Informe JSON sin procesar legible por máquina
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 1862984,
"has_wiki": false,
"homepage": "https://orama.network",
"languages": {
"Go": 6205732,
"CSS": 6174,
"MDX": 266774,
"Zig": 291592,
"HTML": 2219,
"Shell": 42836,
"PLpgSQL": 51839,
"Makefile": 10298,
"TypeScript": 988196
},
"pushed_at": "2026-07-13T12:20:17Z",
"created_at": "2025-09-17T13:50:34Z",
"owner_type": "Organization",
"updated_at": "2026-07-04T17:47:32Z",
"description": "A robust, decentralized peer-to-peer network built in Go, providing distributed SQL database, key-value storage, pub/sub messaging, and resilient peer management. Designed for applications needing reliable, scalable, and secure data sharing without centralized infrastructure.",
"is_archived": false,
"is_disabled": false,
"license_spdx": "AGPL-3.0",
"default_branch": "main",
"license_spdx_raw": "AGPL-3.0",
"primary_language": "Go",
"significant_languages": [
"Go",
"TypeScript"
]
},
"owner": {
"blog": "https://debros.io",
"name": "DeBros DAO",
"type": "Organization",
"login": "DeBrosDAO",
"company": null,
"location": null,
"followers": 6,
"avatar_url": "https://avatars.githubusercontent.com/u/265243004?v=4",
"created_at": "2026-03-03T09:57:18Z",
"is_verified": null,
"public_repos": 9,
"account_age_days": 143
},
"license": {
"state": "standard",
"spdx_id": "AGPL-3.0",
"raw_spdx": "AGPL-3.0",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.122.80-nightly",
"kind": "prerelease",
"published_at": "2026-07-06T19:18:45Z"
},
{
"tag": "v0.122.79-nightly",
"kind": "prerelease",
"published_at": "2026-07-06T18:24:01Z"
},
{
"tag": "v0.122.78-nightly",
"kind": "prerelease",
"published_at": "2026-07-06T08:53:41Z"
},
{
"tag": "v0.122.77-nightly",
"kind": "prerelease",
"published_at": "2026-07-04T20:56:49Z"
},
{
"tag": "v0.122.74",
"kind": "patch",
"published_at": "2026-07-04T17:54:31Z"
},
{
"tag": "v0.122.74-nightly",
"kind": "prerelease",
"published_at": "2026-07-04T17:46:56Z"
},
{
"tag": "v0.122.73-nightly",
"kind": "prerelease",
"published_at": "2026-07-04T17:31:57Z"
},
{
"tag": "v0.122.68",
"kind": "patch",
"published_at": "2026-07-02T10:52:01Z"
},
{
"tag": "v0.122.60-nightly",
"kind": "prerelease",
"published_at": "2026-06-16T15:48:27Z"
},
{
"tag": "v0.122.59-nightly",
"kind": "prerelease",
"published_at": "2026-06-15T19:01:22Z"
},
{
"tag": "v0.122.58-nightly",
"kind": "prerelease",
"published_at": "2026-06-15T11:49:36Z"
},
{
"tag": "v0.122.57-nightly",
"kind": "prerelease",
"published_at": "2026-06-15T10:57:55Z"
},
{
"tag": "v0.122.56-nightly",
"kind": "prerelease",
"published_at": "2026-06-15T08:23:27Z"
},
{
"tag": "v0.122.55-nightly",
"kind": "prerelease",
"published_at": "2026-06-15T05:08:43Z"
},
{
"tag": "v0.122.54-nightly",
"kind": "prerelease",
"published_at": "2026-06-13T06:28:00Z"
},
{
"tag": "v0.122.51-nightly",
"kind": "prerelease",
"published_at": "2026-06-12T13:51:06Z"
},
{
"tag": "v0.122.50-nightly",
"kind": "prerelease",
"published_at": "2026-06-12T07:16:34Z"
},
{
"tag": "v0.122.49-nightly",
"kind": "prerelease",
"published_at": "2026-06-12T05:08:23Z"
},
{
"tag": "v0.122.47",
"kind": "patch",
"published_at": "2026-06-11T14:43:48Z"
},
{
"tag": "v0.122.47-nightly",
"kind": "prerelease",
"published_at": "2026-06-11T08:50:04Z"
},
{
"tag": "v0.122.46-nightly",
"kind": "prerelease",
"published_at": "2026-06-11T07:10:37Z"
},
{
"tag": "v0.122.45-nightly",
"kind": "prerelease",
"published_at": "2026-06-11T05:03:56Z"
},
{
"tag": "v0.122.44-nightly",
"kind": "prerelease",
"published_at": "2026-06-10T09:17:30Z"
},
{
"tag": "v0.122.43-nightly",
"kind": "prerelease",
"published_at": "2026-06-09T13:01:48Z"
},
{
"tag": "v0.122.42-nightly",
"kind": "prerelease",
"published_at": "2026-06-09T10:05:42Z"
},
{
"tag": "v0.122.41-nightly",
"kind": "prerelease",
"published_at": "2026-06-09T06:29:08Z"
},
{
"tag": "v0.122.40-nightly",
"kind": "prerelease",
"published_at": "2026-06-04T07:12:57Z"
},
{
"tag": "v0.122.39-nightly",
"kind": "prerelease",
"published_at": "2026-06-02T12:11:00Z"
},
{
"tag": "v0.122.38-nightly",
"kind": "prerelease",
"published_at": "2026-06-01T07:17:19Z"
},
{
"tag": "v0.122.37-nightly",
"kind": "prerelease",
"published_at": "2026-05-30T16:31:22Z"
},
{
"tag": "v0.122.36-nightly",
"kind": "prerelease",
"published_at": "2026-05-30T11:45:53Z"
},
{
"tag": "v0.122.35-nightly",
"kind": "prerelease",
"published_at": "2026-05-29T09:13:25Z"
},
{
"tag": "v0.122.34-nightly",
"kind": "prerelease",
"published_at": "2026-05-28T06:59:46Z"
},
{
"tag": "v0.122.33-nightly",
"kind": "prerelease",
"published_at": "2026-05-25T07:29:49Z"
},
{
"tag": "v0.122.32-nightly",
"kind": "prerelease",
"published_at": "2026-05-25T06:39:09Z"
},
{
"tag": "v0.122.31-nightly",
"kind": "prerelease",
"published_at": "2026-05-24T18:01:49Z"
},
{
"tag": "v0.122.30-nightly",
"kind": "prerelease",
"published_at": "2026-05-24T16:43:33Z"
},
{
"tag": "v0.122.29-nightly",
"kind": "prerelease",
"published_at": "2026-05-23T09:53:57Z"
},
{
"tag": "v0.122.28-nightly",
"kind": "prerelease",
"published_at": "2026-05-21T12:57:56Z"
},
{
"tag": "v0.122.27-nightly",
"kind": "prerelease",
"published_at": "2026-05-19T15:23:25Z"
},
{
"tag": "v0.122.26-nightly",
"kind": "prerelease",
"published_at": "2026-05-18T07:46:45Z"
},
{
"tag": "v0.122.25-nightly",
"kind": "prerelease",
"published_at": "2026-05-16T12:47:14Z"
},
{
"tag": "v0.122.24-nightly",
"kind": "prerelease",
"published_at": "2026-05-15T10:40:41Z"
},
{
"tag": "v0.122.23-nightly",
"kind": "prerelease",
"published_at": "2026-05-15T09:00:21Z"
},
{
"tag": "v0.122.22-nightly",
"kind": "prerelease",
"published_at": "2026-05-15T07:44:26Z"
},
{
"tag": "v0.122.21-nightly",
"kind": "prerelease",
"published_at": "2026-05-15T06:05:39Z"
},
{
"tag": "v0.122.20-nightly",
"kind": "prerelease",
"published_at": "2026-05-15T04:07:22Z"
},
{
"tag": "v0.122.19-nightly",
"kind": "prerelease",
"published_at": "2026-05-14T14:57:50Z"
},
{
"tag": "v0.122.18-nightly",
"kind": "prerelease",
"published_at": "2026-05-14T11:33:49Z"
},
{
"tag": "v0.122.17-nightly",
"kind": "prerelease",
"published_at": "2026-05-14T09:20:35Z"
},
{
"tag": "v0.122.16-nightly",
"kind": "prerelease",
"published_at": "2026-05-14T08:55:30Z"
},
{
"tag": "v0.122.15-nightly",
"kind": "prerelease",
"published_at": "2026-05-14T08:49:05Z"
},
{
"tag": "v0.122.14-nightly",
"kind": "prerelease",
"published_at": "2026-05-14T07:53:06Z"
},
{
"tag": "v0.122.13-nightly",
"kind": "prerelease",
"published_at": "2026-05-14T04:50:59Z"
},
{
"tag": "v0.122.12-nightly",
"kind": "prerelease",
"published_at": "2026-05-13T12:42:09Z"
},
{
"tag": "v0.122.11-nightly",
"kind": "prerelease",
"published_at": "2026-05-12T08:10:21Z"
},
{
"tag": "v0.122.10",
"kind": "patch",
"published_at": "2026-05-12T07:19:12Z"
},
{
"tag": "v0.122.9",
"kind": "patch",
"published_at": "2026-05-12T07:02:15Z"
},
{
"tag": "v0.122.9-nightly",
"kind": "prerelease",
"published_at": "2026-05-12T06:55:09Z"
},
{
"tag": "v0.122.8-nightly",
"kind": "prerelease",
"published_at": "2026-05-12T06:49:43Z"
},
{
"tag": "v0.122.7-nightly",
"kind": "prerelease",
"published_at": "2026-05-12T06:43:03Z"
},
{
"tag": "v0.122.6-nightly",
"kind": "prerelease",
"published_at": "2026-05-12T06:37:41Z"
},
{
"tag": "v0.122.5-nightly",
"kind": "prerelease",
"published_at": "2026-05-12T06:33:08Z"
},
{
"tag": "v0.122.4-nightly",
"kind": "prerelease",
"published_at": "2026-05-12T06:30:37Z"
},
{
"tag": "v0.122.3-nightly",
"kind": "prerelease",
"published_at": "2026-05-12T06:20:14Z"
},
{
"tag": "v0.122.2-nightly",
"kind": "prerelease",
"published_at": "2026-05-07T04:34:40Z"
},
{
"tag": "v0.122.0-nightly",
"kind": "prerelease",
"published_at": "2026-05-05T09:37:21Z"
},
{
"tag": "v0.120.0",
"kind": "minor",
"published_at": "2026-03-26T16:45:02Z"
},
{
"tag": "v0.115.0-nightly",
"kind": "prerelease",
"published_at": "2026-03-24T13:02:54Z"
},
{
"tag": "v0.112.6-nightly",
"kind": "prerelease",
"published_at": "2026-02-24T07:18:57Z"
},
{
"tag": "v0.112.1-nightly",
"kind": "prerelease",
"published_at": "2026-02-22T09:44:53Z"
},
{
"tag": "v0.111.0-nightly",
"kind": "prerelease",
"published_at": "2026-02-21T06:50:43Z"
},
{
"tag": "v0.107.0-nightly",
"kind": "prerelease",
"published_at": "2026-02-16T08:35:22Z"
},
{
"tag": "v0.102.5-nightly",
"kind": "prerelease",
"published_at": "2026-02-12T07:56:44Z"
},
{
"tag": "v0.102.2-nightly",
"kind": "prerelease",
"published_at": "2026-02-11T13:16:46Z"
},
{
"tag": "v0.102.1-nightly",
"kind": "prerelease",
"published_at": "2026-02-11T09:30:36Z"
},
{
"tag": "v0.101.6-nightly",
"kind": "prerelease",
"published_at": "2026-02-11T04:48:53Z"
},
{
"tag": "v0.101.3-nightly",
"kind": "prerelease",
"published_at": "2026-02-09T14:01:29Z"
},
{
"tag": "v0.101.2-nightly",
"kind": "prerelease",
"published_at": "2026-02-09T13:43:50Z"
},
{
"tag": "v0.90.0",
"kind": "minor",
"published_at": "2026-01-20T08:20:03Z"
},
{
"tag": "v0.90.0-nigthly",
"kind": "prerelease",
"published_at": "2026-01-20T08:19:40Z"
},
{
"tag": "v0.82.0-nightly",
"kind": "prerelease",
"published_at": "2026-01-05T18:03:47Z"
},
{
"tag": "v0.72.3",
"kind": "patch",
"published_at": "2025-12-15T13:08:05Z"
},
{
"tag": "v0.72.2",
"kind": "patch",
"published_at": "2025-12-09T05:31:09Z"
},
{
"tag": "v0.72.1-nightly",
"kind": "prerelease",
"published_at": "2025-12-09T05:26:36Z"
},
{
"tag": "v0.72.0",
"kind": "minor",
"published_at": "2025-11-28T20:32:39Z"
},
{
"tag": "v0.72.0-nightly",
"kind": "prerelease",
"published_at": "2025-11-28T20:30:58Z"
},
{
"tag": "v0.69.23",
"kind": "patch",
"published_at": "2025-11-26T14:17:33Z"
},
{
"tag": "v0.69.22-nightly",
"kind": "prerelease",
"published_at": "2025-11-22T11:34:24Z"
},
{
"tag": "v0.69.21-nightly",
"kind": "prerelease",
"published_at": "2025-11-22T11:22:16Z"
},
{
"tag": "v0.69.20-nightly",
"kind": "prerelease",
"published_at": "2025-11-22T11:13:03Z"
},
{
"tag": "v0.69.19-nightly",
"kind": "prerelease",
"published_at": "2025-11-22T11:04:45Z"
},
{
"tag": "v0.69.18-nightly",
"kind": "prerelease",
"published_at": "2025-11-21T12:02:22Z"
},
{
"tag": "v0.69.13",
"kind": "patch",
"published_at": "2025-11-14T07:05:17Z"
},
{
"tag": "v0.69.13-nightly",
"kind": "prerelease",
"published_at": "2025-11-14T07:01:15Z"
},
{
"tag": "v0.69.12-nightly",
"kind": "prerelease",
"published_at": "2025-11-14T05:16:44Z"
},
{
"tag": "v0.69.10-nightly",
"kind": "prerelease",
"published_at": "2025-11-13T05:24:20Z"
},
{
"tag": "v0.69.9-nightly",
"kind": "prerelease",
"published_at": "2025-11-12T07:17:36Z"
},
{
"tag": "v0.69.5-nightly",
