 50,
"calibration": "2026-08-02"
}
}
],
"value": 50,
"inputs": {
"security": 32,
"vitality": 67,
"community": 33,
"governance": 34,
"calibration": "2026-08-02",
"engineering": 78,
"ai_readiness": 64,
"weighted_overall_raw": 50
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "good",
"name": "Vitality",
"value": 67,
"weight": 0.21,
"metrics": [
{
"key": "development_activity",
"band": "moderate",
"name": "Development activity",
"note": null,
"notes": [],
"value": 51,
"inputs": {
"commits_last_year": 32,
"human_commit_share": 1,
"days_since_last_push": 2,
"active_weeks_last_year": 2
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 2 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 2
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "2/52 weeks with commits",
"points": 1.4,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 2
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "32 commits in the last year",
"points": 13.6,
"status": "partial",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 32
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "project was created within the last 90 days. Please review its contents carefully",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": null,
"notes": [],
"value": 90,
"inputs": {
"releases_count": 5,
"latest_release_tag": "v0.3.0",
"releases_from_tags": false,
"days_since_latest_release": 6,
"mean_days_between_releases": 0.5
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "5 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 5
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 6 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 6
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~0.5 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 0.5
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "exceptional",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "unverified",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": "repository_too_young",
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": null,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "maintenance record not established from the collected data",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_unverified",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "at_risk",
"name": "Community & Adoption",
"value": 33,
"weight": 0.17,
"metrics": [
{
"key": "popularity",
"band": "critical",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 18,
"inputs": {
"forks": 0,
"stars": 13,
"watchers": 0,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "13 stars",
"points": 17.5,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 13
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "0 forks",
"points": 0,
"status": "missed",
"details": [
{
"code": "forks",
"params": {
"count": 0
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "0 watchers",
"points": 0,
"status": "missed",
"details": [
{
"code": "watchers",
"params": {
"count": 0
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "moderate",
"name": "Community health",
"note": null,
"notes": [],
"value": 50,
"inputs": {
"has_readme": true,
"has_license": true,
"readme_badges": null,
"has_contributing": false,
"has_issue_template": false,
"has_code_of_conduct": false,
"readme_badge_services": [],
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (MIT)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "MIT"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "at_risk",
"name": "Sustainability & Governance",
"value": 34,
"weight": 0.23,
"metrics": [
{
"key": "maintainer_resilience",
"band": "critical",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 13,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 1,
"top_contributor_share": 1
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 100% of commits",
"points": 0,
"status": "missed",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 100
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "1 contributors",
"points": 1.4,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 1
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 1 contributing companies or organizations -- score normalized to 3",
"points": 3,
"status": "partial",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "critical",
"name": "Issue & PR responsiveness",
"note": "Excluded from scoring (no data or not applicable): Issue resolution, PR acceptance, Newcomer PR acceptance. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"issue_resolution",
"pr_acceptance",
"newcomer_pr_acceptance"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 1,
"inputs": {
"merged_prs": 0,
"open_issues": 0,
"closed_issues": 0,
"prs_merged_7d": null,
"prs_decided_7d": null,
"prs_merged_30d": null,
"prs_decided_30d": null,
"issue_closed_ratio": null,
"closed_unmerged_prs": 0,
"first_time_authors_30d": null,
"first_time_prs_merged_30d": null,
"first_time_prs_decided_30d": null
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "no issues or no data",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_issues_or_data",
"params": {}
}
],
"max_points": 42
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "no decided pull requests or no data",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_decided_prs_or_data",
"params": {}
}
],
"max_points": 30
},
{
"key": "newcomer_pr_acceptance",
"name": "Newcomer PR acceptance",
"detail": "no first-time contributor's PR decided in 30d",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_newcomer_prs",
"params": {
"days": 30
}
}
],
"max_points": 13
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "weak",
"name": "Ownership & stewardship",
"note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"verified_domain"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 41,
"inputs": {
"followers": 4,
"owner_type": "User",
"is_verified": null,
"owner_login": "yusupkhemraev",
"public_repos": 8,
"account_age_days": 1931
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "personal (user) account",
"points": 10,
"status": "partial",
"details": [
{
"code": "owner_personal",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": "not applicable to user accounts",
"points": 0,
"status": "excluded",
"details": [
{
"code": "not_applicable_to_user_accounts",
"params": {}
}
],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "4 followers of yusupkhemraev",
"points": 5,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 4,
"login": "yusupkhemraev"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "8 public repos, account ~5 yr old",