"kind": "prerelease",
"published_at": "2025-11-11T15:11:49Z"
},
{
"tag": "v0.69.4-nightly",
"kind": "prerelease",
"published_at": "2025-11-11T14:26:35Z"
}
],
"recent_commits": [
{
"oid": "4a538ca07ad8c2980b8af94fe26f2e1c96961509",
"body": "Nightly",
"is_bot": false,
"headline": "Merge pull request #96 from DeBrosDAO/nightly",
"author_name": "anonpenguin",
"author_login": "anonpenguin23",
"committed_at": "2026-07-04T17:47:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5e5d479968cdb0096697e5347da38948bb9b712d",
"body": null,
"is_bot": false,
"headline": "release: 0.122.74",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-07-04T17:42:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1e477a761ab6b2949b91b27d0f4e0c781ac1873b",
"body": "…gers SDK + APT publish",
"is_bot": false,
"headline": "ci(release): use RELEASE_PAT for GoReleaser so the release event trig…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-07-04T17:42:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "444546f8f12678760feb798ec95839c6ecc56336",
"body": "Nightly",
"is_bot": false,
"headline": "Merge pull request #95 from DeBrosDAO/nightly",
"author_name": "anonpenguin",
"author_login": "anonpenguin23",
"committed_at": "2026-07-04T17:36:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0aac3b0b73251fee6ee805a03667fa41d53c2498",
"body": null,
"is_bot": false,
"headline": "release: 0.122.73",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-07-04T17:28:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "004639d3d28e0405b93ba07ef4c1330f7fd95ed2",
"body": "- Add `revoked_at` column to `api_keys` table for soft-revocation\n- Add `keys` CLI command group for creating, listing, and revoking keys\n- Switch vault builder to `zig build-exe` to avoid host runner link errors\n- Bump version to 0.122.72",
"is_bot": false,
"headline": "feat(core): implement scoped API key management",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-07-04T17:25:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1bb294260f7df09ffd7b18ab86a69777ffbef07d",
"body": "Nightly",
"is_bot": false,
"headline": "Merge pull request #94 from DeBrosDAO/nightly",
"author_name": "anonpenguin",
"author_login": "anonpenguin23",
"committed_at": "2026-07-02T10:49:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "881594d3b0e66d09eba302c05d005f54759ff2c8",
"body": "- Add pre-flight check to resolve and validate the leader's raft address\n- Implement leader-only config reset by replacing raft.db with a single-node peers.json\n- Update follower recovery to perform a full state wipe, ensuring clean re-joins\n- Add base64 encoding for SSH commands to prevent shell-quoting issues",
"is_bot": false,
"headline": "feat(recover): implement robust rqlite raft cluster recovery",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-07-02T10:48:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "93556ab786ee89ee611daaebb5ee0dfb96d9a121",
"body": "…ety)\n\nIncident 2026-06-24: scheduled IPFS GC (0.122.67) deleted the WASM of 14 active\nfunctions that were never durably pinned (old uploadWASM only warn-logged pin\nfailures). 0.122.68 fixed the deploy path (pin-everywhere + hard-fail); this\nadds the missing piece for EXISTING functions:\n\n- Registry\n[…]\n naturally staggers it and the cluster dedups pins.\n\nSo GC can never again reclaim function WASM. (The currently-deleted 14 still need\nan AnChat re-deploy — their bytes are gone; tracked on bug #137.)",
"is_bot": false,
"headline": "fix(serverless): startup backfill to re-pin all function WASM (GC-saf…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-24T09:16:20Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "12ece71b87e47cd96878c30e1bd8ddc3c5b53f4c",
"body": null,
"is_bot": false,
"headline": "release: 0.122.68",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-24T05:51:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "dc7abbcc51a77d3ed598151d49ce1991d4412b29",
"body": "…none-reads\n\nThree anchat-priority fixes for delivery-critical paths.\n\n#137 — rarely-invoked function WASM cold-fetch timed out (15s) → INVOKE_FAILED\nwith no retryable flag:\n- uploadWASM now pins WASM on EVERY cluster peer (replication=-1) so no gateway\n node is ever cold, and HARD-FAILS the deploy\n[…]\nward compatible (empty freshness = prior behavior).\nVerified live on devnet: rqlite v8.43.0 signals a violation as HTTP 200 +\n{\"error\":\"stale read\"}; /status is reachable unauthenticated for the gate.",
"is_bot": false,
"headline": "fix(serverless,rqlite): reliable WASM cold-fetch + bounded-staleness …",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-24T05:51:13Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "6a134248bda29ab478fad5b95fcd6f182f643b3d",
"body": null,
"is_bot": false,
"headline": "release: 0.122.67",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-23T06:59:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a0e0ef071df51b19fb4b087b8231974a9941cde6",
"body": "The IPFS daemon runs without --enable-gc and nothing scheduled `ipfs repo\ngc`, so unpinned blocks were never reclaimed — unpin freed zero disk.\nDatastore.StorageMax was also the unconfigured kubo default of 10GB on\nevery node regardless of disk size.\n\n- Add orama-ipfs-gc.service (one-shot `ipfs repo\n[…]\nly via InitializeRepo (runs in Phase2c post-reexec, so it\n lands on the same upgrade).\n\nUnblocks AnChat attachment-storage design (change-136): retention-based\nunpin now actually reclaims node space.",
"is_bot": false,
"headline": "feat(ipfs): scheduled repo GC + disk-aware StorageMax",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-23T06:59:23Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b74f92b1a008ee8a0beed58bf7fea1235f845063",
"body": null,
"is_bot": false,
"headline": "release: 0.122.66",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T16:08:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "deb94c071c73515ac243ae2e7c493d40109edd4a",
"body": "…ence (#858)\n\nThe shared ntfy push tier runs an independent instance per node with NO\ncross-node shared state, so a publish and a long-lived subscriber that\nround-robin DNS sends to different instances never meet (measured live: 5/5\nsame-node, 0/5 cross-node). The gateway fan-out compensates for the\n[…]\nlicates (the fan-out still reaches that node). Contained to the DNS layer —\nno changes to the :443/Caddy/ntfy data path. Unit-tested: lowest-IP pick,\nfailover+prune, no-healthy-ns safety, idempotency.",
"is_bot": false,
"headline": "fix(push): pin push.<domain> to one healthy nameserver for ntfy coher…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T16:08:30Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "81b727467e88ccf12493bdd4a2954e123571fde7",
"body": null,
"is_bot": false,
"headline": "release: 0.122.65",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T13:30:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2e44a22a3b46d598d994629e93da104acf8b0350",
"body": "…(#981)\n\nLive verification on anchat-test caught two real bugs the sqlite3 unit tests\nmissed:\n\n1. Eviction ordered by SQLite rowid (insertion order) was WRONG: when an\n existing account RE-registers its token (a CONFLICT/UPDATE), its row keeps its\n original low rowid, so 'DELETE ... rowid < keep\n[…]\ntest seeding pre-existing duplicates + re-registering.\n\n2. The token_fp backfill raced migration 033 at gateway startup ('no such\n column') and failed permanently. Retry until the migration applies.",
"is_bot": false,
"headline": "fix(push): evict by id (recency), not rowid; retry token_fp backfill …",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T13:30:00Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7280adef2fc431035a1966994fd2e6bf5c9808ec",
"body": "The fanout's hub->target scp/ssh used the forwarded agent, which offers ALL\nnode keys; once the offered count exceeds the target sshd's MaxAuthTries\n(default 6) the connection is rejected with 'too many authentication failures',\nso fanout to most nodes failed. Stage each target's key on the hub and connect\nwith '-i <key> -o IdentitiesOnly=yes' (one key, like the working direct path);\nkeys are chmod 600 and removed when the fanout ends. Restores fast one-upload +\ncluster-distribution deploys.",
"is_bot": false,
"headline": "fix(cli): stage per-target keys on hub for fanout (avoid MaxAuthTries)",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T12:34:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "84654f81769cf4d48082d77a205960954b07a0e6",
"body": "extractOnNode removed the uploaded tarball with 'rm -f' immediately after\nextraction — including on the hub. The fanout step then scp'd that now-deleted\narchive from the hub to every other node, so every fanout deploy failed\n('scp: stat local ...: No such file') and fell back to slow per-node direct\nuploads. Keep the archive on the hub until the fanout completes, then remove it.\nRestores one-upload + cluster-distribution deploys.",
"is_bot": false,
"headline": "fix(cli): keep archive on hub during fanout push",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T07:29:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "18f8f2dd2eeaad089bde2c8fc4bd2edd55872bba",
"body": null,
"is_bot": false,
"headline": "release: 0.122.64",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T07:25:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ab1841babbe9707b835062c09baf134ec5ff6be0",
"body": "…#898 review)\n\nCode-review MEDIUM: a warmer goroutine completing AFTER its pool was torn down\n(Invalidate on redeploy / LRU-evict / Close) sent its instance into a detached\nchannel that nothing drains -> the wazero instance was never Closed (a slow\nresource leak recurring on every redeploy/eviction;\n[…]\nnt invocation's singleton identity. And a reactor pool MISS (cold\nfallback) now records its instantiate duration into the bugboard #27 slow-invoke\ndiagnostic instead of mis-reporting instantiate_ms=0.",
"is_bot": false,
"headline": "fix(serverless): close reactor instances warmed after pool teardown (…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T07:16:16Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "0371c973186bba3755f269645227066751861e45",
"body": "…rt (#898)\n\nEvery stateless invocation re-instantiates the module, running TinyGo's\n_start/_initialize runtime init on the request's critical path (~550ms for\ncomplex functions). Add a reactor-mode path: a function built -buildmode=c-shared\nthat exports handle(ptr,len)->packed is served from a per-m\n[…]\nml reactor:true (build flag) + the handle export. Per-call\nidentity rides ctx (WithInvocationContext); the reactor contract requires init()\nto be identity-independent (do per-caller work in handle()).",
"is_bot": false,
"headline": "feat(serverless): reactor-mode pre-warm pool — remove ~550ms cold-sta…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T07:10:06Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "08cf4185615f8dc1b87e9efc8bb8886fe5b076a1",
"body": "…ilds)\n\nThe stale 0.14.0 pin does not compile vault-guardian: 0.14.0 fails with\n'expected 32 array elements' on src/main.zig and 0.16.0 fails with\n'GeneralPurposeAllocator' removed. 0.15.2 cross-compiles cleanly to\nx86_64-linux-musl (verified). This unblocks a full-stack 'orama node rollout'\nfrom a fresh checkout (AnChat #1230/#1233).",
"is_bot": false,
"headline": "fix(vault): pin zig toolchain to 0.15.2 (the version that actually bu…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T06:47:05Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fe43c712cb4ca00134513b031d7b627fa1651bcf",
"body": null,
"is_bot": false,
"headline": "release: 0.122.63",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T06:42:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9b59cd6c3e40894cc53fb4bddce8e87c397698b7",
"body": "When a device registers a (device_id, token) under user W, evict any OTHER\npush_devices row in the same namespace carrying the SAME physical token, so one\nAPNs/VoIP token maps to a single active owner. Fixes the cross-account leak\nwhere a second account on one device coexisted on the same physical t\n[…]\nuccessful registration.\n\nAlso return {status,id,device_id} on register (ask 2) so a client can DELETE\ndirectly without GET-then-match; one-time best-effort backfill of token_fp for\npre-migration rows.",
"is_bot": false,
"headline": "feat(push): token-exclusive device registration + return row id (#981)",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-22T06:42:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "91ac2c1fa7091f421a8f5d51a5b10c385d63475e",
"body": "…nto nightly",
"is_bot": false,
"headline": "Merge branch 'nightly' of https://github.com/DeBrosOfficial/network i…",
"author_name": "JohnySigma",
"author_login": "JohnySigma",
"committed_at": "2026-06-19T16:10:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ad766880b31ee854876950d5d5d1a53e00d10ca5",
"body": "…er active user)\n\npush_devices Upsert now evicts rows owned by a different user for the same\nnamespace and device_id after a successful upsert. A physical device push token\nbelongs to exactly one signed-in identity at a time; without this a previous\naccount that signed in on the device keeps a live \n[…]\ntenant rows), best-effort (logs, never\nfails registration), matches plaintext device_id since the token is AES-GCM\nencrypted. Auto-cleans pre-existing orphans on the next sign-in. Tracked as\nfeat-135.",
"is_bot": false,
"headline": "feat(push): token-exclusive device registration (one physical token p…",
"author_name": "JohnySigma",
"author_login": "JohnySigma",
"committed_at": "2026-06-19T16:06:18Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "47ef9f990d4be48b88723bb66ec31411387335a3",
"body": null,
"is_bot": false,
"headline": "release: 0.122.62",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-19T08:28:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f4790c9ac3f892fc884fbbc9916192fb8889fb15",
"body": "…rama-node (#846)\n\nThe upgrade runs Phase6bSetupFirewall ('ufw --force reset' + base rules) as\nroot, wiping the TURN relay ports on every upgrade. orama-node runs as a\nnon-root user and CANNOT modify ufw, so the restore-path EnsureTURNFirewall I\nfirst added was a no-op (a doomed 'ufw' call). Move th\n[…]\npFirewall: ps.hostRunsTURN() -> TURNEnabled + relay range\n- remove the non-root EnsureTURNFirewall (restore path + method)\n- tests: hostRunsTURN env-file detection + non-TURN node opens no relay ports",
"is_bot": false,
"headline": "fix(turn): re-open TURN relay ports in the root firewall setup, not o…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-19T08:28:17Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "29064ed0e61a62c9966d7988d79ee1893ac06d09",
"body": "…from message_id (#833)\n\nThread an optional MessageID through PushMessage -> the APNs apns-collapse-id\nheader (capped at 64 bytes) and Expo's collapseId field (which Expo maps to FCM\ncollapse_key / APNs apns-collapse-id). A superseded or duplicate push now\ncollapses on-device instead of stacking. Empty MessageID preserves the prior\nbehavior (each push distinct). No native FCM send provider exists, so the FCM\ncollapse_key is covered via the Expo path.",
"is_bot": false,
"headline": "feat(push): collapse identifier (apns-collapse-id / Expo collapseId) …",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-19T07:45:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b5f09df60a95123d67d870e8a7e8d8851d58d28e",
"body": null,
"is_bot": false,
"headline": "release: 0.122.61",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-19T07:20:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c67321d486d04ffb1b171819c6a06f342942e99f",
"body": "…logging (#858)\n\n- ntfy keepalive-interval 45s->25s: the default is too long for aggressive\n carrier NATs that silently drop idle long-lived /json streams (open-but-silent)\n- fan-out partial-failure log now names the failed node IPs + a topic fingerprint\n (hashed, not the subscribable topic) so a lost push is diagnosable",
"is_bot": false,
"headline": "fix(push): tune ntfy keepalive for mobile NATs + diagnosable fan-out …",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-19T07:18:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d759826bd41326d6e5621e836e071ac2a5a54e92",
"body": "…irewall (#846)\n\nThe boot-time TURN restore path passed PublicIP:\"\" (with a false \"spawner\nresolves it\" comment), so a TURN node that rebooted came back crash-looping on\n\"turn.public_ip: must not be empty\" — yielding zero ICE relay candidates AND\nnever reaching AddWebRTCRules, so the relay UDP ports\n[…]\nublic_ip loudly instead of writing a doomed config\n- relay firewall rules re-ensured on every boot (idempotent) so a node-level\n 'ufw --force reset' that wiped them while TURN kept running self-heals",
"is_bot": false,
"headline": "fix(turn): resolve node public IP on TURN restore + self-heal relay f…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-19T07:18:12Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5624ef0faa2cb07febeb8b049da2885173f88a05",
"body": null,
"is_bot": false,
"headline": "release: 0.122.60",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T20:08:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e3b2f08a0a5c0615c6e593987cdcb6ff8ca09eaf",
"body": "… activates (#858)\n\nThe ntfy fan-out (publish each push to every active push node so a\nround-robin-DNS-pinned subscriber receives it) was coded but INERT: the\ngateway's cfg.NtfyBaseURL was never populated, so the fan-out resolver was\nnever built and pushes went single-host (the ~87% loss the bug des\n[…]\nng-upgrade safe: Phase 4 regen runs under the\nnew binary (post-swap), so an old binary never reads a node.yaml with the new\nfield. DecodeStrict regression guard added (mirrors secrets_encryption_key).",
"is_bot": false,
"headline": "fix(gateway): plumb ntfy_base_url into gateway config so push fan-out…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T20:08:39Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3779ba9502f7903f562233939a2ce84b963c6ea6",
"body": null,
"is_bot": false,
"headline": "release: 0.122.59",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T18:57:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "92428df7e939275ad46307a83c252bf5f6e8e8d5",
"body": "caddy/coredns declare Requires=orama-node.service, so stopping orama-node\ncascade-stops them; Requires propagates STOP but not START, and\nStartServicesOrdered only starts the orama services — so a bare\n'orama node restart' left caddy dead and the node's :443 HTTPS frontend\noffline until the next reboot. Capture the active frontend units before the\nstop and restart exactly those after the gateway is healthy. Adds\nServiceUnitExists helper + selectFrontendToRestore policy test.",
"is_bot": false,
"headline": "fix(cli): node restart restores the caddy/coredns frontend",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T18:57:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d4bf187e943884f81525c084f3ff315f0951e036",
"body": "APIKeyToJWTHandler looked up the namespace by the raw api key, but keys are\nstored HMAC-hashed (Service.HashAPIKey), so it always returned 'invalid API\nkey' for real keys — no api-key holder could exchange for a JWT. Resolve the\nhashed key first with a raw-key fallback for legacy rows, mirroring the\ngateway middleware's lookupAPIKeyNamespace. Adds args-aware mock + tests for\nthe hashed-key, raw-fallback, and unknown-key paths.",
"is_bot": false,
"headline": "fix(gateway): /v1/auth/token resolves HMAC-hashed api keys",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T18:57:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cd869a588f48a4c52a2ff39470a242eef8cde862",
"body": null,
"is_bot": false,
"headline": "release: 0.122.58",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T11:46:49Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "123ca90b659d64e276a83327c93a35a4c3a2cbea",
"body": "…can (#837)\n\nThe base64 wrapper wasn't enough: DBSecretsManager scanned encrypted_value\ninto []byte, so the rqlite client applied base64 binary semantics on read and\nthe ciphertext never round-tripped — get_secret stayed empty. Mirror the\nproven push-credentials store exactly: encrypt to a 'enc:'-prefixed base64\nstring via pkg/secrets and scan the column into a STRING for Decrypt. Text\nround-trips cleanly through rqlite regardless of the BLOB column.",
"is_bot": false,
"headline": "fix(serverless): get_secret round-trip via secrets.Encrypt + string s…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T11:46:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a59017350b0572b40e729f4a896b7ef328e981a0",
"body": null,
"is_bot": false,
"headline": "release: 0.122.57",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T10:55:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b77c3dae976368c47ea65bb3bb32b015c8e87efa",