"points": 17.5,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 8
}
},
{
"code": "account_age_years",
"params": {
"years": 5
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "exceptional",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"github.com/yusupkhemraev/payk"
],
"ecosystems": "go",
"any_deprecated": false,
"min_days_since_publish": 6
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on go",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "go"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 6 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 6
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "5 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 5
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "good",
"name": "Engineering Quality",
"value": 78,
"weight": 0.19,
"metrics": [
{
"key": "engineering_practices",
"band": "excellent",
"name": "Engineering practices",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_ci_tests"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 80,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "2 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 2
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": ".golangci.yml",
"points": 16,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".golangci.yml"
}
}
],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "no pull request found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "good",
"name": "Documentation",
"note": null,
"notes": [],
"value": 75,
"inputs": {
"topics": [],
"has_wiki": true,
"homepage": null,
"has_readme": true,
"has_docs_dir": true,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 25,
"status": "met",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "at_risk",
"name": "Security",
"value": 32,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "at_risk",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): CI-Tests. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"ci_tests"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 32,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 17,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 1,
"scorecard_aggregate": 3.2
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection not enabled on development/release branches",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "no pull request found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 1 contributing companies or organizations -- score normalized to 3",
"points": 0.8,
"status": "partial",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "no update tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "project was created within the last 90 days. Please review its contents carefully",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow detected",
"points": 5,
"status": "met",
"details": [],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "no SAST tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "0 existing vulnerabilities detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "exceptional",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"commit_weight_rule": {
"min_commits": 50,
"min_commit_share": 0.1
},
"review_only_matches": 0,
"below_threshold_exposures": [],
"assessed_self_published_locations": 2
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "moderate",
"name": "AI Readiness",
"value": 64,
"weight": 0.04,
"metrics": [
{
"key": "ai_agent_context",
"band": "at_risk",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 33,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.625,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "no CLAUDE.md / AGENTS.md / editor rules",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_instructions",
"params": {}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "20 of 32 human commits state their intent (structured subject or explanatory body)",
"points": 33.3,
"status": "partial",
"details": [
{
"code": "legible_history",
"params": {
"legible": 20,
"sampled": 32
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "good",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 73,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"go.sum"
],
"has_dockerfile": false,
"typed_language": true,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": true,
"typecheck_configs": [],
"agent_commit_share": 0.031,
"toolchain_manifests": [
"go.mod"
],
"dependency_bot_commit_share": 0
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": "go.mod (toolchain convention, no task runner)",
"points": 12.6,
"status": "partial",
"details": [
{
"code": "toolchain_convention",
"params": {
"files": "go.mod"
}
}
],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": ".golangci.yml",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".golangci.yml"
}
}
],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "Go (statically typed)",
"points": 11,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "1 of the last 32 commits agent-authored or agent-credited",
"points": 6.2,
"status": "partial",
"details": [
{
"code": "agent_authored_commits",
"params": {
"count": 1,
"sampled": 32
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "no automated dependency updates observed",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_dependency_automation",
"params": {}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "exceptional",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"primary_language": "Go",
"largest_source_bytes": 29095,
"source_files_sampled": 59,
"oversized_source_files": 0
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "Go (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "0/59 source files over 60KB",
"points": 55,
"status": "met",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 59,
"oversized": 0
}
}
],
"max_points": 55
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight: agent tooling is a real maintenance signal, but its absence must never gate the top of the scale (calibration saturates at raw 91, so 100/100 remains reachable with AI Readiness at zero)."
}
],
"metrics_version": "2.2.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
"GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
],
"report_type": "repository",
"generated_at": "2026-07-28T08:52:32.751669Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/y/yusupkhemraev/payk.svg",
"full_name": "yusupkhemraev/payk",
"license_state": "standard",
"license_spdx": "MIT"
}