"body": "51.83.128.181, 144.217.160.15, 144.217.163.114 were removed from the cluster\npermanently and must never be targeted by rollouts/monitoring again.",
"is_bot": false,
"headline": "chore(devnet): remove 3 permanently-decommissioned nodes from nodes.conf",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T10:54:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7165992b123901394e1c065b510f94bfa76e74a9",
"body": "…red secrets (#837)\n\nSecond #837 root cause (the key-derivation fix was necessary but not\nsufficient): DBSecretsManager stored the AES-GCM ciphertext as a raw []byte\nparameter, but the rqlite client serializes []byte as base64 and reads it\nback as that base64 TEXT — never the original bytes. So decr\n[…]\n Set and decode it in\nGet (with a raw fallback), making the round-trip symmetric and\ndriver-independent. The test mock now emulates rqlite's blob->base64-text\nbehavior so it's a real regression guard.",
"is_bot": false,
"headline": "fix(serverless): get_secret returns empty — base64 round-trip for sto…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T10:54:35Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "dcc17f1e9029de5dd4435a38adc4b7761fdf508b",
"body": null,
"is_bot": false,
"headline": "release: 0.122.56",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T08:20:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7b5587094d432d7bbd73f11b054cf63d99e824fc",
"body": "The namespace-ownership middleware compared an api_key caller's RAW key\nagainst namespace_ownership.owner_id, but api_keys are stored HMAC-hashed\n(HashAPIKey). So every api_key-authenticated owner got a 403 on a namespace\nthey actually own — blocking function deploy and PUT /v1/push/config.\n\nHash th\n[…]\nrade legacy fallback), mirroring the existing\nlookupAPIKeyNamespace pattern. The wallet path is unchanged (wallets stored\nraw). Security-reviewed: grants only to the correct key holder, no\nescalation.",
"is_bot": false,
"headline": "fix(gateway): api_key owners no longer 403 on namespaces they own",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T08:20:23Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b1b8ac57d5e247f59a8386dd0709c14be20b490d",
"body": null,
"is_bot": false,
"headline": "release: 0.122.55",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T05:05:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9c213a166c04ef9bfb740d6e253a8d157603c9df",
"body": "The 5-10s RPCs that broke calling were not cold-start — they were\nper-RPC sequential rqlite reads, each forwarded to a raft leader that\ngeography-blind election had placed on a 256ms-distant node.\n\nLever A (serverless): cache function metadata + env vars in-process\n(5s TTL, invalidated on deploy/ena\n[…]\nr, via rqlite's transfer-leadership API. All nodes stay\nvoters — membership, quorum and fault tolerance are unchanged. Cuts the\nper-hop cost from ~274ms to ~20ms when a distant node had become leader.",
"is_bot": false,
"headline": "feat(serverless,namespace): cut namespace gateway RPC latency (#708)",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-15T05:05:38Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "61635c4ce7e00b47c66c0bfa2705b015c4bbb4b7",
"body": null,
"is_bot": false,
"headline": "release: 0.122.54",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-13T06:25:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "34f9da6f8d8dfdb69b444b364418e3fbd2df7990",
"body": "…ryption\n\n- Add `ntfyFanoutResolver` to distribute push notifications across all active cluster nodes, ensuring delivery when nodes lack shared state.\n- Refactor secrets encryption key derivation to use cluster-wide secrets via HKDF, replacing ephemeral per-node keys to fix cross-node decryption issues.\n- Add unit tests for fan-out resolution logic and caching behavior.",
"is_bot": false,
"headline": "feat(gateway): implement ntfy cluster fan-out and improve secrets enc…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-13T06:23:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4ae8fa941d1f012ca908fa2411dc230acb6fdd52",
"body": null,
"is_bot": false,
"headline": "release: 0.122.53",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-13T05:13:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2b184f0398cdb0076e9c79854ab6f3aab9ba18ca",
"body": "…130)\n\nRoot cause of the recurring \"turn.credentials → namespace_not_configured\" on a\ndistant node: at converge the gateway resolves its TURN secret from the\nnamespace rqlite, and on a slow/just-restarted node that read fails ONCE, so\nthe gateway is written with TURN disabled. Removing the node is n\n[…]\nand the next converge re-caches the new value.\n\nDual-reviewed: code-quality APPROVED; security SECURE after the remote-write\n0600 fix. Tests: cache populate + short-circuit, no-change, turn-only node.",
"is_bot": false,
"headline": "fix(namespace): make WebRTC config survive slow/cold node restarts (#…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-13T05:12:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "66db54c094edd2f45dc6163351bceab66b995211",
"body": null,
"is_bot": false,
"headline": "release: 0.122.52",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-13T04:53:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cf21668782fe559026d9a96807dbb3a7eacde2e9",
"body": "…s status (#132)\n\nVoIP call-invite pushes set no apns-expiration, so apns2 omits the header and\nAPNs store-and-forwards the push — delivering it minutes late and firing a\nphantom \"missed call\" ring long after the call ended (and burning PushKit\ngoodwill, inviting throttling). Cap the VoIP apns-expir\n[…]\ning \"http=0\", which reads like an opaque failure\nand masked real false-success classes.\n\nTests: VoIP push carries an expiration within the ring-window cap; alert push\ncarries none. push package green.",
"is_bot": false,
"headline": "fix(push): cap VoIP apns-expiration to the ring window; record succes…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-12T14:49:44Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "33600092a8b5b6ca4c107c841d3dc0e44a7d7f01",
"body": "A lost rotation response strands the client on a just-revoked token: the retry\nhits res.Count==0 → genuine 401 → SIWE, which is impossible on a VoIP-woken\nlocked screen, so the call dies. This recurred under the reconnect storms from\ntoday's gateway rolls.\n\nAdd an RFC 9700 §4.13.2 reuse grace: a ref\n[…]\nual-reviewed: code-quality APPROVED; security SECURE after the logout-bypass\nfix. Tests: lost-response recovery, single-use second-attempt 401, genuine bad\ntoken 401, and the logout-bypass regression.",
"is_bot": false,
"headline": "fix(auth): bounded single-use refresh-token reuse grace (#125)",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-12T14:42:36Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "f3145f1b903233ab28c3f72ef16f9523891291f6",
"body": null,
"is_bot": false,
"headline": "release: 0.122.51",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-12T13:48:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6f5b2db95e2b2598934c52dcc0eb6b30da1aeb53",
"body": "The HTTP client re-threw the raw platform error on a transport failure, so\ncallers (e.g. AnChat's JwtSession driving client.auth.refresh/challenge) could\nonly tell \"couldn't reach the gateway\" from a real HTTP error by string-\nmatching `TypeError: Network request failed`. The typed SDKError was buil\n[…]\n\n\nTests: tests/unit/http/network-errors-bug-129.test.ts (TypeError->NETWORK_ERROR,\nAbortError->TIMEOUT, real 401 passes through, callback gets the typed error).\nFull unit suite green, typecheck clean.",
"is_bot": false,
"headline": "fix(sdk): surface typed SDKError on network/timeout failures (#129)",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-12T13:44:37Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e7ed71896543a2eed1b1e329f0afb42d749bacc6",
"body": "…cret (#130)\n\nA freshly-joined namespace node could come up with TURN silently disabled\n(turn.credentials -> namespace_not_configured) when GetWebRTCConfig errored:\nthe stored TURN shared secret was encrypted with a pre-rotation\ncluster-secret-derived key and failed to decrypt, and the converge swal\n[…]\nd; operator disable still resolves to disabled, not unresolved).\n\nPure-function coverage in restore_webrtc_test.go: unresolved marking,\nresolved-empty-is-disabled, and state-secret-wins-over-db-error.",
"is_bot": false,
"headline": "fix(namespace): don't silently disable TURN on unresolvable WebRTC se…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-12T13:44:25Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "021d362b2f207bf013a308681cc23ccb21e2a6be",
"body": null,
"is_bot": false,
"headline": "release: 0.122.50",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-12T07:14:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4d700aed547d892776f6eefa4f80458ae54c4692",
"body": "- implement `wsJWTExpired` to validate token lifetime with a grace period\n- capture jwt expiry at connection upgrade and update via auth.refresh\n- close connections with custom code 4401 when tokens expire to force re-auth\n- add unit tests to verify expiry logic and state transitions",
"is_bot": false,
"headline": "feat(gateway): enforce jwt expiry on persistent websockets",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-12T07:12:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d113b754975d4b15b4d20d9a6311bb3314030028",
"body": "Custom JWT claims survive token refresh: migration 031 adds the\ncustom-claims column to refresh tokens, the new gateway ClaimsProvider\nre-resolves claims on refresh, and the serverless invoke path carries\nthem through. Includes refresh-rotation, WS-JWT middleware, and\nclaims-provider test coverage.",
"is_bot": false,
"headline": "feat(auth): refresh-token custom claims hook (#548)",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-12T05:05:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8b8f0a4251450a37f2e054ffe785decc4eb8fdfd",
"body": "release: 0.122.47 — nightly → main",
"is_bot": false,
"headline": "Merge pull request #93 from DeBrosDAO/nightly",
"author_name": "anonpenguin",
"author_login": "anonpenguin23",
"committed_at": "2026-06-11T14:37:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8472861ed3cb9d9bc56d2124a26e67e5feeafaa1",
"body": "Reconciles the divergence created by the May-13 nightly history rewrite\n(main absorbed pre-rewrite SHAs via PRs #90-92). Content conflicts all\nresolve in nightly's favor; nightly is the deployed, verified branch\n(v0.122.47 live on devnet).",
"is_bot": false,
"headline": "merge main into nightly — keep nightly (staging) on all conflicts",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-11T14:32:37Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cd8c717363b0d23bb876d067add7ed6a1aa5345d",
"body": "- refactor(turn): extract decodeTURNConfig for testability\n- feat(turn): add stealth domain fields to config\n- fix(apns): nest custom data under \"body\" for expo-notifications compatibility",
"is_bot": false,
"headline": "chore(version): bump to 0.122.47",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-11T08:45:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f4c58db710d839bd26e291f1af4635c9a8070212",
"body": null,
"is_bot": false,
"headline": "release: 0.122.46",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-11T07:06:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8375d92109a0578b6477d50ba681b114f9e0bf4d",
"body": "- Implement `resolveStealthCert` to use existing `*.<baseDomain>` wildcard certificates instead of dynamic Caddyfile provisioning.\n- Avoids EROFS errors caused by `ProtectSystem=strict` on the orama-node service.\n- Add strict validation to ensure stealth hosts are single-label subdomains covered by the wildcard.",
"is_bot": false,
"headline": "feat(namespace): reuse caddy wildcard certificate for stealth turns",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-11T07:04:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "37daf28b5a9018ce74e831af63469b57cc4e3a90",
"body": null,
"is_bot": false,
"headline": "release: 0.122.45",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-11T05:00:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b425f80efb7db59c190e561fbbe17f72a82f41da",
"body": "…rash\n\nb9d5f54 (stealth TURN discovery) emits a top-level `sni_router:` block\ninto node.yaml unconditionally, but only added a lenient ad-hoc parse\nin the carry-forward logic — not the field on config.Config that\norama-node strict-decodes (KnownFields(true)) at boot. Identical\nfailure mode to the v0\n[…]\nhole node.yaml parse and orama-node crash-loops.\n\nCaught pre-deploy this time by the strict-decode gate check; devnet\nnever saw it. Regression test added alongside the v0.122.42 one in\ndecode_test.go.",
"is_bot": false,
"headline": "fix(config): add sni_router to root Config — prevents feat-124 boot c…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-11T05:00:31Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b9d5f542e1278eb75ea45d01b9edca6733fe719b",
"body": "- Add `turn_stealth_domain` to gateway config for stealth TURN support\n- Introduce `turn_discovery` in `sni-router` to auto-discover per-namespace routes\n- Add database migration to enable stealth TURN per namespace\n- Document ephemeral state API in `SERVERLESS.md`",
"is_bot": false,
"headline": "feat(gateway): implement stealth TURN discovery and configuration",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-11T04:04:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f192cd0b84181eee234261e3b008ce817a6d607a",
"body": null,
"is_bot": false,
"headline": "release: 0.122.44",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-10T09:13:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ff3e273da8ed2809ad9c7fc4f9a152cecd4b105d",
"body": "- add `secrets_encryption_key` to gateway config for serverless secrets\n- implement durable TURN secret persistence to prevent config regen outages\n- add regression test for gateway config loading and field mapping",
"is_bot": false,
"headline": "feat(gateway): implement persistent secrets and webrtc configuration",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-10T09:10:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4c631243b32d8d4874d4bea65307d77d1463d727",
"body": null,
"is_bot": false,
"headline": "release: 0.122.43",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-09T12:57:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e685c864fc52bd1280764774637a6a4a1d5cfea3",
"body": "…orama-node boot crash\n\nv0.122.42 (f412425, secrets encryption) shipped the template emission,\nthe per-cluster secret generator, and the gateway.Config consumer — but\nNOT the parse field on config.HTTPGatewayConfig. Phase 4 writes\n`secrets_encryption_key` into node.yaml under the http_gateway sectio\n[…]\nstandalone gateway (cmd/gateway/config.go) uses lenient parsing and\nwas unaffected.\n\nRegression test in pkg/config/decode_test.go decodes a node.yaml\ncarrying secrets_encryption_key under strict mode.",
"is_bot": false,
"headline": "fix(config): add secrets_encryption_key to HTTPGatewayConfig — fixes …",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-09T12:57:32Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b6b518e0056119fd124280a6b63d585893e86af9",
"body": null,
"is_bot": false,
"headline": "release: 0.122.42",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-09T10:01:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f41242538ee75dfda4c6e435a54f5c814d5ab4d8",
"body": "- Add `raw_http_response` configuration to functions to allow verbatim HTTP responses\n- Implement cluster-wide secrets encryption key generation and distribution for serverless functions\n- Update documentation with UnifiedPush support for ntfy on Android/GrapheneOS",
"is_bot": false,
"headline": "feat(serverless): add raw http response mode and secrets encryption",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-09T10:01:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "aa04ab5f509bced88aa57d58991aa2bbbeaf0fae",
"body": null,
"is_bot": false,
"headline": "release: 0.122.41",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-09T06:24:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f8de4af704386f07631e9919ccd700e36b30b33f",
"body": "- Add `FileRouteReloader` to watch and atomically update routes from disk\n- Refactor `main` to support seamless configuration updates without restarts\n- Ensure existing routes are preserved if a reload encounters an error",
"is_bot": false,
"headline": "feat(sni-router): implement hot-reloading for route configuration",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-09T06:23:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "32f7b3824e3d967480ffd0935f3c7256c6de3b05",
"body": null,
"is_bot": false,
"headline": "release: 0.122.40",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-04T07:08:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "eade6e17425b9e833d48bf28f020744a1e7763f9",
"body": "- Remove the 2-second polling wait for gossipsub mesh formation in `Publish`\n to eliminate unnecessary latency, relying on `FloodPublish` for delivery.\n- Introduce a per-invocation publish budget (1000 messages) to prevent\n potential flooding of the shared gossipsub router by WASM functions.\n- Add regression tests to ensure `Publish` remains non-blocking and that\n the publish budget is strictly enforced.",
"is_bot": false,
"headline": "feat(pubsub): remove mesh formation wait and add publish rate limiting",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-04T07:08:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f3875d51578d5554456bf4a5fe1092e23c9f41ef",
"body": null,
"is_bot": false,
"headline": "release: 0.122.39",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-02T12:06:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9373c2ad92723fa4372773915a15bf9a64eef541",
"body": "- Introduce `BatchQueryConsistency` with `ReadConsistencyNone` to allow\n local SQLite reads, bypassing leader round-trips for performance.\n- Add `function_invoke_async` host function to support non-blocking\n fire-and-forget function execution.",
"is_bot": false,
"headline": "feat(rqlite,serverless): add local read consistency and async invocation",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-01T16:59:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b2a3bff88c780e097b18bcc4eb3cd6e8cd1ff35c",
"body": null,
"is_bot": false,
"headline": "release: 0.122.38",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-01T07:13:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ca4ccbfcd40c71c06a1ba768106e6c140463c33e",
"body": "- split webrtc route gating into `webrtcServeTURNCredentials` and `webrtcServeSFURoutes` to allow non-SFU gateways to mint TURN credentials\n- update `chooseRestoreWebRTC` to correctly resolve configurations for nodes without local SFU ports\n- add unit tests to verify independent route registration logic (bugboard #25)",
"is_bot": false,
"headline": "feat(gateway): decouple turn credentials and sfu route registration",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-06-01T07:12:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a3cf8384e96390544a309f1f6e004cb2f12ad0ac",
"body": null,
"is_bot": false,
"headline": "release: 0.122.37",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-30T16:27:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bf0d5f9f9fa446d8637ca6be5e8eac22a2eaa6c4",
"body": "- Add logic to reconcile gateway configuration drift for running instances\n- Prevent unnecessary restart loops by verifying on-disk config state\n- Add unit tests to validate synchronization logic and prevent regressions",
"is_bot": false,
"headline": "feat(namespace): implement warm reconciliation for gateway webrtc config",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-30T16:26:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3987ad0cf37cb3e2531533e43dc3144946592137",
"body": null,
"is_bot": false,
"headline": "release: 0.122.36",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-30T11:41:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4fc975216f334b1ad49518b6a707845e6bc3d1ce",
"body": "- Add internal WebRTC management endpoints to public path exemption list\n- Implement DB fallback for WebRTC configuration during cluster restore\n- Add unit tests to verify WebRTC config precedence and state self-healing",
"is_bot": false,
"headline": "feat(gateway): fix WebRTC config persistence and endpoint access",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-30T11:39:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9bace7bbf440b34f0ce84269db010713568f4880",
"body": null,
"is_bot": false,
"headline": "release: 0.122.35",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-29T09:09:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "325a2471c7ab7df488a2d4c9e77f9d43d34b4bdc",
"body": null,
"is_bot": false,
"headline": "Changes",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-29T08:46:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0d352d0b4235ad72fd0b6b850966f11ea955ee3e",
"body": null,
"is_bot": false,
"headline": "release: 0.122.34",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-28T06:55:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cfff08d91e4608b0e095dae60356e8158097e1a5",
"body": "…ion diagnostics\n\n- Implement `turn_credentials` host function to provide TURN configuration to WASM modules.\n- Add structured logging for slow serverless invocations exceeding 5s, providing per-phase timing (rate-limit, module-load, execution) to identify performance bottlenecks.\n- Enhance WebSocket handler logging to capture request context when 30s timeouts occur.",
"is_bot": false,
"headline": "feat(serverless): add turn_credentials host function and slow invocat…",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-28T06:54:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8fbc4485c1e85d35c2aeeb52d32e8b7897da9108",
"body": "- opt into `WithSysWalltime` and `WithSysNanotime` to prevent wazero from using a frozen sentinel clock\n- add regression tests to verify real-time clock behavior in wasm execution\n- ensure serverless functions receive accurate timestamps for audit and cursor logic",
"is_bot": false,
"headline": "fix(serverless): enable system clocks for wasm modules",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-26T07:53:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1399b22676ab5172ee49f79ddf1bcafe86ac691e",
"body": null,
"is_bot": false,
"headline": "release: 0.122.33",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-25T07:25:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1faf04e2a353f0cf72517c15a13505eb5ffff463",
"body": "- Add `enable` and `disable` commands to manage function status\n- Implement process re-exec in the upgrade orchestrator to ensure\n Phase 4 config generation uses the newly-installed binary version\n (fixes bugboard #15)",
"is_bot": false,
"headline": "feat(cli): add function enable/disable and fix upgrade re-exec",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-25T07:25:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bc2c25ff16c83fd6a2d169baecee211e6c45b2c1",
"body": null,
"is_bot": false,
"headline": "release: 0.122.32",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-25T06:35:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b2d35bbde1e5baf8cab8c7bfce3942ad3bd1ef8b",
"body": "- wire PubSubDispatcher to host functions to support local wildcard\n triggers for WASM-published topics\n- implement batch deduplication by topic to prevent redundant trigger\n invocations and bound fan-out\n- propagate trigger depth through function invocations to maintain\n recursion limits during local dispatch",
"is_bot": false,
"headline": "feat(gateway): enable local wildcard triggers for pubsub",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-25T06:34:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0463f37c0d7d23a75599bbd9a67723f96b1361e5",
"body": null,
"is_bot": false,
"headline": "release: 0.122.31",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-24T17:57:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "98dad46a8134531b511295a051f9434df4d1c310",
"body": "- Update route registration logic to rely solely on SFUPort > 0, resolving a silent 404 issue where gateways with valid SFU configurations were incorrectly disabled.\n- Retain WebRTCEnabled in config for backward compatibility with existing operator YAML and request schemas.\n- Add unit tests to pin registration behavior and prevent future regressions.",
"is_bot": false,
"headline": "fix(gateway): decouple webrtc route registration from legacy flag",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-24T17:56:08Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "877563b86f638ea20f35c013f398ea5994b4af6e",
"body": null,
"is_bot": false,
"headline": "release: 0.122.30",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-24T16:39:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "62e4d1963bb694a5d5f3d7bc591d6e19d0392348",
"body": "- register \"apns_voip\" provider to handle PushKit/CallKit signals\n- implement target provider filtering in dispatcher to prevent cross-talk\n between alert and VoIP push paths\n- add comprehensive tests to ensure backward compatibility for fan-out\n and correct filtering behavior",
"is_bot": false,
"headline": "feat(gateway): add apns_voip provider support",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-24T16:38:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "57eb9f4f665cdb6b47a8edc4a3e8803d215aab92",
"body": null,
"is_bot": false,
"headline": "release: 0.122.29",
"author_name": "anonpenguin23",
"author_login": "anonpenguin23",
"committed_at": "2026-05-23T09:49:53Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 100,
"commits_last_year": 1253,
"latest_release_at": "2026-07-06T19:18:45Z",
"latest_release_tag": "v0.122.80-nightly",
"releases_from_tags": false,
"days_since_last_push": 11,
"active_weeks_last_year": 39,
"days_since_latest_release": 18,
"mean_days_between_releases": 2.3
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": true,
"health_percentage": 75,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": true
},
"ecosystem": {
"packages": [
{
"name": "github.com/DeBrosOfficial/network",
"exists": true,
"license": null,
"keywords": [],
"ecosystem": "go",
"matches_repo": false,
"registry_url": "https://pkg.go.dev/github.com/DeBrosOfficial/network",
"is_deprecated": false,
"latest_version": "v0.122.74",
"repository_url": "https://github.com/DeBrosOfficial/network",
"versions_count": 167,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": null,
"first_published_at": null,
"latest_published_at": "2026-07-04T17:47:27Z",
"latest_version_yanked": null,
"days_since_latest_publish": 20
},
{
"name": "@debros/orama",
"exists": true,
"license": "MIT",
"keywords": [
"debros",
"network",
"sdk",
"typescript",
"database",
"rqlite",
"pubsub",
"websocket",
"cache",
"olric",
"ipfs",
"storage",
"wasm",
"serverless",
"distributed",
"gateway",
"vault",
"secrets",
"shamir",
"encryption",
"guardian"
],
"ecosystem": "npm",
"matches_repo": false,
"registry_url": "https://www.npmjs.com/package/@debros/orama",
"is_deprecated": false,
"latest_version": "0.122.80-nightly",
"repository_url": "https://github.com/DeBrosOfficial/network",
"versions_count": 18,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": 1,
"monthly_downloads": 1288,
"first_published_at": "2026-05-12T06:31:03.956000Z",
"latest_published_at": "2026-07-06T19:19:10.614000Z",
"latest_version_yanked": null,
"days_since_latest_publish": 18
}
]
},
"popularity": {
"forks": 3,
"stars": 11,
"watchers": 1,
"fork_history": {
"days": [
{
"date": "2025-11-11",
"count": 1
},
{
"date": "2026-04-11",
"count": 1
},
{
"date": "2026-06-25",
"count": 1
}
],
"complete": true,
"collected": 3,
"total_forks": 3
},
"star_history": null,
"open_issues_and_prs": 1
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [
"examples"
],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [
"Makefile",
"core/Makefile",
"os/Makefile"
],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [
"sdk/tsconfig.json",
"website/tsconfig.json"
],
"toolchain_manifests": [
"core/go.mod",
"core/testdata/apps/go-api/go.mod",
"os/agent/go.mod",
"website/invest-api/go.mod"
],
"largest_source_bytes": 97691,
"source_files_sampled": 1146,
"oversized_source_files": 3,
"agent_instruction_files": [
".github/copilot-instructions.md",
"AGENTS.md",
"CLAUDE.md"
],
"agent_instruction_max_bytes": 536
},
"dependencies": {
"manifests": [
"core/go.mod",
"sdk/package.json",
"website/package.json"
],
"advisories": {
"error": null,
"scope": "published_package",
"source": "osv",
"findings": [],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {},
"advisory_count": 0,
"affected_count": 0,
"assessed_count": 3,
"malicious_count": 0,
"assessed_package": "npm:@debros/orama@0.122.80-nightly",
"unassessed_count": 0,
"direct_affected_count": 0
},
"ecosystems": [
"go",
"npm"
],
"dependencies": [
{
"name": "github.com/charmbracelet/bubbles",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.20.0"
},
{
"name": "github.com/charmbracelet/bubbletea",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.2.4"
},
{
"name": "github.com/charmbracelet/lipgloss",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.0.0"
},
{
"name": "github.com/coredns/caddy",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.1.4"
},
{
"name": "github.com/coredns/coredns",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.12.1"
},
{
"name": "github.com/ethereum/go-ethereum",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.13.14"
},
{
"name": "github.com/go-chi/chi/v5",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v5.2.3"
},
{
"name": "github.com/google/uuid",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.6.0"
},
{
"name": "github.com/gorilla/websocket",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.5.4-0.20250319132907-e064f32e3674"
},
{
"name": "github.com/libp2p/go-libp2p",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.41.1"
},
{
"name": "github.com/libp2p/go-libp2p-pubsub",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.14.2"
},
{
"name": "github.com/mackerelio/go-osstat",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.2.6"
},
{
"name": "github.com/mattn/go-sqlite3",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.14.32"
},
{
"name": "github.com/mdp/qrterminal/v3",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v3.2.1"
},
{
"name": "github.com/miekg/dns",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.1.70"
},
{
"name": "github.com/multiformats/go-multiaddr",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.16.0"
},
{
"name": "github.com/olric-data/olric",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.7.0"
},
{
"name": "github.com/pion/interceptor",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.1.40"
},
{
"name": "github.com/pion/rtcp",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.2.15"
},
{
"name": "github.com/pion/turn/v4",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v4.0.2"
},
{
"name": "github.com/pion/webrtc/v4",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v4.1.2"
},
{
"name": "github.com/rqlite/gorqlite",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20250609141355-ac86a4a1c9a8"
},
{
"name": "github.com/sideshow/apns2",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.25.0"
},
{
"name": "github.com/spf13/cobra",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.10.2"
},
{
"name": "github.com/stretchr/testify",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.11.1"
},
{
"name": "github.com/tetratelabs/wazero",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.11.0"
},
{
"name": "go.uber.org/zap",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v1.27.0"
},
{
"name": "golang.org/x/crypto",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.47.0"
},
{
"name": "golang.org/x/net",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.49.0"
},
{
"name": "golang.org/x/sync",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v0.19.0"
},
{
"name": "gopkg.in/yaml.v2",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v2.4.0"
},
{
"name": "gopkg.in/yaml.v3",
"manifest": "core/go.mod",
"ecosystem": "go",
"version_constraint": "v3.0.1"
},
{
"name": "@noble/ciphers",
"manifest": "sdk/package.json",
"ecosystem": "npm",
"version_constraint": "^0.5.3"
},
{
"name": "@noble/hashes",
"manifest": "sdk/package.json",
"ecosystem": "npm",
"version_constraint": "^1.4.0"
},
{
"name": "isomorphic-ws",
"manifest": "sdk/package.json",
"ecosystem": "npm",
"version_constraint": "^5.0.0"
},
{
"name": "@gsap/react",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^2.1.2"
},
{
"name": "@mdx-js/react",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^3.1.1"
},
{
"name": "@radix-ui/react-accordion",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^1.2.12"
},
{
"name": "@radix-ui/react-dialog",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^1.1.15"
},
{
"name": "@radix-ui/react-dropdown-menu",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^2.1.16"
},
{
"name": "@radix-ui/react-navigation-menu",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^1.2.14"
},
{
"name": "@radix-ui/react-slot",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^1.2.4"
},
{
"name": "@radix-ui/react-tabs",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^1.1.13"
},
{
"name": "@radix-ui/react-tooltip",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^1.2.8"
},
{
"name": "@react-three/drei",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^10.7.7"
},
{
"name": "@react-three/fiber",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^9.5.0"
},
{
"name": "@solana/wallet-adapter-base",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^0.9.27"
},
{
"name": "@solana/wallet-adapter-react",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^0.15.39"
},
{
"name": "@solana/wallet-adapter-react-ui",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^0.9.39"
},
{
"name": "@solana/wallet-adapter-wallets",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^0.19.37"
},
{
"name": "@solana/web3.js",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^1.98.4"
},
{
"name": "class-variance-authority",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^0.7.0"
},
{
"name": "clsx",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^2.1.0"
},
{
"name": "ethers",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^6.16.0"
},
{
"name": "gsap",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^3.14.2"
},
{
"name": "lightweight-charts",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^5.1.0"
},
{
"name": "lucide-react",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^0.511.0"
},
{
"name": "mermaid",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^11.12.3"
},
{
"name": "react",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^19.1.0"
},
{
"name": "react-dom",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^19.1.0"
},
{
"name": "react-router",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^7.6.1"
},
{
"name": "rehype-slug",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^6.0.0"
},
{
"name": "remark-gfm",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^4.0.1"
},
{
"name": "shiki",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^4.0.0"
},
{
"name": "tailwind-merge",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^3.3.0"
},
{
"name": "three",
"manifest": "website/package.json",
"ecosystem": "npm",
"version_constraint": "^0.183.2"
},
{
"name": "golang.org/x/crypto",
"manifest": "os/agent/go.mod",
"ecosystem": "go",
"version_constraint": "v0.48.0"
},
{
"name": "github.com/ethereum/go-ethereum",
"manifest": "website/invest-api/go.mod",
"ecosystem": "go",
"version_constraint": "v1.15.11"
},
{
"name": "github.com/golang-jwt/jwt/v5",
"manifest": "website/invest-api/go.mod",
"ecosystem": "go",
"version_constraint": "v5.2.2"
},
{
"name": "github.com/joho/godotenv",
"manifest": "website/invest-api/go.mod",
"ecosystem": "go",
"version_constraint": "v1.5.1"
},
{
"name": "github.com/mattn/go-sqlite3",
"manifest": "website/invest-api/go.mod",
"ecosystem": "go",
"version_constraint": "v1.14.37"
},
{
"name": "github.com/mr-tron/base58",
"manifest": "website/invest-api/go.mod",
"ecosystem": "go",
"version_constraint": "v1.2.0"
}
],
"all_dependencies": {
"error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
"source": null,
"packages": [],
"collected": false,
"truncated": false,
"total_count": null,
"direct_count": null,
"indirect_count": null
}
},
"maintainership": {
"issues": {
"open_prs": 0,
"merged_prs": 56,
"open_issues": 1,
"closed_ratio": 0.971,
"closed_issues": 34,
"closed_unmerged_prs": 4
},
"bus_factor": 1,
"bot_contributors": 0,
"top_contributors": [
{
"type": "User",
"login": "anonpenguin23",
"commits": 1083,
"avatar_url": "https://avatars.githubusercontent.com/u/200880785?v=4"
},
{
"type": "User",
"login": "JohnySigma",
"commits": 61,
"avatar_url": "https://avatars.githubusercontent.com/u/178774325?v=4"
},
{
"type": "User",
"login": "DeBrosOfficial",
"commits": 8,
"avatar_url": "https://avatars.githubusercontent.com/u/188804992?v=4"
}
],
"contributors_sampled": 3,
"top_contributor_share": 0.94
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"ci.yml",
"publish-sdk.yml",
"release-apt.yml",
"release.yaml",
"security.yml"
],
"has_docs_dir": false,
"linter_configs": [],
"has_editorconfig": false,
"has_linter_config": false,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"go.sum",
"package-lock.json",
"pnpm-lock.yaml"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 8,
"reason": "binaries present in source code",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 1,
"reason": "branch protection is not maximal on development and all release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 10,
"reason": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 10,
"reason": "all changesets reviewed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 0,
"reason": "project has 0 contributing companies or organizations -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 10,
"reason": "update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": 10,
"reason": "packaging workflow detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 0,
"reason": "dependency not pinned by hash detected -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "SAST tool is not run on all commits -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": 0,
"reason": "Project has not signed or included provenance with any releases.",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 0,
"reason": "192 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "4a538ca07ad8c2980b8af94fe26f2e1c96961509",
"ran_at": "2026-07-25T00:19:58Z",
"aggregate_score": 4.7,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": false
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-20T10:44:00Z",
"oldest_open_prs": [],
"last_merged_pr_at": "2026-07-04T17:47:28Z",
"ci_last_conclusion": "FAILURE",
"oldest_open_issues": [
{
"number": 84,
"created_at": "2026-03-02T14:22:40Z",
"last_comment_at": "2026-05-15T18:01:00Z",
"last_comment_author": "JohnySigma"
}
]
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/DeBrosDAO/orama",
"host": "github.com",
"name": "orama",
"owner": "DeBrosDAO"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": null,
"notes": [],
"value": 62,
"inputs": {
"security": 58,
"vitality": 86,
"community": 53,
"governance": 49,
"engineering": 63
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "excellent",
"name": "Vitality",
"value": 86,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "good",
"name": "Development activity",
"note": null,
"notes": [],
"value": 84,
"inputs": {
"commits_last_year": 1253,
"human_commit_share": 1,
"days_since_last_push": 11,
"active_weeks_last_year": 39
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 11 days ago",
"points": 28.8,
"status": "partial",
"details": [
{
"code": "push_recency",
"params": {
"days": 11
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "39/52 weeks with commits",
"points": 27,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 39
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "1253 commits in the last year",
"points": 18,
"status": "met",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 1253
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": null,
"notes": [],
"value": 90,
"inputs": {
"releases_count": 100,
"latest_release_tag": "v0.122.80-nightly",
"releases_from_tags": false,
"days_since_latest_release": 18,
"mean_days_between_releases": 2.3
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "100 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 100
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 18 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 18
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~2.3 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 2.3
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 20,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 20 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 20
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "moderate",
"name": "Community & Adoption",
"value": 53,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "critical",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 19,
"inputs": {
"forks": 3,
"stars": 11,
"watchers": 1,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "11 stars",
"points": 16.2,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 11
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "3 forks",
"points": 2.5,
"status": "partial",
"details": [
{
"code": "forks",
"params": {
"count": 3
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "1 watchers",
"points": 0,
"status": "missed",
"details": [
{
"code": "watchers",
"params": {
"count": 1
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "excellent",
"name": "Community health",
"note": null,
"notes": [],
"value": 92,
"inputs": {
"has_readme": true,
"has_license": true,
"has_contributing": true,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (AGPL-3.0)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "AGPL-3.0"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 18,
"status": "met",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 13.5,
"status": "met",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 6.3,
"status": "met",
"details": [],
"max_points": 6.3
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "at_risk",
"name": "Sustainability & Governance",
"value": 49,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "critical",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 14,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 3,
"top_contributor_share": 0.94
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 94% of commits",
"points": 1.4,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 94
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "3 contributors",
"points": 4.1,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 3
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 0 contributing companies or organizations -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "excellent",
"name": "Issue & PR responsiveness",
"note": null,
"notes": [],
"value": 96,
"inputs": {
"merged_prs": 56,
"open_issues": 1,
"closed_issues": 34,
"issue_closed_ratio": 0.971,
"closed_unmerged_prs": 4
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "97% of issues closed",
"points": 45.4,
"status": "partial",
"details": [
{
"code": "issues_closed_share",
"params": {
"share": 97
}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "56/60 decided PRs merged",
"points": 35.7,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 56,
"decided": 60
}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "all changesets reviewed",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "at_risk",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 44,
"inputs": {
"followers": 6,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "DeBrosDAO",
"public_repos": 9,
"account_age_days": 143
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "6 followers of DeBrosDAO",
"points": 6.1,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 6,
"login": "DeBrosDAO"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "9 public repos, account ~0 yr old",
"points": 8.1,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 9
}
},
{
"code": "account_age_years",
"params": {
"years": 0
}
}
],
"max_points": 25
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "moderate",
"name": "Engineering Quality",
"value": 63,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "moderate",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 68,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": false,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "5 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 5
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
"points": 20,
"status": "met",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "moderate",
"name": "Documentation",
"note": null,
"notes": [],
"value": 55,
"inputs": {
"topics": [],
"has_wiki": false,
"homepage": "https://orama.network",
"has_readme": true,
"has_docs_dir": false,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": "https://orama.network",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "moderate",
"name": "Security",
"value": 58,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "at_risk",
"name": "Security posture",
"note": null,
"notes": [],
"value": 47,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 18,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 0,
"scorecard_aggregate": 4.7
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "binaries present in source code",
"points": 6,
"status": "partial",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection is not maximal on development and all release branches",
"points": 0.8,
"status": "partial",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "all changesets reviewed",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 0 contributing companies or organizations -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "update tool detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow detected",
"points": 5,
"status": "met",
"details": [],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is not run on all commits -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "192 existing vulnerabilities detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "excellent",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:@debros/orama@0.122.80-nightly runtime dependency closure — what installing the published package pulls in — 3 packages. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"no_advisories_left_outstanding"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_published",
"params": {
"package": "npm:@debros/orama@0.122.80-nightly",
"assessed": 3
}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 100,
"inputs": {
"source": "osv",
"advisories": 0,
"affected_packages": 0,
"assessed_packages": 3,
"unassessed_packages": 0,
"affected_by_severity": "none",
"direct_affected_packages": 0
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "no direct dependency carries a known advisory",
"points": 35,
"status": "met",
"details": [
{
"code": "no_direct_advisories",
"params": {}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "no indirect dependency carries a known advisory",
"points": 25,
"status": "met",
"details": [
{
"code": "no_indirect_advisories",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory carries a publication date",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_no_publication_date",
"params": {}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "excellent",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 3,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 1
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "good",
"name": "AI Readiness",
"value": 71,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "excellent",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 85,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.98,
"agent_instruction_files": [
".github/copilot-instructions.md",
"AGENTS.md",
"CLAUDE.md"
],
"agent_instruction_max_bytes": 536
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md",
"points": 45,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md"
}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "98 of 100 human commits state their intent (structured subject or explanatory body)",
"points": 40,
"status": "met",
"details": [
{
"code": "legible_history",
"params": {
"legible": 98,
"sampled": 100
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "moderate",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 61,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"go.sum",
"package-lock.json",
"pnpm-lock.yaml"
],
"has_dockerfile": false,
"typed_language": true,
"bootstrap_files": [
"Makefile",
"core/Makefile",
"os/Makefile"
],
"has_devcontainer": false,
"has_linter_config": false,
"typecheck_configs": [
"sdk/tsconfig.json",
"website/tsconfig.json"
],
"agent_commit_share": 0,
"toolchain_manifests": [
"core/go.mod",
"core/testdata/apps/go-api/go.mod",
"os/agent/go.mod",
"website/invest-api/go.mod"
],
"dependency_bot_commit_share": 0
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": "Makefile, core/Makefile, os/Makefile",
"points": 18,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "Makefile, core/Makefile, os/Makefile"
}
}
],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "sdk/tsconfig.json, website/tsconfig.json",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "sdk/tsconfig.json, website/tsconfig.json"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "no agent-authored commits among the last 100",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_authored_commits",
"params": {
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "no automated dependency updates observed",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_dependency_automation",
"params": {}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "excellent",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"primary_language": "Go",
"largest_source_bytes": 97691,
"source_files_sampled": 1146,
"oversized_source_files": 3
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "Go (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "3/1146 source files over 60KB",
"points": 54.9,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 1146,
"oversized": 3
}
}
],
"max_points": 55
}
]
},
{
"key": "ai_interfaces",
"band": "at_risk",
"name": "Machine-readable interfaces",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"example_dirs": [
"examples"
],
"has_mcp_signal": false,
"api_schema_files": []
},
"components": [
{
"key": "api_schema_openapi_graphql_proto",
"name": "API schema (OpenAPI/GraphQL/proto)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 40
},
{
"key": "mcp_server",
"name": "MCP server",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "runnable_examples",
"name": "Runnable examples",
"detail": "examples",
"points": 40,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "examples"
}
}
],
"max_points": 40
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
"go package 'github.com/DeBrosOfficial/network' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring",
"npm package '@debros/orama' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring",
"Could not fetch go package 'github.com/DeBrosOfficial/orama-os/agent' from its registry",
"Could not fetch go package 'github.com/debros/orama-website/invest-api' from its registry",
"GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
],
"report_type": "repository",
"generated_at": "2026-07-25T00:20:22.030841Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/d/DeBrosDAO/orama.svg",
"full_name": "DeBrosDAO/orama",
"license_state": "standard",
"license_spdx": "AGPL-3.0"
}